Publicly Disclosed
PoC Exploits

🔴 Alway take caution when working with PoC Exploits 🔴

Discovered just now...

PoC for CVE-2025-21479

QualcommSnapdragon8.6HIGH
Memory Corruption Vulnerability in Qualcomm GPU Micronode

This vulnerability allows unauthorized command execution in the GPU micronode, leading to potential memory corruption when a specific sequence of commands is executed. Attackers could exploit this weakness to disrupt system functionality or gain access to sensitive areas of memory, posing risks t...

Discovered 2 hours ago

PoC for CVE-2026-54121

MicrosoftWindows 10 Version 16078.8HIGH
Elevation of Privilege Vulnerability in Microsoft Active Directory ...

A vulnerability exists in Microsoft Active Directory Certificate Services (AD CS) that allows an authorized attacker to exploit improper authorization mechanisms to elevate privileges within a network. This weakness can potentially enable attackers to access sensitive information, configure permi...

Discovered 3 hours ago

PoC for CVE-2026-27577

N8n-ioN8n9.4CRITICAL
Expression Evaluation Exploit in n8n Workflow Automation Platform

n8n, an open-source workflow automation platform, has a vulnerability that allows authenticated users to exploit crafted expressions within workflow parameters. This can lead to unintended system command execution on the host machine. Versions 2.10.1, 2.9.3, and 1.123.22 have addressed these issu...

PoC for CVE-2026-61511

VbulletinVbulletin9.3CRITICAL
Eval Injection Vulnerability in vBulletin Versions 5.x and 6.x

The vBulletin platform, including versions 5.x up to 5.7.5 and 6.x up to 6.2.1, is susceptible to an eval injection vulnerability found in the vB5_Template_Runtime::runMaths() method. This issue can be leveraged by unauthenticated attackers who submit specially crafted inputs through the pagenav[...

Discovered 4 hours ago

PoC for CVE-2024-23659

SpipSPIP6.1MEDIUM
Cross-Site Scripting Vulnerability in SPIP by SPIP Team

The vulnerability allows an attacker to exploit an XSS flaw through the naming of uploaded files in SPIP versions prior to 4.1.14 and 4.2.8. This impacts users as malicious scripts can be injected via user-uploaded file names, potentially leading to unauthorized access or data manipulation. Affec...

Discovered 8 hours ago

PoC for CVE-2026-14870

WordPressDatabase For Contact F...
Reflected Cross-Site Scripting Vulnerability in WPforms by WordPress

A vulnerability exists in the WPforms plugin for WordPress due to insufficient sanitization and escaping of parameters reflected in the admin page. This oversight may enable attackers to conduct reflected cross-site scripting attacks, targeting users with high-level access, including administrato...

PoC for CVE-2026-14924

WordPressTablesome Table
Authentication Bypass in Tablesome Table Plugin for WordPress

The Tablesome Table plugin for WordPress, specifically versions prior to 1.1.31, has a significant vulnerability that allows unauthenticated users to perform malicious actions. This security flaw arises from the lack of necessary authentication, capability, or nonce checks within a specific AJAX ...

PoC for CVE-2026-14926

WordPressFluentcart A New Era O...
Improper Verification of Subscription Ownership in FluentCart Plugi...

The FluentCart A New Era of eCommerce WordPress plugin, prior to version 1.4.0, is susceptible to an improper access control vulnerability. This flaw permits authenticated users to manipulate other users' subscriptions without authorization. Specifically, it fails to ensure that a subscription re...

PoC for CVE-2026-14819

WordPressEvent Tickets And Regi...
Stored Cross-Site Scripting in Event Tickets and Registration Plugi...

The Event Tickets and Registration plugin for WordPress, prior to version 5.28.4, has a vulnerability where event titles are not appropriately sanitized before being logged in the ticket history. This oversight allows users with the Editor role or above to execute Stored Cross-Site Scripting atta...

PoC for CVE-2026-14545

WordPressTruebooker
Password Reset Vulnerability in TrueBooker WordPress Plugin

The TrueBooker WordPress plugin is susceptible to a vulnerability that allows unauthenticated attackers to reset passwords for any user account. This flaw exists because the plugin fails to properly validate account ownership during the password reset process. As a result, attackers can exploit t...

PoC for CVE-2026-14821

WordPressQuiz And Survey Master...
Arbitrary Template Deletion in Quiz and Survey Master Plugin for Wo...

The Quiz and Survey Master plugin for WordPress, prior to version 11.1.5, lacks proper capability checks, allowing users with contributor-level access or higher to delete output templates indiscriminately. This vulnerability can lead to unauthorized modifications and significant disruptions, part...

Discovered 10 hours ago

PoC for CVE-2026-40000

ZteBlade A75 5g1.8LOW
File Access Vulnerability in ZTE File Manager

The ZTE File Manager contains a vulnerability in its FilePreViewActivity which allows third-party applications to invoke this activity and provide arbitrary file paths. This behavior could potentially enable unauthorized access to various sensitive files within system directories such as /data/da...

Discovered 13 hours ago

PoC for CVE-2026-50522

MicrosoftMicrosoft Sharepoint E...🟣 EPSS 57%9.8CRITICAL
Deserialization Vulnerability in Microsoft SharePoint by Microsoft

The vulnerability allows an attacker to send specially crafted payloads to Microsoft Office SharePoint, potentially resulting in unauthorized remote code execution. This security flaw occurs due to the improper handling of untrusted data. If exploited, it could enable malicious actors to execute ...

Discovered 14 hours ago

PoC for CVE-2026-43499

LinuxLinux7.8HIGH
Linux Kernel Vulnerability in rtmutex Component Affecting Multiple ...

A vulnerability exists in the Linux kernel's rtmutex component where the remove_waiter() function incorrectly utilizes current instead of waiter::task during a dequeue operation within various mutex handling paths. This mismanagement leads to multiple issues, including potential use-after-free vu...

Discovered 16 hours ago

PoC for CVE-2026-65008

GetgravGrav9.3CRITICAL
Remote Code Execution Vulnerability in Grav by GetGrav

Grav version 2.0.4 is susceptible to a remote code execution vulnerability that arises from the improper handling of callable strings in Blueprint::dynamicData(). This vulnerability allows authenticated users with specific permissions (admin.pages or api.pages.write) to inject malicious commands ...

Discovered 18 hours ago

PoC for CVE-2026-9830

WordPressBookingpress-appointme...8.2HIGH
Unauthorized Access Vulnerability in BookingPress Appointment Booki...

The BookingPress Appointment Booking Pro plugin for WordPress prior to version 5.7.3 contains a vulnerability that fails to properly enforce REST API authentication. As a result, this oversight allows unauthenticated attackers to gain access to sensitive customer booking data and make unauthorize...

PoC for CVE-2026-54121

MicrosoftWindows 10 Version 16078.8HIGH
Elevation of Privilege Vulnerability in Microsoft Active Directory ...

A vulnerability exists in Microsoft Active Directory Certificate Services (AD CS) that allows an authorized attacker to exploit improper authorization mechanisms to elevate privileges within a network. This weakness can potentially enable attackers to access sensitive information, configure permi...

Discovered 20 hours ago

PoC for CVE-2026-66031

CreativeitemEkushey Project Manage...5.1MEDIUM
Stored Cross-Site Scripting Vulnerability in Ekushey Project Manage...

Ekushey Project Manager CRM versions up to 5.0 are susceptible to a stored cross-site scripting vulnerability. This flaw enables authenticated users to insert arbitrary HTML and JavaScript into the Reply Ticket field. Attackers can exploit this vulnerability by crafting malicious scripts that are...

PoC for CVE-2026-66030

CreativeitemEkushey Project Manage...5.1MEDIUM
Stored Cross-Site Scripting Vulnerability in Ekushey Project Manage...

Ekushey Project Manager CRM up to version 5.0 contains a stored cross-site scripting vulnerability that allows authenticated client users to input malicious HTML and JavaScript code via the Ticket Title field on the Create New Ticket page. This could lead to attackers being able to store and exec...

PoC for CVE-2026-66029

CreativeitemEkushey Project Manage...5.1MEDIUM
Stored Cross-Site Scripting Vulnerability in Ekushey Project Manage...

The Ekushey Project Manager CRM, up to version 5.0, is vulnerable to a stored cross-site scripting issue. This vulnerability allows authenticated users to enter malicious HTML and JavaScript code into the client Name field within the Edit Profile page without proper input sanitization. As a resul...

PoC for CVE-2026-66028

CreativeitemEkushey Project Manage...7.1HIGH
Missing Uniqueness Constraint in Ekushey Project Manager CRM Affect...

Ekushey Project Manager CRM version 5.0 has a vulnerability due to a missing uniqueness constraint that permits authenticated administrators to create multiple client accounts with the same email address. This flaw allows for conflicting account states where different passwords can be associated ...

PoC for CVE-2026-15013

WordPressSaml Single Sign On – ...9.8CRITICAL
Authentication Bypass Vulnerability in WordPress SAML Single Sign-O...

The SAML Single Sign-On plugin for WordPress, developed by miniOrange, is vulnerable to an authentication bypass due to improper handling of the SAML Signature Algorithm attribute. The vulnerability arises when the `mo_saml_cast_key()` function directly utilizes the `SignatureMethod` attribute fr...

Discovered 21 hours ago

PoC for CVE-2026-42533

F5Nginx Plus9.2CRITICAL
Heap Buffer Overflow in NGINX Plus and Open Source during Regex Map...

A vulnerability in NGINX Plus and NGINX Open Source arises when a map directive improperly utilizes regex matching in conjunction with string expressions referencing the map’s regex capture variables before the map output variable, or when non-cacheable variables are used under specific condition...

PoC for CVE-2026-66731

BoazsegevFacil.io8.7HIGH
Denial-of-Service Vulnerability in facil.io HTTP/1.1 Parser

facil.io versions 0.7.5 and 0.7.6 contain a vulnerability in the HTTP/1.1 chunked transfer encoding parser. An unauthenticated remote attacker can exploit this flaw by sending a specially crafted POST request with a negative chunk size value in the 'Transfer-Encoding: chunked' header. This manipu...

PoC for CVE-2026-66730

BoazsegevFacil.io8.7HIGH
Denial-of-Service Vulnerability in facil.io by Facil

The facil.io framework versions 0.6.0 to 0.7.6 contain a vulnerability in the multipart body parser that can lead to a denial-of-service condition. An unauthenticated remote attacker can exploit this flaw by sending specially crafted multipart/form-data requests with a partial closing boundary. T...

PoC for CVE-2026-66729

BoazsegevFacil.io8.7HIGH
Integer Underflow Vulnerability in facil.io Product

The facil.io product through version 0.7.6 is susceptible to an integer underflow vulnerability within its multipart MIME body parser. This flaw allows unauthenticated remote attackers to exploit the server by sending a specially crafted Content-Disposition header with an empty field name. Such a...

Discovered 22 hours ago

PoC for CVE-2026-17531

UnitedbyaiDroidclaw2.3LOW
Authorization Bypass in Unitedbyai Droidclaw Product

A vulnerability has been identified in the Unitedbyai Droidclaw up to version 0.5.3, specifically in the Unsigned Scheduled Callback feature within the file server/src/routes/goals.ts. This issue allows for authorization bypass, enabling unauthorized access to functionalities. The complexity of e...

PoC for CVE-2023-52076

Mate-desktopAtril8.5HIGH
Remote Code Execution Vulnerability in Atril's EPUB ebook parsing

Atril Document Viewer, the default document reader for the MATE desktop environment in Linux, is affected by a path traversal and arbitrary file write vulnerability in versions prior to 1.26.2. Attackers can exploit this flaw to write arbitrary files anywhere on the filesystem that the user has a...

PoC for CVE-2026-17530

AstrbotdevsAstrbot5.3MEDIUM
Authorization Flaw in AstrBot by AstrBotDevs

A significant security flaw has been identified in the AstrBot application developed by AstrBotDevs. This vulnerability affects the _build_handoff_toolset function in the astr_agent_tool_exec.py file, which is part of the Subagent component. The exploit allows attackers to manipulate the authoriz...

Discovered 23 hours ago

PoC for CVE-2026-17529

AstrbotdevsAstrbot5.3MEDIUM
Authorization Bypass in AstrBot by AstrBotDevs

A vulnerability has been discovered in AstrBot by AstrBotDevs, specifically impacting versions up to 4.25.5. The flaw resides in an unidentified function within the file astrbot/core/astr_main_agent.py, leading to improper authorization due to the manipulation of the argument req.func_tool. This ...

Discovered 1 day ago

PoC for CVE-2026-66050

NitroshareNitroshare-desktop8.7HIGH
Path Traversal Vulnerability in NitroShare Desktop by NitroShare

NitroShare Desktop versions up to 0.3.4 are vulnerable to a path traversal flaw within its LAN file transfer server. This vulnerability allows unauthenticated attackers on the same network to exploit the file transfer feature. By sending a specially crafted filename that contains directory traver...

PoC for CVE-2026-63030

WordPressWordPress🟣 EPSS 98%9.8CRITICAL
SQL Injection and Remote Code Execution in WordPress REST API

A confusion issue in the REST API batch endpoint of WordPress versions 6.9.x prior to 6.9.5 and 7.0.x prior to 7.0.2 could facilitate an exploit. This vulnerability, when combined with an existing SQL Injection flaw in the author__not_in WP_Query feature, can allow attackers to execute unauthoriz...

PoC for CVE-2026-17514

ZjonssonNode-unzipper4.8MEDIUM
Path Traversal Vulnerability in ZJONSSON Node-Unzipper Library

A path traversal vulnerability has been identified in the ZJONSSON node-unzipper library, specifically in the Extract function of lib/extract.js. This flaw allows attackers with local access to manipulate file paths during extraction processes, potentially leading to unauthorized file access. Alt...

PoC for CVE-2026-41179

RcloneRclone9.2CRITICAL
Unauthenticated Command Execution Vulnerability in Rclone by Rclone

The Rclone tool, designed for file synchronization with various cloud storage systems, has a vulnerability stemming from the unsecured RC endpoint `operations/fsinfo`. In versions 1.48.0 through 1.73.4, this endpoint allows unauthenticated attackers to send controlled `fs` input, which can instan...

PoC for CVE-2026-61511

VbulletinVbulletin9.3CRITICAL
Eval Injection Vulnerability in vBulletin Versions 5.x and 6.x

The vBulletin platform, including versions 5.x up to 5.7.5 and 6.x up to 6.2.1, is susceptible to an eval injection vulnerability found in the vB5_Template_Runtime::runMaths() method. This issue can be leveraged by unauthenticated attackers who submit specially crafted inputs through the pagenav[...

PoC for CVE-2026-61511

VbulletinVbulletin9.3CRITICAL
Eval Injection Vulnerability in vBulletin Versions 5.x and 6.x

The vBulletin platform, including versions 5.x up to 5.7.5 and 6.x up to 6.2.1, is susceptible to an eval injection vulnerability found in the vB5_Template_Runtime::runMaths() method. This issue can be leveraged by unauthenticated attackers who submit specially crafted inputs through the pagenav[...

PoC for CVE-2026-4861

WavlinkWl-nu516u18.7HIGH
Stack-based Buffer Overflow Vulnerability in Wavlink Product

A vulnerability has been discovered in the Wavlink WL-NU516U1 device, specifically affecting the function ftext located in the /cgi-bin/nas.cgi file. This issue arises due to improper handling of the Content-Length argument, leading to a stack-based buffer overflow. Attackers can exploit this vul...

PoC for CVE-2026-9830

WordPressBookingpress-appointme...8.2HIGH
Unauthorized Access Vulnerability in BookingPress Appointment Booki...

The BookingPress Appointment Booking Pro plugin for WordPress prior to version 5.7.3 contains a vulnerability that fails to properly enforce REST API authentication. As a result, this oversight allows unauthenticated attackers to gain access to sensitive customer booking data and make unauthorize...

PoC for CVE-2026-14827

WordPressCalendar6.8MEDIUM
Cross-Site Scripting Vulnerability in Calendar Plugin from WordPress

The Calendar Plugin for WordPress prior to version 1.3.18 is susceptible to Cross-Site Scripting (XSS) attacks due to inadequate escaping of user inputs. Specifically, the plugin fails to properly escape event fields submitted by users, which are then displayed in HTML attributes without sufficie...

PoC for CVE-2026-14568

WordPressUser Frontend: Ai Powe...6.5MEDIUM
Improper Authentication Vulnerability in User Frontend Plugin for W...

The User Frontend plugin for WordPress prior to version 4.3.8 contains a flaw that allows unauthorized users to delete attachments without proper verification of ownership. This flaw can be exploited by unauthenticated attackers, enabling them to permanently remove media uploaded by users without...

PoC for CVE-2026-14236

WordPressContact Form 74.7MEDIUM
Improper Input Validation in Contact Form 7 Plugin for WordPress

The Contact Form 7 plugin for WordPress prior to version 2.5 fails to properly validate the host of user-provided return URLs. This oversight allows an attacker to craft malicious links that redirect users to arbitrary external sites during the success or cancel phase of a Stripe checkout process...

PoC for CVE-2026-14820

WordPressQuiz And Survey Master...5.3MEDIUM
Vulnerability in Quiz and Survey Master Plugin for WordPress

The Quiz and Survey Master plugin for WordPress, prior to version 11.1.3, suffers from a vulnerability that allows unauthenticated attackers to perform username enumeration and brute-force attacks. The plugin lacks appropriate rate limiting and fails to log unsuccessful login attempts effectively...

PoC for CVE-2026-14289

WordPressFacturaone Para WooCom...9CRITICAL
Remote Code Execution Vulnerability in FacturaONE Plugin for WooCom...

The FacturaONE plugin for WooCommerce prior to version 5.37 holds a critical security flaw that lacks proper authentication mechanisms for one of its request handlers. This oversight stems from a default empty cryptographic key, exposing the plugin to unauthenticated attackers. Such attackers can...

PoC for CVE-2026-14203

WordPressSmart Manager4.8MEDIUM
Cross-Site Scripting Vulnerability in Smart Manager Plugin by WordP...

The Smart Manager plugin for WordPress versions prior to 8.92.0 contains a cross-site scripting vulnerability due to improper encoding of a post field before rendering it into an HTML attribute. This flaw allows users with the Contributor role or higher to inject malicious JavaScript code. When a...

PoC for CVE-2026-14190

WordPressSina Extension For Ele...6.1MEDIUM
Cross-Site Scripting Vulnerability in Sina Extension for Elementor ...

The Sina Extension for Elementor, a WordPress plugin, has a Cross-Site Scripting (XSS) vulnerability due to improper escaping of values reconstructed from user input in its unauthenticated AJAX handlers. This flaw allows unauthenticated attackers to inject and execute arbitrary JavaScript code in...

PoC for CVE-2026-14235

WordPressDownload Manager7.5HIGH
Insufficient Token Binding in Download Manager Plugin by WordPress

The Download Manager plugin for WordPress, prior to version 3.3.62, contains a flaw that allows generated download tokens to remain valid across multiple sessions without proper expiration. This oversight permits an unauthorized user to exploit a leaked download token and access role- or password...

PoC for CVE-2026-13726

WordPressMpg7.1HIGH
Reflected Cross-Site Scripting Vulnerability in MPG WordPress Plugin

The MPG WordPress plugin prior to version 4.1.8 is susceptible to a reflected cross-site scripting vulnerability. Due to improper sanitization and escaping of a specific parameter, unauthenticated attackers can exploit this flaw by crafting a malicious request. When a victim interacts with this r...

PoC for CVE-2026-14189

WordPressWPbot3.8LOW
WordPress Plugin Vulnerability in WPBot Allows SQL Injection via Ad...

The WPBot WordPress plugin, prior to version 8.5.2, is susceptible to SQL injection due to the failure to validate administrator-configured field identifiers before their use in SQL queries. This allows administrators, if compromised, to craft queries that can be executed when a visitor makes a s...

PoC for CVE-2026-13597

WordPress微信二维码登陆9.1CRITICAL
Improper Validation in WeChat Login Plugin for WordPress

The 微信二维码登陆 plugin for WordPress versions up to 1.3 contains a security flaw that permits unauthorized access through weak validation of webhook requests. The plugin's signature verification fails, allowing an attacker to simulate a login event for any existing user by intercepting the webhook re...

PoC for CVE-2026-13714

WordPressRealtyna Organic Idx P...9.8CRITICAL
File Upload Vulnerability in Realtyna Organic IDX and WPL Real Esta...

The Realtyna Organic IDX and WPL Real Estate WordPress plugins before version 5.3.0 allow unauthenticated users to upload arbitrary files through a file upload feature that lacks proper validation. This functionality is controlled by an API with hardcoded credentials enabled by default, exposing ...