Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

78.958exploits catalogados
36.206CVEs com exploração pública
24.695testados em laboratório
14.991 exploits
GitHub PoC35
nginx heap buffer overflow PoC — CVE-2026-42533 pre-auth RCE via two-pass capture clobbering. Crash confirmed on Ubuntu 24.04.
CVE-2026-42533CRITICAL27 jul 2026
NGINX Map directive and Regex matching vulnerability
48RISCO
abrir
GitHub PoC3
A POC for the recently discovered Qualys bug on COW with XFS
CVE-2026-64600HIGH27 jul 2026
xfs: resample the data fork mapping after cycling ILOCK
41RISCO
abrir
GitHub PoC
CVE-2026-57973 is a medium-severity (CVSS 6.3) TOCTOU race condition flaw in Windows Subsystem for Linux (WSL2). It allows a local, low-privileged attacker to bypass security boundaries and perform unauthorized kernel-level tampering on the host machine without user interaction.
CVE-2026-57973MEDIUM27 jul 2026
Windows Subsystem for Linux (WSL2) Kernel Tampering Vulnerability
13RISCO
abrir
GitHub PoC
CVE-2026-63030 + CVE-2026-60137+poc
CVE-2026-63030CRITICALsob ataque27 jul 2026
WordPress < 7.0.2 - REST API batch-route confusion and SQL injection issue leading to Remote Code Execution
100RISCO
abrir
GitHub PoC1
CVE-2026-43499: Linux kernel futex PI use-after-free research package
CVE-2026-43499HIGH27 jul 2026
rtmutex: Use waiter::task instead of current in remove_waiter()
41RISCO
abrir
GitHub PoC2
Read-only WordPress security scanner for HestiaCP servers. Detects wp2shell compromise indicators (CVE-2026-63030 / CVE-2026-60137) across all hosted sites — per-user email reports, core file diff against clean WordPress, PHP/JS/htaccess/image analysis, and optional AI evaluation via Claude API.
CVE-2026-63030CRITICALsob ataque27 jul 2026
WordPress < 7.0.2 - REST API batch-route confusion and SQL injection issue leading to Remote Code Execution
100RISCO
abrir
GitHub PoC
The bookingpress-appointment-booking-pro WordPress plugin before 5.7.3 does not correctly invoke its REST permission callback, leaving every route in one of its API namespaces reachable without authentication and allowing unauthenticated attackers to read customer booking data and modify other users' bookings.
CVE-2026-9830HIGH27 jul 2026
BookingPress Pro < 5.7.3 - Unauthenticated Customer PII Disclosure and Booking Tampering via Permission Callback Bug
41RISCO
abrir
GitHub PoC1
A poc for a vulnerability in ZTE File Manager (zte.com.cn.filer) which allows to read arbitrary files from other apps as the privileges of this file manager
CVE-2026-40000LOW27 jul 2026
Path Traversal Vulnerability in ZTE Blade A75 5G
28RISCO
abrir
GitHub PoC
Security Advisory: Unchecked Room Lookup Leads to Server Crash (Let's Chat)
CVE-2026-66749HIGH26 jul 2026
Let's Chat 0.4.0 - 0.4.8 Denial of Service via Null Dereference in Room Lookup
41RISCO
abrir
GitHub PoC
Security Advisory: Remote Denial of Service via Reachable Assertion in URL Prefix Handling (rouille)
CVE-2026-66754HIGH26 jul 2026
Rouille 0.1.6 - 3.6.2 Reachable Assertion DoS via remove_prefix percent-encoding
41RISCO
abrir
GitHub PoC
Adding --insecure to skip ssl
CVE-2026-60137MEDIUMsob ataque26 jul 2026
WordPress < 7.0.2 - Facilitated SQL Injection via author__not_in in WP_Query
100RISCO
abrir
GitHub PoC
Security Advisory: HTTP Header Injection via Unvalidated CR and LF in Header Values (tiny_http)
CVE-2026-66753MEDIUM26 jul 2026
tiny-http 0.12.0 HTTP Response Splitting via Header Injection
33RISCO
abrir
GitHub PoC2
PoC, IOCs, and detection logic for the SharePoint /_trust WS-Federation BinaryFormatter deserialization chain. Lab reconstruction covering unauthenticated RCE, in-process machine key theft, and the artifacts each variant leaves behind. SharePoint 2016, 2019, and Subscription Edition. CVE-2026-50522, CVE-2026-45659, CVE-2026-56164, CVE-2026-58644.
CVE-2026-50522CRITICALsob ataque26 jul 2026
Microsoft SharePoint Remote Code Execution Vulnerability
100RISCO
abrir
GitHub PoC
Security Advisory: Insufficient Access Controls Allow for Unauthorized Room Deletion (Let's Chat)
CVE-2026-66751MEDIUM26 jul 2026
Let's Chat 0.3.0 - 0.4.8 Improper Authorization via DELETE /rooms/:room
33RISCO
abrir
GitHub PoC
Security Advisory: Insufficient Access Controls Allow for Unauthorized File Downloads (Let's Chat)
CVE-2026-66750MEDIUM26 jul 2026
Let's Chat 0.3.0 - 0.4.8 Broken Access Control File Disclosure via GET /files route
33RISCO
abrir
GitHub PoC3
Critical authentication bypass exploit for cPanel/WHM CVE-2026-41940. Leverages CRLF injection in cpsrvd daemon to gain root WHM access without credentials. Includes version detection, verbose logging, proxy support, JSON reporting, and post-exploitation account enumeration. For authorized security testing only.
CVE-2026-41940CRITICALsob ataqueransomware26 jul 2026
WebPros cPanel and WHM Authentication Bypass via Login Flow
100RISCO
abrir
GitHub PoC
Security Advisory: Unauthenticated Path Traversal Allows Arbitrary File Read (TinyWeb)
CVE-2026-67185HIGH26 jul 2026
TinyWeb 0.0.8 Path Traversal via URL Path Component
41RISCO
abrir
GitHub PoC
Security Advisory: HTTP Request Smuggling Enables Front-End Access Control Bypass (rouille)
CVE-2026-67182MEDIUM26 jul 2026
Rouille 0.3.3 - 3.6.2 HTTP Request Smuggling via proxy Header Injection
33RISCO
abrir
GitHub PoC
Security Advisory: Unauthenticated Memory Leak Leads To Memory Exhaustion (TinyWeb)
CVE-2026-67183HIGH26 jul 2026
TinyWeb 0.0.8 Memory Leak DoS via HTTP Request Handling
41RISCO
abrir
GitHub PoC
Security Advisory: HTTP Response Splitting via Unvalidated Response Header Values (rouille)
CVE-2026-66746MEDIUM26 jul 2026
Rouille 0.4.0 - 3.6.2 HTTP Response Splitting via Header Injection
33RISCO
abrir
GitHub PoC
Security Advisory: HTTP Request Smuggling via Unparsed Transfer-Encoding Values (tiny_http)
CVE-2026-66752MEDIUM26 jul 2026
tiny-http 0.12.0 HTTP Request Smuggling via Transfer-Encoding Handling
33RISCO
abrir
GitHub PoC
Docker-based isolated proof-of-concept lab for analysing CVE-2021-44228 (Log4Shell) for the COMP6441 Security Engineering project.
CVE-2021-44228CRITICALsob ataqueransomware26 jul 2026
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISCO
abrir
GitHub PoC
Security Advisory: Unauthenticated NULL Pointer Dereference Crashes the Server (TinyWeb)
CVE-2026-67184HIGH26 jul 2026
TinyWeb 0.0.8 Null Pointer Dereference DoS via Malformed HTTP Request
41RISCO
abrir
GitHub PoC1
soralis0912/CVE-2026-43499-warhol-root
CVE-2026-43499HIGH26 jul 2026
rtmutex: Use waiter::task instead of current in remove_waiter()
41RISCO
abrir
GitHub PoC4
CVE-2026-43499 research port for Galaxy S24 Ultra SM-S928U1 DZF2 (in progress)
CVE-2026-43499HIGH26 jul 2026
rtmutex: Use waiter::task instead of current in remove_waiter()
41RISCO
abrir
GitHub PoC
SAML Single Sign On <= 5.4.4 - Unauthenticated Authentication Bypass via SAMLResponse Parameter
CVE-2026-15981CRITICAL26 jul 2026
SAML Single Sign On <= 5.4.4 - Unauthenticated Authentication Bypass via SAMLResponse Parameter
48RISCO
abrir
GitHub PoC
Security Advisory: HTTP Request Smuggling via Transfer-Encoding Desynchronization (rouille)
CVE-2026-67181MEDIUM26 jul 2026
Rouille 0.3.3 - 3.6.2 HTTP Request Smuggling via proxy Transfer-Encoding Header
33RISCO
abrir
GitHub PoC23
基于内核漏洞CVE-2026-43499的本地提权适配,集成嵌入式 KernelSU.CVE-2026-43499+KernelSU越狱模式
CVE-2026-43499HIGH26 jul 2026
rtmutex: Use waiter::task instead of current in remove_waiter()
41RISCO
abrir
GitHub PoC
Slidev presentation for Certighost (CVE-2026-54121), with Mermaid diagrams and exported assets.
CVE-2026-54121HIGH26 jul 2026
Active Directory Certificate Services Elevation of Privilege Vulnerability
41RISCO
abrir
GitHub PoC3
WPForms Pro <= 1.10.1.1 - Unauthenticated Arbitrary File Write via Chunked Upload Init/Finalize Ordering
CVE-2026-10818HIGH26 jul 2026
WPForms Pro <= 1.10.1.1 - Unauthenticated Arbitrary File Write via Chunked Upload Init/Finalize Ordering
41RISCO
abrir
anteriorpágina 27 / 500próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.