Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

71,886cataloged exploits
32,153CVEs with public exploitation
1,932lab-tested
71,836 exploits
GitHub PoC2
Kouf320/docker-lab-cve-2017-5638-cve-2021-41773
CVE-2021-41773HIGHunder attackransomware11 Apr 2026
Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49
100RISK
open
GitHub PoC2
Kouf320/docker-lab-cve-2017-5638-cve-2021-41773
CVE-2017-5638CRITICALunder attackransomware11 Apr 2026
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RISK
open
VulnCheck XDB
initial-access
CVE-2019-15107CRITICALunder attackransomware11 Apr 2026
An issue was discovered in Webmin <=1.920. The parameter old in password_change.cgi contains a command injection vulnera
100RISK
open
GitHub PoC
Improper Access Control in Mysterium Node before v1.36.0
CVE-2026-31309CRITICAL10 Apr 2026
Improper authorization in the /tequilapi/config/user endpoint of Mysterium Node from v1.21.1-rc0 before v1.36.0 allows a
48RISK
open
GitHub PoC
CVE-2025-55182 (React2Shell) PoC: Unauthenticated RCE affecting React 19.x and Next.js < 15.1.4. Exploits vulnerabilities in the RSC Flight protocol.
CVE-2025-55182CRITICALunder attackransomware10 Apr 2026
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
Educational Proof-of-Concept for the CVE-2022-30190 (Follina) vulnerability.
CVE-2022-30190HIGHunder attackransomware10 Apr 2026
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISK
open
GitHub PoC1
Hunt-Benito/samsung-exynos-sms-stack-overflow-cve-2025-54328-critical-zero-click-baseband-rce
CVE-2025-54328CRITICAL10 Apr 2026
An issue was discovered in SMS in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 21
48RISK
open
VulnCheck XDB
initial-access
CVE-2025-55182CRITICALunder attackransomware10 Apr 2026
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
VulnCheck XDB
initial-access
CVE-2021-2291110 Apr 2026
A improper input sanitization vulnerability exists in Rocket.Chat server 3.11, 3.12 & 3.13 that could lead to unauthenti
60RISK
open
GitHub PoC
powerfull rust cve-2025-55182-scanner used for ctf & ethical purpose only
CVE-2025-55182CRITICALunder attackransomware10 Apr 2026
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
CVE-2025-55182 Auto Scanner - Improved Version For authorized CTF/testing purposes only
CVE-2025-55182CRITICALunder attackransomware10 Apr 2026
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
Demo to remediate CVE-2023-20198 using forward networks and tines
CVE-2023-20198CRITICALunder attack10 Apr 2026
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISK
open
GitHub PoC
PoC of CVE-2021-44228
CVE-2021-44228CRITICALunder attackransomware10 Apr 2026
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
VulnCheck XDB
initial-access
CVE-2021-44228CRITICALunder attackransomware10 Apr 2026
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC6
High-interaction honeypot mimicking a vulnerable Laravel/Livewire app. Captures RCE exploits and webshells targeting CVE-2024-47823, CVE-2025-54068, and CVE-2025-14894, then analyzes them in sandboxed Docker containers to extract IOCs.
CVE-2025-54068CRITICALunder attack10 Apr 2026
Livewire vulnerable to remote command execution during property update hydration
100RISK
open
GitHub PoC
Estudio técnico de la vulnerabilidad CVE-2025-5548
CVE-2025-5548MEDIUM10 Apr 2026
FreeFloat FTP Server NOOP Command buffer overflow
38RISK
open
GitHub PoC
Browser-based MCP CTF — OAuth token confusion and session isolation failure (CVE-2025-49596 pattern). DevTools only.
CVE-2025-49596CRITICAL10 Apr 2026
MCP Inspector proxy server lacks authentication between the Inspector client and proxy
75RISK
open
GitHub PoC2
The Backup Migration plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.3.7 via the /includes/backup-heart.php file.
CVE-2023-6553CRITICAL10 Apr 2026
Backup Migration <= 1.3.7 - Unauthenticated Remote Code Execution
85RISK
open
GitHub PoC
CVE-2021-22911 Rocket.Chat NoSQL Injection RCE Exploit - Educational Purpose
CVE-2021-2291110 Apr 2026
A improper input sanitization vulnerability exists in Rocket.Chat server 3.11, 3.12 & 3.13 that could lead to unauthenti
60RISK
open
VulnCheck XDB
initial-access
CVE-2026-23744CRITICAL10 Apr 2026
REC in MCPJam inspector due to HTTP Endpoint exposes
75RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2026-34197HIGHunder attack10 Apr 2026
Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Authenticated users could perform RCE via Jolokia MBeans
100RISK
open
Metasploit600
Paperclip AI RCE using a chain of six API calls (CVE-2026-41679).
CVE-2026-41679CRITICAL10 Apr 2026
Paperclip Vulnerable to Unauthenticated Remote Code Execution via Import Authorization Bypass
43RISK
open
GitHub PoC2
CVE-2025-63353
CVE-2025-63353CRITICAL09 Apr 2026
A vulnerability in FiberHome GPON ONU HG6145F1 RP4423 allows the device's factory default Wi-Fi password (WPA/WPA2 pre-s
48RISK
open
GitHub PoC
Exploiting WordPress vulnerabilities (CVE-2025-34077), authentication bypass via cookie injection, and privilege escalation to root. Part of my Cybersecurity Specialization.
CVE-2025-34077CRITICAL09 Apr 2026
WordPress Pie Register Plugin ≤ 3.7.1.4 Authentication Bypass RCE
63RISK
open
GitHub PoC
Xibo CMS CVE-2023-33177 Vulnerability Tester
CVE-2023-33177HIGH09 Apr 2026
Xibo CMS vulnerable to Remote Code Execution through Zip Slip
41RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2026-34197HIGHunder attack09 Apr 2026
Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Authenticated users could perform RCE via Jolokia MBeans
100RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2026-34197HIGHunder attack09 Apr 2026
Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Authenticated users could perform RCE via Jolokia MBeans
100RISK
open
VulnCheck XDB
info-leak
CVE-2026-21858CRITICAL09 Apr 2026
n8n Vulnerable to Unauthenticated File Access via Improper Webhook Request Handling
85RISK
open
Exploit-DB
React Server 19.2.0 - Remote Code Execution
CVE-2025-55182CRITICALunder attackransomware09 Apr 2026
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
VulnCheck XDB
initial-access
CVE-2025-32433CRITICALunder attack09 Apr 2026
Erlang/OTP SSH Vulnerable to Pre-Authentication RCE
100RISK
open
previouspage 92 / 2,395next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.