Exploração pública
Catálogo de exploits
Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.
78.324exploits catalogados
36.054CVEs com exploração pública
24.695testados em laboratório
TodosExploit-DB 24.458Referência 22.721GitHub PoC 14.477VulnCheck XDB 8.829Nuclei 4.350Metasploit 3.489✓ só verificadosrecentespopularesrisco
22.721 exploits
Referência
CVE-2014-4960
Multiple SQL injection vulnerabilities in models\gallery.php in Youtube Gallery (com_youtubegallery) component 4.x throu
23RISCO
abrir ↗Referência
CVE-2014-4960
Multiple SQL injection vulnerabilities in models\gallery.php in Youtube Gallery (com_youtubegallery) component 4.x throu
23RISCO
abrir ↗Referência
CVE-2026-14632
kirilkirkov Ecommerce-CodeIgniter-Bootstrap Trusted Backend MY_Controller.php setReferrer redirect
33RISCO
abrir ↗Referência
CVE-2012-5900
Multiple SQL injection vulnerabilities in SAMEDIA LandShop 0.9.2 allow remote attackers to execute arbitrary SQL command
23RISCO
abrir ↗Referência
CVE-2018-5989
SQL Injection exists in the ccNewsletter 2.x component for Joomla! via the id parameter in a task=removeSubscriber actio
23RISCO
abrir ↗Referência
CVE-2018-5990
SQL Injection exists in the AllVideos Reloaded 1.2.x component for Joomla! via the divid parameter.
23RISCO
abrir ↗Referência
CVE-2018-5991
SQL Injection exists in the Form Maker 3.6.12 component for Joomla! via the id, from, or to parameter in a view=stats re
23RISCO
abrir ↗Referência
CVE-2012-6493
Cross-site request forgery (CSRF) vulnerability in Rapid7 Nexpose Security Console before 5.5.4 allows remote attackers
23RISCO
abrir ↗Referência
CVE-2026-6536
Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark
33RISCO
abrir ↗Referência
CVE-2018-6004
SQL Injection exists in the File Download Tracker 3.0 component for Joomla! via the dynfield[phone] or sess parameter.
23RISCO
abrir ↗Referência
CVE-2018-6084
Insufficiently sanitized distributed objects in Updater in Google Chrome on macOS prior to 66.0.3359.117 allowed a local
23RISCO
abrir ↗Referência
CVE-2018-6222
Arbitrary logs location in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to change location of log fi
23RISCO
abrir ↗Referência
CVE-2026-6197
Tenda F456 AdvSetWrlsafeset formWrlsafeset stack-based overflow
41RISCO
abrir ↗Referência
CVE-2026-6168
TOTOLINK A7000R cstecgi.cgi setWiFiEasyGuestCfg stack-based overflow
41RISCO
abrir ↗Referência
CVE-2026-6166
code-projects Vehicle Showroom Management System UpdateVehicleFunction.php sql injection
33RISCO
abrir ↗Referência
CVE-2026-3830
Product Filter for WooCommerce by WBW < 3.1.3 - Unauthenticated SQLi
41RISCO
abrir ↗Referência
CVE-2026-6165
code-projects Vehicle Showroom Management System Login_check.php sql injection
33RISCO
abrir ↗Referência
CVE-2026-6164
code-projects Lost and Found Thing Management addcat.php sql injection
33RISCO
abrir ↗Referência
CVE-2026-6163
code-projects Lost and Found Thing Management catageory.php sql injection
33RISCO
abrir ↗Referência
CVE-2026-6162
PHPGurukul Company Visitor Management System bwdates-reports-details.php cross site scripting
33RISCO
abrir ↗Referência
CVE-2026-6160
code-projects Simple ChatBox Endpoint chatbox.sql SimpleChatbox_PHP file information disclosure
33RISCO
abrir ↗Referência
CVE-2026-6159
code-projects Simple ChatBox Endpoint insert.php cross site scripting
33RISCO
abrir ↗Referência
CVE-2026-75093
sonos tract ONNX Initializer Loader tensor.rs from_raw_dt_align buffer size
33RISCO
abrir ↗Referência
Joomla! Component JMS Music 1.1.1 - SQL Injection
SQL Injection exists in the JMS Music 1.1.1 component for Joomla! via a search with the keyword, artist, or username par
23RISCO
abrir ↗Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.