Publicly Disclosed
PoC Exploits

🔴 Alway take caution when working with PoC Exploits 🔴

Discovered just now...

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

Discovered 2 hours ago

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-7628

CrazyrabbitltcMcp-code-review-server5.3MEDIUM
Command Injection Vulnerability in crazyrabbitLTC Repository Manage...

A command injection vulnerability exists in the crazyrabbitLTC mcp-code-review-server, specifically within the executeRepomix function located in src/repomix.ts. This flaw allows an attacker to execute arbitrary commands on the server, potentially leading to unauthorized actions. The vulnerabilit...

Discovered 3 hours ago

PoC for CVE-2026-7627

8niteMetatrader-4-mcp5.3MEDIUM
Path Traversal Vulnerability in 8nite Metatrader-4-MCP Software

A security vulnerability exists in version 1.0.0 of 8nite Metatrader-4-MCP, specifically within the CallToolRequestSchema function in the software's src/index.ts file. This vulnerability arises due to improper handling of the 'ea_name' argument, allowing attackers to exploit path traversal issues...

PoC for CVE-2026-41940

WebprosCpanel🟣 EPSS 28%9.3CRITICAL
Authentication Bypass Vulnerability in cPanel and WHM

The affected versions of cPanel and WHM contain a serious authentication bypass flaw in the login flow. This vulnerability enables unauthenticated remote attackers to bypass authentication mechanisms, allowing them to gain unauthorized access to the control panel. Users of the specified versions ...

Discovered 4 hours ago

PoC for CVE-2026-7612

ItsourcecodeCourier Management System5.1MEDIUM
SQL Injection Vulnerability in itsourcecode Courier Management System

A SQL injection vulnerability exists in itsourcecode Courier Management System version 1.0, specifically within the /edit_user.php file. By manipulating the 'ID' parameter, an attacker can execute unauthorized SQL commands, potentially compromising the database from a remote location. This vulner...

Discovered 5 hours ago

PoC for CVE-2026-7609

TrendnetTew-821dap5.3MEDIUM
Command Injection Vulnerability in TRENDnet TEW-821DAP Firmware

A vulnerability in the TRENDnet TEW-821DAP device's diagnostic tool exposes users to potential os command injection attacks. The flaw is located in the firmware's diagnostic function, specifically within the '/tmp/diagnostic' file, allowing malicious actors to execute arbitrary commands remotely....

PoC for CVE-2026-41940

WebprosCpanel🟣 EPSS 28%9.3CRITICAL
Authentication Bypass Vulnerability in cPanel and WHM

The affected versions of cPanel and WHM contain a serious authentication bypass flaw in the login flow. This vulnerability enables unauthenticated remote attackers to bypass authentication mechanisms, allowing them to gain unauthorized access to the control panel. Users of the specified versions ...

PoC for CVE-2026-7608

TrendnetTew-821dap5.1MEDIUM
OS Command Injection Vulnerability in TRENDnet TEW-821DAP by TRENDnet

A significant vulnerability has been identified in the TRENDnet TEW-821DAP router models operating on firmware version 1.12B01. This vulnerability occurs in the tools_diagnostic function, which is susceptible to OS command injection. This allows attackers to execute arbitrary commands on the affe...

Discovered 6 hours ago

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

Discovered 8 hours ago

PoC for CVE-2026-7605

JeecgBootJeecgboot5.3MEDIUM
Server-Side Request Forgery in JeecgBoot Affects Multiple Versions

A security flaw has been identified in JeecgBoot, specifically in the function handling image upload, which can be exploited to perform server-side request forgery (SSRF). This vulnerability allows an attacker to manipulate requests in a way that may lead to unauthorized access to internal resour...

Discovered 9 hours ago

PoC for CVE-2026-41940

WebprosCpanel🟣 EPSS 28%9.3CRITICAL
Authentication Bypass Vulnerability in cPanel and WHM

The affected versions of cPanel and WHM contain a serious authentication bypass flaw in the login flow. This vulnerability enables unauthenticated remote attackers to bypass authentication mechanisms, allowing them to gain unauthorized access to the control panel. Users of the specified versions ...

PoC for CVE-2026-7604

JeecgJeecgboot5.3MEDIUM
Server-Side Request Forgery Vulnerability in JeecgBoot by Jeecg

A serious vulnerability has been found in JeecgBoot affecting versions up to 3.9.1, specifically within the OpenApi Service's OpenApiController. This issue allows for server-side request forgery (SSRF) due to improper handling of the originUrl parameter. Attackers can exploit this flaw remotely, ...

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

Discovered 10 hours ago

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-7603

Jeecg TechnologyJeecgboot5.3MEDIUM
Server-Side Request Forgery in JeecgBoot Application from Jeecg Tec...

A vulnerability exists in the JeecgBoot application, specifically within the function checkPathTraversalBatch of the FileDownloadUtils.java component, allowing for an exploit known as server-side request forgery (SSRF). This issue arises from improper handling of input within the LoadFile endpoin...

Discovered 11 hours ago

PoC for CVE-2026-7602

JeecgBootJeecgboot5.3MEDIUM
Improper Authorization in JeecgBoot File Handling Component

A vulnerability exists in JeecgBoot versions up to 3.9.1 that allows for improper authorization through the manipulation of the argument 'ruleClass' in the FillRuleUtil component's file handling functionality. This issue can be exploited remotely, posing significant security risks to affected sys...

Discovered 12 hours ago

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

Discovered 13 hours ago

PoC for CVE-2026-41940

WebprosCpanel🟣 EPSS 28%9.3CRITICAL
Authentication Bypass Vulnerability in cPanel and WHM

The affected versions of cPanel and WHM contain a serious authentication bypass flaw in the login flow. This vulnerability enables unauthenticated remote attackers to bypass authentication mechanisms, allowing them to gain unauthorized access to the control panel. Users of the specified versions ...

Discovered 14 hours ago

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-41940

WebprosCpanel🟣 EPSS 28%9.3CRITICAL
Authentication Bypass Vulnerability in cPanel and WHM

The affected versions of cPanel and WHM contain a serious authentication bypass flaw in the login flow. This vulnerability enables unauthenticated remote attackers to bypass authentication mechanisms, allowing them to gain unauthorized access to the control panel. Users of the specified versions ...

Discovered 15 hours ago

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

Discovered 16 hours ago

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-7599

DayooounHWPx-mcp5.3MEDIUM
Path Traversal Vulnerability in Dayoooun hwpx-mcp Software

A vulnerability has been identified in the Dayoooun hwpx-mcp software version 0.2.0, specifically within the MCP Interface's save_document, export_to_text, and export_to_html functions. This flaw allows an attacker to manipulate the argument output_path, leading to path traversal issues. As a res...

Discovered 17 hours ago

PoC for CVE-2026-7597

Mem0aiMem05.3MEDIUM
Deserialization Vulnerability in mem0ai mem0 Software

A deserialization vulnerability exists in the mem0ai mem0 software, specifically affecting versions up to 1.0.11. The issue arises within the pickle.load and pickle.dump functions located in mem0/vector_stores/faiss.py. Attackers can exploit this vulnerability remotely, allowing for unauthorized ...

PoC for CVE-2026-41940

WebprosCpanel🟣 EPSS 28%9.3CRITICAL
Authentication Bypass Vulnerability in cPanel and WHM

The affected versions of cPanel and WHM contain a serious authentication bypass flaw in the login flow. This vulnerability enables unauthenticated remote attackers to bypass authentication mechanisms, allowing them to gain unauthorized access to the control panel. Users of the specified versions ...

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-7596

NextlevelbuilderUi-ux-pro-max-skill5.3MEDIUM
Cross-Site Scripting Exposure in Nextlevelbuilder Slide Generator C...

A vulnerability exists in the Slide Generator component of Nextlevelbuilder's ui-ux-pro-max-skill up to version 2.5.0, specifically within the data.get function located in generate-slide.py. This flaw allows for remote cross-site scripting (XSS) attacks, enabling malicious actors to manipulate da...

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-7595

NextlevelbuilderUi-ux-pro-max-skill5.3MEDIUM
Code Injection Vulnerability in Nextlevelbuilder UI-UX-Pro-Max-Skil...

A code injection vulnerability was identified in the Nextlevelbuilder UI-UX-Pro-Max-Skill plugin, specifically within the Tailwind Config Generator component. This issue affects versions up to 2.5.0, where improper handling in the _format_plugins function of the tailwind_config_gen.py file allows...

Discovered 18 hours ago

PoC for CVE-2026-7594

Flux159Mcp-game-asset-gen6.9MEDIUM
Path Traversal Vulnerability in Flux159 MCP Game Asset Generator

A path traversal vulnerability exists in the image_to_3d_async function within the MCP Interface of Flux159's mcp-game-asset-gen version 0.1.0. This issue arises from improper handling of the statusFile argument, allowing attackers to manipulate file paths. Without adequate input validation, this...

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-7593

Sunwood-ai-labsCommand-executor-mcp-s...6.9MEDIUM
Command Injection Vulnerability in Sunwood-ai-labs Command-Executor...

A security vulnerability has been identified in the Sunwood-ai-labs command-executor-mcp-server, specifically in version 0.1.0 and earlier. This flaw resides in the execute_command function located in src/index.ts of the MCP Interface component. The vulnerability allows for potential OS command i...

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-7592

ItsourcecodeCourier Management System6.9MEDIUM
SQL Injection Vulnerability in Itsourcode Courier Management System

A vulnerability has been discovered in the Itsourcode Courier Management System version 1.0, specifically within the /edit_staff.php file. This flaw allows attackers to manipulate the ID argument, leading to SQL injection attacks. Consequently, an unauthorized user can execute remote queries agai...

Discovered 19 hours ago

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-7591

TimbroddinAstro-mcp-server5.3MEDIUM
SQL Injection Vulnerability in TimBroddin Astro MCP Server

A security flaw in the TimBroddin astro-mcp-server, specifically within the MCP Tool Query Construction component, allows for an SQL injection via crafted parameters in the request. An attacker can exploit this vulnerability remotely by manipulating the 'request.params.arguments' argument, which ...

PoC for CVE-2026-7590

Eyal-gorP 69 Branch Monkey Mcp6.9MEDIUM
OS Command Injection Vulnerability in Eyal-Gor p_69_branch_monkey_m...

A critical OS command injection vulnerability exists in the Eyal-Gor p_69_branch_monkey_mcp component, particularly within the Preview Endpoint's advanced.py file. By manipulating the 'dev_script' argument, attackers can execute arbitrary commands on the host system remotely. This vulnerability h...

Discovered 20 hours ago

PoC for CVE-2026-7589

GhantakiranSplunk-mcp-integration6.9MEDIUM
Path Traversal Vulnerability in CSV Export of Ghantakiran Splunk MC...

A vulnerability exists in the CSV Export function of Ghantakiran's Splunk MCP Integration, specifically within the create_csv_export function of the csv_export.py file. This vulnerability arises from improper handling of the job_name argument, allowing an attacker to exploit this weakness to perf...

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...

PoC for CVE-2026-7588

GgerveCoding-standards-mcp6.9MEDIUM
Path Traversal Vulnerability in ggerve Coding Standards-MCP Product

A path traversal vulnerability exists in the ggerve coding-standards-mcp product, specifically in the get_style_guide/get_best_practices function within the server.py file. The flaw arises from improper handling of the 'Language' argument, allowing attackers to traverse the file system remotely a...

Discovered 21 hours ago

PoC for CVE-2026-31431

LinuxLinux7.8HIGH
Vulnerability in Linux Kernel Affecting Crypto Operations

A vulnerability has been identified in the Linux kernel's crypto subsystem, specifically within the algif_aead component. This issue arises from an unnecessary complexity in operating in-place, which has been reverted for improved security and performance. The change eliminates the need for in-pl...