Publicly Disclosed
PoC Exploits

πŸ”΄ Alway take caution when working with PoC Exploits πŸ”΄

Discovered 2 hours ago

PoC for CVE-2026-40369

MicrosoftWindows 11 Version 24h27.8HIGH
Windows Kernel Elevation of Privilege Vulnerability in Microsoft Pr...

A vulnerability in the Windows Kernel allows an authorized attacker to exploit an untrusted pointer dereference, potentially enabling them to gain higher privileges on the affected system. This could lead to unauthorized access to sensitive data and administrative functionalities. It's critical f...

Discovered 3 hours ago

PoC for CVE-2026-21018

SamsungSamsung Devices6.8MEDIUM
Out-of-Bounds Write in Samsung SveService Affects Local Privileged ...

An out-of-bounds write vulnerability in Samsung's SveService prior to SMR May-2026 Release 1 allows local privileged attackers to exploit the flaw and execute arbitrary code. This security issue highlights the importance of promptly applying updates and securing environments against potential una...

Discovered 7 hours ago

PoC for CVE-2026-49772

WordPressThe Events Calendar9.3CRITICAL
SQL Injection Vulnerability in The Events Calendar by Liquid Web / ...

An SQL injection vulnerability exists in The Events Calendar plugin developed by Liquid Web and StellarWP, allowing for unauthorized access to the database through specifically crafted SQL commands. This can lead to sensitive data exposure or manipulation, impacting the integrity and security of ...

PoC for CVE-2026-8163

WordPressInfility Global
SQL Injection Vulnerability in Infility Global WordPress Plugin

The Infility Global WordPress plugin, prior to version 2.15.19, is susceptible to a SQL Injection vulnerability caused by insufficient parameter sanitization and escaping. This flaw allows authenticated users with Subscriber-level access or higher to manipulate SQL queries, which could lead to un...

PoC for CVE-2026-8379

WordPressFrontend File Manager ...
File Download Vulnerability in Frontend File Manager Plugin by Word...

The Frontend File Manager Plugin for WordPress has a critical flaw in its nonce verification process on the file download handler. This weakness allows unauthorized users to download any files uploaded by users utilizing the plugin. Attackers can leverage this vulnerability by manipulating file i...

PoC for CVE-2026-8172

WordPressSimple Basic Contact Form
Reflected Cross-Site Scripting in Simple Basic Contact Form Plugin ...

The Simple Basic Contact Form plugin for WordPress, up to version 20250114, is susceptible to a reflected Cross-Site Scripting (XSS) vulnerability. This issue arises from inadequate escaping of user-supplied input, which can be exploited by unauthenticated attackers. By crafting malicious links o...

PoC for CVE-2026-8378

WordPressFrontend File Manager ...
Stored Cross-Site Scripting in Frontend File Manager Plugin for Wor...

The Frontend File Manager Plugin for WordPress prior to version 23.6 has a security flaw that fails to properly sanitize and escape filenames submitted via the frontend file-rename endpoint. This oversight allows for the potential injection of malicious scripts. As a result, a user with Subscribe...

PoC for CVE-2026-7842

WordPressInfility Global
SQL Injection Vulnerability in Infility Global WordPress Plugin

The Infility Global WordPress plugin prior to version 2.15.20 is susceptible to SQL injection due to improper sanitization and validation of input parameters in its admin page callbacks. This vulnerability allows authenticated users with Editor-level access or higher to manipulate SQL queries thr...

Discovered 10 hours ago

PoC for CVE-2025-48907

HuaweiHarmonyos6.2MEDIUM
Deserialization Vulnerability in Huawei IPC Module

A deserialization vulnerability has been identified in the IPC module by Huawei, which may compromise the availability of the affected systems. This issue arises from improper handling of serialized data, allowing unauthorized access or manipulation. Exploiting this vulnerability could lead to si...

Discovered 12 hours ago

PoC for CVE-2026-54806

WordPressWP Activity Log9.8CRITICAL
Unauthenticated PHP Object Injection in WP Activity Log by WP Secur...

The WP Activity Log plugin for WordPress versions up to 5.6.3.1 is susceptible to an unauthenticated PHP Object Injection vulnerability. This flaw allows attackers to exploit the application by injecting malicious PHP objects, potentially leading to undesirable operations on the system. As a resu...

Discovered 17 hours ago

PoC for CVE-2026-26030

MicrosoftSemantic-kernel10CRITICAL
Remote Code Execution Vulnerability in Microsoft's Python SDK for S...

The Semantic Kernel Python SDK from Microsoft contains a flaw within the `InMemoryVectorStore` filter functionality that may allow an attacker to execute arbitrary code remotely. This vulnerability impacts versions of the SDK released prior to 1.39.4. Users are strongly advised to upgrade to vers...

PoC for CVE-2026-39904

GophishGophish7.1HIGH
Denial of Service Vulnerability in Gophish by Phish Insight

Gophish version 0.12.1 exhibits a denial of service vulnerability that allows authenticated users with limited access (User role) to overwhelm server resources. By uploading a specially crafted Office document as an email template attachment, an attacker can exploit the ApplyTemplate() function. ...

PoC for CVE-2026-42945

F5Nginx Plus🟣 EPSS 23%9.2CRITICAL
Heap Buffer Overflow in NGINX Plus and NGINX Open Source Affecting ...

A vulnerability exists in the ngx_http_rewrite_module of NGINX Plus and NGINX Open Source, triggered when a rewrite directive is followed by an if or set directive that includes a Perl-Compatible Regular Expression (PCRE) capture and a replacement string with a question mark. Attackers can exploi...

Discovered 19 hours ago

PoC for CVE-2026-48908

Joomshaper.netSp Page Builder Extens...10CRITICAL
Arbitrary File Upload in SP Page Builder for Joomla

A vulnerability in the SP Page Builder for Joomla permits unauthenticated users to upload arbitrary files. This weakness can lead to the execution of PHP code, presenting significant security risks for Joomla websites using this extension.

PoC for CVE-2026-46300

LinuxLinux7.8HIGH
Shared Fragment Marker Issue in Linux Kernel Network Functionality

A vulnerability in the Linux kernel affects the handling of shared-frag markers during packet coalescing. Specifically, the function skb_try_coalesce() can improperly transfer ownership of page-backed fragments without preserving the shared-frag marker. This loss can disrupt later processing, not...

Discovered 20 hours ago

PoC for CVE-2026-25541

Tokio-rsBytes5.5MEDIUM
Integer Overflow Vulnerability in Utility Library Affects Tokio's B...

The Bytes utility library, utilized for byte manipulation, is susceptible to an integer overflow issue. This vulnerability arises from the BytesMut::reserve function, where an unchecked addition could lead to an incorrect capacity assignment. When the allocated capacity is exceeded during certain...

PoC for CVE-2025-55182

MetaReact-server-dom-webpack🟣 EPSS 100%10CRITICAL
Remote Code Execution Vulnerability in React Server Components by Meta

A remote code execution vulnerability found in React Server Components allows attackers to exploit improperly handled payloads. This issue affects versions 19.0.0 through 19.2.0, compromising server function endpoints through unsafe deserialization of HTTP request payloads. As a result, this flaw...

Discovered 21 hours ago

PoC for CVE-2026-56109

Alsa-projectAlsa-lib7HIGH
Double-Free Vulnerability in Advanced Linux Sound Architecture Libr...

The Advanced Linux Sound Architecture (ALSA) library prior to version 1.2.16.1 is susceptible to a double-free vulnerability located in the parse_def() function within src/conf.c. This vulnerability enables attackers to manipulate memory by providing specially crafted ALSA configuration files. Du...

Discovered 1 day ago

PoC for CVE-2026-4020

WordPressGravity Smtp7.5HIGH
Sensitive Information Exposure in Gravity SMTP Plugin for WordPress

The Gravity SMTP plugin for WordPress contains a vulnerability that allows unauthenticated visitors to access sensitive system configuration data through a REST API endpoint. Specifically, the endpoint at /wp-json/gravitysmtp/v1/tests/mock-data can be exploited due to a permission callback that a...

PoC for CVE-2025-68613

N8n-ioN8n🟣 EPSS 98%10CRITICAL
Remote Code Execution Vulnerability in n8n Automation Platform

n8n, an open-source workflow automation platform, has a Remote Code Execution vulnerability affecting specific versions. Authenticated users can inadvertently supply expressions that, under certain circumstances, are evaluated in a context insufficiently isolated from the runtime. This flaw enabl...

PoC for CVE-2026-48909

Joomshaper.netSp Lms Extension For J...9.5CRITICAL
Remote Code Execution Vulnerability in SP LMS by JoomShaper

The SP LMS component (com_splms) version prior to 4.1.4 by JoomShaper contains a vulnerability that allows unauthenticated attackers to execute arbitrary code on the server. This issue arises from the unsanitized deserialization of user-controlled cookie data, posing significant security risks fo...

PoC for CVE-2026-39676

WordPressDownload Manager5.3MEDIUM
Missing Authorization Vulnerability in Shahjada Download Manager by...

The Shahjada Download Manager is affected by a missing authorization vulnerability that allows attackers to exploit incorrectly configured access control security levels. This issue enables unauthorized users to gain access to restricted functionality, potentially leading to data exposure or furt...

PoC for CVE-2026-6858

WordPressTransbank Webpay7.1HIGH
Stored XSS Vulnerability in Transbank Webpay Plugin for WordPress

The Transbank Webpay plugin for WordPress, prior to version 1.14.0, exposes a vulnerability due to improper sanitization and escaping of logs. This flaw allows unauthenticated attackers to execute Stored XSS attacks, potentially compromising the accounts of logged-in administrators. Such vulnerab...

PoC for CVE-2026-8157

WordPressVitepos8.8HIGH
Privilege Escalation in Vitepos WordPress Plugin by Vitepos

The Vitepos WordPress plugin prior to version 3.4.2 contains a vulnerability that fails to adequately restrict user roles during the creation of new users via its REST API endpoints. This oversight permits authenticated users assigned with custom roles to elevate their permissions to that of an a...

PoC for CVE-2026-7859

WordPressMotors5.3MEDIUM
Authorization and CSRF Flaw in Motors Plugin by WordPress

The Motors WordPress plugin, prior to version 1.4.110, is susceptible to a security issue that lacks sufficient authorization and Cross-Site Request Forgery (CSRF) safeguards within one of its AJAX functions. This flaw allows unauthenticated attackers to manipulate arbitrary post metadata, which ...

PoC for CVE-2026-4259

WordPressUltimate-WooCommerce-a...7.1HIGH
Reflected Cross-Site Scripting in Ultimate WooCommerce Auction Pro ...

The Ultimate WooCommerce Auction Pro plugin for WordPress before version 2.4.5 is vulnerable to reflected cross-site scripting (XSS). This vulnerability allows attackers to inject malicious scripts through unsanitized user input, specifically targeting the output displayed on the web page. As a r...

PoC for CVE-2026-10530

WordPressPie Register5.3MEDIUM
Account Verification Flaw in Pie Register Plugin by WordPress

The Pie Register WordPress plugin prior to version 3.8.4.10 contains a security flaw that stems from insufficient randomness in its account verification token generation. This weakness allows attackers without authorization to predict valid tokens. Consequently, they can activate accounts without...

PoC for CVE-2026-4110

WordPressUltimate-WooCommerce-a...6.1MEDIUM
Reflected Cross-Site Scripting in Ultimate WooCommerce Auction Pro ...

The Ultimate WooCommerce Auction Pro WordPress plugin versions up to 2.4.5 are susceptible to a Reflected Cross-Site Scripting vulnerability. This flaw arises due to improper handling of user input, allowing any attacker to craft a malicious link that, when accessed by high-privilege users such a...

PoC for CVE-2026-43655

AppleiOS And iPad OS7.3HIGH
Out-of-Bounds Read Vulnerability in Apple Operating Systems

This vulnerability allows an application to perform out-of-bounds read operations, potentially leading to unexpected system termination or unauthorized access to kernel memory. Apple has resolved this issue in the latest updates for its operating systems, enhancing their security by implementing ...

Discovered 2 days ago

PoC for CVE-2026-12823

BrowserbaseBrowserbase4.8MEDIUM
Insecure File Permissions in Browserbase Autobrowse Component

A significant security flaw has been identified in the Autobrowse Trace Artifact Handler component of Browserbase, affecting versions prior to 20260526. The issue involves incorrect default permissions, which could potentially allow unauthorized access or manipulation of sensitive files. This vul...

PoC for CVE-2026-12823

BrowserbaseBrowserbase4.8MEDIUM
Insecure File Permissions in Browserbase Autobrowse Component

A significant security flaw has been identified in the Autobrowse Trace Artifact Handler component of Browserbase, affecting versions prior to 20260526. The issue involves incorrect default permissions, which could potentially allow unauthorized access or manipulation of sensitive files. This vul...

PoC for CVE-2026-24688

Py-PDFPyPDF5.1MEDIUM
Infinite Loop Vulnerability in pypdf PDF Library

An infinite loop vulnerability exists in the pypdf library for Python, affecting versions prior to 6.6.2. An attacker can exploit this vulnerability by crafting a specially designed PDF file that triggers an infinite loop when accessing outlines or bookmarks. This can lead to unresponsive behavio...

PoC for CVE-2026-21858

N8n-ioN8n🟣 EPSS 72%10CRITICAL
Vulnerability in n8n Workflow Automation Platform Could Lead to Sen...

The n8n workflow automation platform has a vulnerability in versions ranging from 1.65.0 to just below 1.121.0, which allows potential attackers to exploit specific form-based workflows. This flaw can enable unauthorized remote access to sensitive files on the underlying server, posing a signific...

PoC for CVE-2025-55182

MetaReact-server-dom-webpack🟣 EPSS 100%10CRITICAL
Remote Code Execution Vulnerability in React Server Components by Meta

A remote code execution vulnerability found in React Server Components allows attackers to exploit improperly handled payloads. This issue affects versions 19.0.0 through 19.2.0, compromising server function endpoints through unsafe deserialization of HTTP request payloads. As a result, this flaw...

PoC for CVE-2025-48384

GitGit8.1HIGH
Code Execution Risk in Git Due to Submodule Path Handling

A vulnerability exists in Git that affects how configuration values are read and written, particularly regarding trailing carriage returns. When a submodule path includes a trailing carriage return, it is altered when read back, which can cause the submodule to be checked out to an incorrect loca...

PoC for CVE-2025-32463

Sudo ProjectSudo🟣 EPSS 48%9.3CRITICAL
Sudo Vulnerability in Chroot Mode Affects Local User Access

The Sudo software, prior to version 1.9.17p1, contains a vulnerability that enables local users to gain root access through improper handling of configuration files. Specifically, when the optional --chroot command is used, the software incorrectly processes the /etc/nsswitch.conf file from a use...

PoC for CVE-2025-29927

VercelNext.js🟣 EPSS 98%9.1CRITICAL
Authorization Bypass in Next.js Framework by Vercel

A security flaw exists in the Next.js framework that allows an attacker to bypass authorization checks if such checks are implemented in middleware. This vulnerability arises in versions prior to 14.2.25 and 15.2.3. To mitigate risk, it is recommended to restrict incoming requests that include th...

PoC for CVE-2025-29384

TendaAC9 Router9.8CRITICAL
Stack Overflow Vulnerability in Tenda AC9 Router

A stack overflow vulnerability exists in the wanMTU parameter of the /goform/AdvSetMacMtuWan endpoint in Tenda AC9 router version 1.0 V15.03.05.14_multi. This vulnerability could allow an attacker to execute arbitrary code remotely, potentially leading to unauthorized access and control over the ...

PoC for CVE-2025-24893

XwikiXwiki-platform🟣 EPSS 100%9.8CRITICAL
Remote Code Execution Vulnerability in XWiki Platform by XWiki SAS

The XWiki Platform is vulnerable due to improper handling of inputs, allowing unauthenticated users to execute arbitrary code via the `SolrSearch` endpoint. This can result in significant breaches of confidentiality, integrity, and availability of the XWiki installation. Users are encouraged to u...

PoC for CVE-2025-24071

MicrosoftWindows 10 Version 1507🟣 EPSS 25%6.5MEDIUM
Spoofing Vulnerability in Microsoft Windows File Explorer

The vulnerability in Microsoft Windows File Explorer poses a security risk by allowing unauthorized access to sensitive information. In an environment where it is present, attackers can exploit this flaw to spoof identities over a network, potentially compromising data integrity and confidentiali...

PoC for CVE-2025-24054

MicrosoftWindows 10 Version 1507🟣 EPSS 59%6.5MEDIUM
Spoofing Vulnerability in Windows NTLM by Microsoft

An external control of file name or path in Windows NTLM enables unauthorized attackers to exploit a vulnerability, leading to potential spoofing attacks over a network. This situation poses a significant threat as attackers may gain access to sensitive information or systems.

PoC for CVE-2026-12814

ComfastCf-wr631ax V35.3MEDIUM
OS Command Injection in Comfast CF-WR631AX V3 Leading to Remote Exp...

A security vulnerability in the Comfast CF-WR631AX V3 router impacts the API Endpoint due to improper handling of input parameters in the mbox-config system. An attacker can exploit this vulnerability to inject arbitrary OS commands remotely, leading to potential system compromise. Despite attemp...

PoC for CVE-2026-12813

ActivepiecesActivepieces5.3MEDIUM
Server-Side Request Forgery in Activepieces File URL Handler by Act...

A vulnerability was identified in Activepieces up to version 0.83.0, specifically within the handleUrlFile function of the File URL Handler component. This flaw enables remote attackers to exploit server-side request forgery (SSRF), allowing them to send unauthorized requests from the server to i...

PoC for CVE-2026-12811

Kortix-aiSuna5.3MEDIUM
Cross-Site Scripting Vulnerability in Kortix AI Suna Auth Endpoint

A cross-site scripting vulnerability has been identified in the Auth Endpoint of Kortix AI Suna, up to version 0.8.38. This issue allows a remote attacker to manipulate the returnURL parameter in the function router.replace/router.push within the file apps/frontend/src/app/auth/page.tsx. This vul...

PoC for CVE-2026-12810

EdimaxBr-6478ac V25.3MEDIUM
Command Injection Vulnerability in Edimax BR-6478AC V2 Router

A security flaw has been identified in the Edimax BR-6478AC V2 router, specifically in the POST Request Handler component. This vulnerability allows an attacker to manipulate the command argument in the function 'mp' of the file '/goform/mp', potentially executing unauthorized commands. The explo...

PoC for CVE-2026-12809

EdimaxBr-6478ac V25.3MEDIUM
Command Injection Vulnerability in Edimax BR-6478AC V2 Router

A command injection vulnerability exists in the Edimax BR-6478AC V2 router, specifically in the 'wiz_5in1_redirect' function within the /goform/wiz_5in1_redirect component. This flaw allows an attacker to manipulate the 'newpass' argument, potentially executing arbitrary commands on the device. G...

PoC for CVE-2025-59536

AnthropicsClaude-code🟣 EPSS 29%8.7HIGH
Code Injection Vulnerability in Claude Code by Anthropic

Claude Code, an advanced coding tool by Anthropic, had a critical flaw allowing code injection via the startup trust dialog. Attackers could potentially manipulate the application to execute arbitrary code in untrusted directories before the user acknowledges the trust dialog. Users operating wit...

PoC for CVE-2025-53887

DirectusDirectus5.3MEDIUM
OpenAPI Specification Exposure in Directus API Management Tool

A vulnerability exists in the Directus API management tool where the exact version number is revealed through the OpenAPI Specification at the '/server/specs/oas' endpoint without requiring authentication. This exposure allows attackers to identify potential weaknesses in the Directus core and it...

PoC for CVE-2026-12808

EdimaxBr-6478ac V25.3MEDIUM
Command Injection Vulnerability in Edimax BR-6478AC V2

A command injection vulnerability exists in the Edimax BR-6478AC V2 router, specifically within the POST request handler for the 'stainfo' function. This flaw allows remote attackers to manipulate input arguments, enabling unauthorized execution of commands. The issue has been publicly disclosed,...

PoC for CVE-2026-12807

EdimaxBr-6478ac V25.3MEDIUM
Command Injection Vulnerability in Edimax BR-6478AC V2 Router

A critical command injection vulnerability exists in the Edimax BR-6478AC V2 router, specifically affecting the setWAN function within the POST Request Handler. This flaw allows attackers to manipulate parameters such as pppUserName, pptpUserName, and L2TPUserName to execute arbitrary commands re...