Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

79.305exploits catalogados
36.465CVEs con explotación pública
24.695probados en laboratorio
77.866 exploits
GitHub PoC
Wormable exploit for CVE-2026-57858
CVE-2026-57858CRITICAL07 ago 2026
Cal.com Cal.diy 6.2.0 Stored XSS via BookingPageTagManager Analytics Tracking ID
48RIESGO
abrir
GitHub PoC7
ghostlock + tcp-zerocopy hybrid CVE-2026-43499 adaptation for samsung kernel
CVE-2026-43499HIGH07 ago 2026
rtmutex: Use waiter::task instead of current in remove_waiter()
41RIESGO
abrir
GitHub PoC1
Guest-to-host KVM/x86 escape exploiting CVE-2026-64561, delivering a full PoC chain and analysis for security researchers.
CVE-2026-64561HIGH07 ago 2026
KVM: x86: Check for invalid/obsolete root *after* making MMU pages available
41RIESGO
abrir
GitHub PoC
Hunt-Benito/go-without-bounds-cve-2026-67822-stack-overflow-in-tenda-w6-s-wifissidset
CVE-2026-67822CRITICAL07 ago 2026
Tenda W6-S 1.0.0.4(510) contains a stack-based buffer overflow vulnerability in the /goform/wifiSSIDset endpoint. The fu
48RIESGO
abrir
GitHub PoC
Reproducer for CVE-2026-64640 — Apache Polaris Iceberg REST register/register-view vends storage credentials and reads an attacker-chosen metadata location before validating allowedLocations (confused-deputy cross-tenant read). Affected ≤ 1.6.0, fixed in 1.7.0.
CVE-2026-64640MEDIUM07 ago 2026
Apache Polaris: register endpoint reads attacker-controlled storage location before allowed-locations validation
33RIESGO
abrir
GitHub PoC
Giangdurian/CVE-2021-3129
CVE-2021-3129CRITICALbajo ataqueransomware07 ago 2026
Ignition before 2.5.2, as used in Laravel and other products, allows unauthenticated remote attackers to execute arbitra
100RIESGO
abrir
GitHub PoC1
CVE-2026-11961 — UserRegistration: WordPress User Registration <= 5.2.2 Privilege Escalation. Misconfigured Membership Roles → Unauthenticated Admin Creation → Site Compromise. CVSS 8.1
CVE-2026-11961HIGH07 ago 2026
User Registration & Membership < 5.2.3 - Unauthenticated Privilege Escalation via Unbound members_data Membership ID
41RIESGO
abrir
GitHub PoC1
CVE-2026-70559
CVE-2026-70559HIGH07 ago 2026
Dinky Unauthenticated System Configuration and Credential Disclosure via GET /api/sysConfig/getAll
41RIESGO
abrir
GitHub PoC
Exploit KVM/x86 guest-to-host escape CVE-2026-64561 with Zapscape, a proof-of-concept demonstrating hypervisor vulnerability.
CVE-2026-64561HIGH07 ago 2026
KVM: x86: Check for invalid/obsolete root *after* making MMU pages available
41RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2025-32432CRITICALbajo ataque07 ago 2026
Craft CMS Allows Remote Code Execution
100RIESGO
abrir
GitHub PoC
Hands-on homelab simulating the Log4Shell (CVE-2021-44228) vulnerability. Deploy Docker containers to build a vulnerable target and attacker machine, execute the exploit, and implement security mitigations. Perfect for learning offensive security and application hardening.
CVE-2021-44228CRITICALbajo ataqueransomware07 ago 2026
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2026-50522CRITICALbajo ataque07 ago 2026
Microsoft SharePoint Remote Code Execution Vulnerability
100RIESGO
abrir
GitHub PoC
Shams-Ul-Mehmood/CVE-2021-3156-Project
CVE-2021-3156HIGHbajo ataque07 ago 2026
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RIESGO
abrir
GitHub PoC19
Unauthenticated Remote Code Execution in JetBrains TeamCity (CVE-2026-63077)
CVE-2026-63077CRITICALbajo ataque07 ago 2026
In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code execution was possible via the agent pollin
98RIESGO
abrir
GitHub PoC3
CVE-2026-64561
CVE-2026-64561HIGH07 ago 2026
KVM: x86: Check for invalid/obsolete root *after* making MMU pages available
41RIESGO
abrir
GitHub PoC
CVE-2026-64638 - Draft or TODO
CVE-2026-64638HIGH07 ago 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
56RIESGO
abrir
GitHub PoC46
XSS2Shell (CVE-2026-64638) WordPress pre-auth XSS to RCE chain — PoC exploit + defensive audit tool + nuclei template
CVE-2026-64638HIGH07 ago 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
56RIESGO
abrir
GitHub PoC
PoC funcional de CVE-2026-64638 (XSS2Shell): cadena pre-auth XSS a RCE en WordPress Core. Laboratorio Docker + servidor atacante Python + análisis técnico y mitigación.
CVE-2026-64638HIGH07 ago 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
56RIESGO
abrir
GitHub PoC1
CVE-2026-44613
CVE-2026-44613MEDIUM07 ago 2026
Apache Zeppelin: Cross-site request forgery in REST and WebSocket request handling
33RIESGO
abrir
GitHub PoC
jackson-databind 2026 年 11 条安全公告自查:扫源码注解降噪,告诉你真中几条;逐条求交集给出真正到位的版本(2.18.9/2.21.5/3.1.5,不是 advisory 上最常见的 2.21.4) CVE-2026-54515 / CVE-2026-54512
CVE-2026-54515MEDIUM07 ago 2026
jackson-databind: Case-insensitive deserialization bypasses per-property @JsonIgnoreProperties
33RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2021-3129CRITICALbajo ataqueransomware07 ago 2026
Ignition before 2.5.2, as used in Laravel and other products, allows unauthenticated remote attackers to execute arbitra
100RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2026-45659HIGHbajo ataqueransomware07 ago 2026
Microsoft SharePoint Remote Code Execution Vulnerability
71RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2026-63077CRITICALbajo ataque07 ago 2026
In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code execution was possible via the agent pollin
98RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2018-1676307 ago 2026
FUEL CMS 1.4.1 allows PHP Code Evaluation via the pages/select/ filter parameter or the preview/ data parameter. This ca
60RIESGO
abrir
VulnCheck XDB
initial-access
CVE-2026-39987CRITICALbajo ataque07 ago 2026
marimo Affected by Pre-Auth Remote Code Execution via Terminal WebSocket Authentication Bypass
100RIESGO
abrir
GitHub PoC1
PoC for CVE-2026-71554 - h2 duplicate Host header request smuggling primitive (fixed in 4.4.1)
CVE-2026-71554MEDIUM07 ago 2026
h2: Duplicate Host header could facilitate request smuggling
33RIESGO
abrir
GitHub PoC5
CVE-2026-64638 — WordPress Pre-Auth Reflected XSS → RCE via DOM Clobbering + Application Password Theft + REST API Plugin Activation. Dual-mode PoC (XSS chain & direct).
CVE-2026-64638HIGH07 ago 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
56RIESGO
abrir
GitHub PoC1
CVE-2026-64638
CVE-2026-64638HIGH07 ago 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
56RIESGO
abrir
GitHub PoC2
Generic kernel live patch for the KVM/x86 shadow-MMU use-after-free (Zapscape, CVE-2026-64561)
CVE-2026-64561HIGH07 ago 2026
KVM: x86: Check for invalid/obsolete root *after* making MMU pages available
41RIESGO
abrir
GitHub PoC
log4j 2025/2026 年 7 条「配置静默失效」CVE 自查:按 CVE×模块 判定 4 个模块,结构化解析 log4j2 配置做 applicability 降噪,并算出该升到哪个版本才一次到位(6 条写 2.25.4,但有一条要 2.25.5,而它 Dependabot 报不出来) CVE-2026-49844 / CVE-2026-34477
CVE-2026-49844MEDIUM07 ago 2026
Apache Log4j API: Improper serialization of non-finite floating-point values in MapMessage.asJson()
33RIESGO
abrir
anteriorpágina 12 / 2596siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.