Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

75.445exploits catalogados
34.432CVEs con explotación pública
24.695probados en laboratorio
13.627 exploits
GitHub PoC5
Demo for Next.js middleware bypass - CVE-2025-29927
CVE-2025-29927CRITICAL24 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC
CVE-2002-0082
CVE-2002-008224 mar 2025
The dbm and shm session cache code in mod_ssl before 2.8.7-1.3.23, and Apache-SSL before 1.3.22+1.46, does not properly
28RIESGO
abrir
GitHub PoC1
WordPress RepairBuddy plugin <= 3.8115 - Arbitrary File Upload vulnerability
CVE-2024-51793CRITICAL24 mar 2025
WordPress RepairBuddy plugin <= 3.8115 - Arbitrary File Upload vulnerability
48RIESGO
abrir
GitHub PoC4
CVE-2025-29927 Exploit Checker
CVE-2025-29927CRITICAL24 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC90
CVE-2025-1974
CVE-2025-1974CRITICAL24 mar 2025
ingress-nginx admission controller RCE escalation
85RIESGO
abrir
GitHub PoC3
CVE-2025-29927 Proof of Concept
CVE-2025-29927CRITICAL24 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC1
CVE-2025-29927の検証
CVE-2025-29927CRITICAL24 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC2
Next.js Middleware Auth Bypass
CVE-2025-29927CRITICAL24 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC
Next.Js 权限绕过漏洞(CVE-2025-29927)
CVE-2025-29927CRITICAL24 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC
ejaboz/cve-2024-24919
CVE-2024-24919HIGHbajo ataqueransomware24 mar 2025
Information disclosure
100RIESGO
abrir
GitHub PoC1
A deliberately Next.js app, vulnerable to CVE-2025-29927, Authorization Bypass
CVE-2025-29927CRITICAL24 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC3
Async Python scanner for Next.js CVE-2025-29927. Uses aiohttp & aiofiles to efficiently process large URL lists, detect vulnerabilities, and save results. Features connection pooling, caching, and chunked processing for fast performance
CVE-2025-29927CRITICAL24 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC6
CVE-2025-29927 lab
CVE-2025-29927CRITICAL24 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC2
Next.js 中间件授权绕过漏洞测试环境 (CVE-2025-29927)
CVE-2025-29927CRITICAL24 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC4
Session Exploit
CVE-2025-24813CRITICALbajo ataque24 mar 2025
Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
100RIESGO
abrir
GitHub PoC7
A playground to test the RCE exploit for tomcat CVE-2025-24813
CVE-2025-24813CRITICALbajo ataque24 mar 2025
Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
100RIESGO
abrir
GitHub PoC99
CVE-2025-29927 Proof of Concept
CVE-2025-29927CRITICAL23 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC4
Next.js における認可バイパスの脆弱性 CVE-2025-29927 を再現するデモです。
CVE-2025-29927CRITICAL23 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC
ticofookfook/poc-nextjs-CVE-2025-29927
CVE-2025-29927CRITICAL23 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC14
lirantal/vulnerable-nextjs-14-CVE-2025-29927
CVE-2025-29927CRITICAL23 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC20
Proof-of-Concept for Authorization Bypass in Next.js Middleware
CVE-2025-29927CRITICAL23 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC1
Writeup and POC for CVE-2022-23134
CVE-2022-23134LOWbajo ataque23 mar 2025
Possible view of the setup pages by unauthenticated users if config file already exists
95RIESGO
abrir
GitHub PoC19
A Nuclei template to detect CVE-2025-29927 the Next.js authentication bypass vulnerability
CVE-2025-29927CRITICAL23 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC9
Authorization Bypass in Next.js Middleware
CVE-2025-29927CRITICAL23 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC38
zhuowei/CVE-2025-27363-proof-of-concept
CVE-2025-27363HIGHbajo ataque23 mar 2025
An out of bounds write exists in FreeType versions 2.13.0 and below (newer versions of FreeType are not vulnerable) when
76RIESGO
abrir
GitHub PoC
Jenkins RCE Arbitrary File Read CVE-2024-23897
CVE-2024-23897CRITICALbajo ataqueransomware23 mar 2025
Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI command parser that replaces an
100RIESGO
abrir
GitHub PoC15
Next.js PoC for CVE-2025-29927
CVE-2025-29927CRITICAL23 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC
WordPress Portfolleo plugin <= 1.2 - Arbitrary File Upload vulnerability
CVE-2024-49653CRITICAL22 mar 2025
WordPress Portfolleo plugin <= 1.2 - Arbitrary File Upload vulnerability
48RIESGO
abrir
GitHub PoC
Verify Next.js CVE-2025-29927 on Netlify not vulnerable
CVE-2025-29927CRITICAL22 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC4
Next.js Middleware Authorization Bypass
CVE-2025-29927CRITICAL22 mar 2025
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
anteriorpágina 172 / 455siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.