Publicly Disclosed
PoC Exploits

🔴 Alway take caution when working with PoC Exploits 🔴

Discovered just now...

PoC for CVE-2026-24031

Open-xchange GmbhOx Dovecot Pro7.7HIGH
Authentication Bypass Vulnerability in Dovecot by Open-Xchange

An authentication bypass vulnerability exists in Dovecot SQL authentication, where an administrator can inadvertently disable the 'auth_username_chars' configuration. This misconfiguration allows attackers to bypass authentication checks, potentially enabling unauthorized access and user enumerat...

PoC for CVE-2026-54984

MicrosoftWindows 10 Version 16077.8HIGH
Heap-based Buffer Overflow in Windows Imaging Component by Microsoft

A heap-based buffer overflow vulnerability exists in the Windows Imaging Component, which could allow an unauthorized attacker to execute arbitrary code locally. This flaw can be exploited by malicious actors to manipulate memory allocation and potentially gain unauthorized access to system resou...

PoC for CVE-2026-39987

Marimo-teamMarimo🟣 EPSS 97%9.3CRITICAL
Pre-Authentication Remote Code Execution in Marimo Python Notebook

Marimo, a reactive Python notebook, exhibits a significant security vulnerability prior to version 0.23.0. The terminal WebSocket endpoint (/terminal/ws) allows unauthenticated access, enabling attackers to gain a complete pseudo-terminal shell and execute arbitrary commands on the host system. U...

Discovered 1 hour ago

PoC for CVE-2020-8597

Point-to-point Pr...Point-to-point Protocol🟣 EPSS 20%9.8CRITICAL
Buffer Overflow in PPP Daemon Affects Multiple Platforms

The vulnerability in the PPP Daemon (pppd) versions 2.4.2 through 2.4.8 is a buffer overflow issue found in the eap_request and eap_response functions. This flaw can potentially allow an unauthorized attacker to exploit the overflow, leading to arbitrary code execution or causing the application ...

Discovered 3 hours ago

PoC for CVE-2026-68398

LinuxLinux
Use-After-Free in Linux Kernel Pppol2tp Functionality

The vulnerability within the Linux kernel occurs in the pppol2tp_recv() function, which fails to properly manage memory deallocation in a multi-threaded environment. This oversight allows an unprivileged user to potentially exploit the system by dereferencing a channel that has already been freed...

Discovered 4 hours ago

PoC for CVE-2026-59827

MetabaseMetabase9.9CRITICAL
Deserialization Flaw in Metabase's H2 Database Connection

Metabase, an open-source business intelligence and embedded analytics tool, suffers from a deserialization vulnerability in versions prior to 1.58.15, 1.59.12, 1.60.6.3, and 1.61.1.4. When configured with an H2 database connection, including the default sample database, this flaw permits authenti...

PoC for CVE-2026-28956

AppleiOS And iPad OS6.5MEDIUM
Memory Corruption Issue in Apple Products due to Malicious Media Files

This vulnerability involves a memory corruption issue that arises when processing specially crafted media files, which can lead to unintended app termination or memory corruption in affected Apple devices. Apple has addressed this flaw with enhanced input validation in the latest versions of thei...

Discovered 5 hours ago

PoC for CVE-2026-23111

LinuxLinux7.8HIGH
Local Privilege Escalation Vulnerability in Linux Kernel Utilizing ...

A vulnerability exists in the Linux kernel's netfilter module that affects the nft_map_catchall_activate() function. This function encounters an inverted element activity check, leading to a failure in appropriately handling catchall map elements during a failed transaction. The bug arises when t...

Discovered 10 hours ago

PoC for CVE-2026-43499

LinuxLinux7.8HIGH
Linux Kernel Vulnerability in rtmutex Component Affecting Multiple ...

A vulnerability exists in the Linux kernel's rtmutex component where the remove_waiter() function incorrectly utilizes current instead of waiter::task during a dequeue operation within various mutex handling paths. This mismanagement leads to multiple issues, including potential use-after-free vu...

Discovered 11 hours ago

PoC for CVE-2026-50656

MicrosoftMicrosoft Malware Prot...🟣 EPSS 11%7.8HIGH
Elevation of Privilege in Microsoft Defender by Microsoft

Microsoft has identified a vulnerability in the Microsoft Malware Protection Engine associated with Microsoft Defender, allowing unauthorized elevation of privilege. This vulnerability, called 'RoguePlanet', could enable an attacker to gain escalated access to the system. Microsoft is currently d...

Discovered 14 hours ago

PoC for CVE-2022-3590

WordPressWordPress5.9MEDIUM
WP <= 6.1.1 - Unauthenticated Blind SSRF via DNS Rebinding

WordPress is affected by an unauthenticated blind SSRF in the pingback feature. Because of a TOCTOU race condition between the validation checks and the HTTP request, attackers can reach internal hosts that are explicitly forbidden.

Discovered 16 hours ago

PoC for CVE-2026-18044

WordPressEstatik Real Estate Pl...3.7LOW
Arbitrary Email Sending Flaw in Estatik Real Estate Plugin for Word...

The Estatik Real Estate Plugin for WordPress features a significant flaw where it fails to properly validate the recipient list intended for messages generated via its property request form. This oversight allows unauthenticated users to exploit the functionality and send emails to any arbitrary ...

PoC for CVE-2026-17008

WordPressQuick Paypal Payments5.3MEDIUM
Payment Processing Flaw in Quick Paypal Payments Plugin by WordPress

The Quick Paypal Payments WordPress plugin versions prior to 5.7.50 contains a security weakness in its PayPal IPN handler. This vulnerability allows an attacker to exploit the payment confirmation process by matching order tokens without validating key transaction details such as the paid amount...

PoC for CVE-2026-16747

WordPressKirki6.5MEDIUM
Inadequate Authorization in Kirki WordPress Plugin Allows Unauthori...

The Kirki WordPress plugin prior to version 6.2.1 is susceptible to inadequate authorization that affects its front-end form submission REST routes. This vulnerability allows unauthenticated attackers to exploit the system by executing any registered shortcodes, which can lead to significant issu...

PoC for CVE-2026-16990

WordPressPayment Button For Paypal5.3MEDIUM
Improper Input Validation in PayPal Payment Button Plugin by WordPress

The Payment Button for PayPal WordPress plugin prior to version 1.2.3.44 features a significant vulnerability related to improper input validation. This security flaw allows unauthenticated users to manipulate the payment amount by sending a client-supplied payment value that is not properly vali...

PoC for CVE-2026-16621

WordPressPayment Gateway For Pa...5.3MEDIUM
Payment Gateway Flaw in WooCommerce Plugin by WordPress

The Payment Gateway for PayPal in the WooCommerce plugin prior to version 9.2.1 contains a vulnerability that compromises the integrity of payment processing. It fails to validate whether a payment was successfully completed before marking orders as paid. The exploit allows an unauthenticated att...

PoC for CVE-2026-15213

WordPressWelcart E-commerce5.3MEDIUM
Unauthenticated Order Settlement in Welcart e-Commerce WordPress Pl...

The Welcart e-Commerce plugin for WordPress is susceptible to a significant vulnerability where it fails to properly verify the authenticity of callback requests related to convenience-store and bank-transfer settlements. This flaw allows an unauthenticated attacker to change the status of an ord...

PoC for CVE-2026-15045

WordPressWallet System For WooC...6.5MEDIUM
Wallet System for WooCommerce Plugin Vulnerability in WordPress

The Wallet System for WooCommerce WordPress plugin version prior to 2.7.10 is vulnerable due to a lack of validation for user-supplied wallet amounts during the checkout process. This failure allows authenticated users to reduce their order total arbitrarily, including the possibility of setting ...

Discovered 20 hours ago

PoC for CVE-2026-68138

LinuxLinux
Race Condition in Linux Kernel's Networking Subsystem - Affected Pr...

A vulnerability exists in the Linux kernel's networking subsystem that allows for a race condition involving qdisc_rtab_list. This occurs when multiple CPU cores attempt to access and modify the same singly linked list of rate tables concurrently. The lack of proper synchronization mechanisms can...

Discovered 21 hours ago

PoC for CVE-2026-23745

IsaacsNode-tar8.2HIGH
Arbitrary File Overwrite Vulnerability in node-tar by Isaac Schlueter

The node-tar library, utilized for handling tar files in Node.js, has a security flaw affecting versions up to 7.5.2. This vulnerability arises from an inadequate sanitization of link paths in both hardlink and symbolic link entries when the preservePaths option is disabled (which is the default ...

PoC for CVE-2026-19217

WordPressRoyal Addons For Eleme...5.4MEDIUM
Stored Cross-Site Scripting Vulnerability in Royal Addons for Eleme...

The Royal Addons for Elementor plugin for WordPress, prior to version 1.7.1065, contains a vulnerability that fails to adequately validate widget settings when generating HTML outputs. This oversight allows users with Contributor roles or higher to inject malicious scripts, facilitating Stored Cr...

PoC for CVE-2026-19052

WordPressProsolution WP Client4.3MEDIUM
Unauthorized Access in ProSolution WP Client Plugin for WordPress

The ProSolution WP Client plugin for WordPress, prior to version 2.0.9, suffers from a serious security flaw due to inadequate checks on administrative AJAX actions. This oversight permits any authenticated user, including those with limited roles such as subscribers, to invoke administrative dat...

PoC for CVE-2026-19073

WordPressOrder Sync With Zendes...5.3MEDIUM
REST API Vulnerability in Order Sync Plugin for WooCommerce by Word...

The Order Sync with Zendesk for WooCommerce plugin prior to version 2.2.3 fails to implement necessary capability checks on its REST API endpoints. This oversight allows unauthenticated users to gain access to sensitive customer information, including order history and total purchases, simply by ...

PoC for CVE-2026-19050

WordPressProsolution WP Client6.4MEDIUM
Server-side Request Forgery in ProSolution WP Client Plugin

The ProSolution WP Client WordPress plugin prior to version 2.0.9 has a critical security flaw that permits authenticated users to leverage an unvalidated URL input for server-side HTTP requests. Due to the lack of validation on the user-supplied URL and insufficient checks on user capabilities o...

PoC for CVE-2026-18943

WordPressWPc Admin Columns6.5MEDIUM
Authorization Bypass in WPC Admin Columns Plugin for WordPress

The WPC Admin Columns plugin for WordPress prior to version 2.3.4 lacks proper authorization checks in one of its AJAX actions. This oversight permits users with minimal roles, such as subscribers, to access and read arbitrary user, post, and term metadata, potentially exposing sensitive informat...

PoC for CVE-2026-18962

WordPressWP Photo Album Plus4.3MEDIUM
File Upload Vulnerability in WP Photo Album Plus Plugin by WordPress

The WP Photo Album Plus WordPress plugin, prior to version 9.2.09.002, fails to enforce user authorization when allowing front-end uploads. This oversight enables any authenticated user, including those with minimal access such as Subscribers, to upload files to albums owned by others, including ...

PoC for CVE-2026-18366

WordPressEvents Manager9.8CRITICAL
Access Control Flaw in Events Manager Plugin Allows Unauthorized Us...

The Events Manager plugin for WordPress prior to version 7.4.1 contains a significant access control vulnerability. This flaw arises from improper scoping of capability mapping, which negates the access control measures implemented by WordPress for unrelated privileged actions. As a result, unaut...

PoC for CVE-2026-18391

WordPressWooCommerce Subscriptions9.8CRITICAL
PHP Object Injection Vulnerability in WooCommerce Subscriptions by ...

The WooCommerce Subscriptions plugin, prior to version 9.1.0, is vulnerable to PHP Object Injection when operating on stores that have High-Performance Order Storage enabled. This vulnerability allows unauthenticated users to exploit the weakness by injecting malicious serialized objects. By leve...

PoC for CVE-2026-18789

WordPressEzoic7.5HIGH
Access Control Flaw in Ezoic WordPress Plugin

An access control vulnerability exists in the Ezoic WordPress plugin prior to version 2.23.1, which fails to adequately restrict access to its content export features. This flaw enables unauthorized users to exploit the plugin, resulting in the ability to trigger an unwanted server-side export of...

PoC for CVE-2026-18230

WordPressWP Directory Kit8.1HIGH
SQL Injection Vulnerability in WP Directory Kit Plugin by WordPress

The WP Directory Kit WordPress plugin prior to version 1.5.6 fails to properly sanitize and escape input parameters in its SQL statements during authenticated AJAX actions. This lack of adequate authorization checks enables any authenticated user, including subscribers, to exploit this vulnerabil...

PoC for CVE-2026-18474

WordPressWP Directory Kit8.6HIGH
SQL Injection Vulnerability in WP Directory Kit Plugin by WordPress

The WP Directory Kit WordPress plugin is susceptible to SQL injection due to insufficient sanitization and escaping of parameters used in SQL statements. This vulnerability enables unauthenticated users to manipulate the database by exploiting a non-default search field type, potentially leading ...

PoC for CVE-2026-18049

WordPressWP Photo Album Plus7.5HIGH
Authorization Bypass in WP Photo Album Plus Plugin from WordPress

The WP Photo Album Plus plugin for WordPress prior to version 9.2.07.002 contains a security flaw that allows unauthorized users to access sensitive configuration data. This occurs because the plugin does not implement necessary checks on certain public endpoints and inadequately handles input va...

PoC for CVE-2026-18048

WordPressWP Photo Album Plus7.5HIGH
File Path Vulnerability in WP Photo Album Plus Plugin by WordPress

The WP Photo Album Plus plugin for WordPress has a significant security issue that arises from its failure to validate user-controlled input when constructing file paths. This vulnerability allows unauthenticated attackers to execute arbitrary deletion commands on ZIP archives stored on the serve...

PoC for CVE-2026-18057

WordPressEvents Manager8.1HIGH
SQL Injection Vulnerability in Events Manager Plugin for WordPress

The Events Manager plugin for WordPress, prior to version 7.4.1, is susceptible to SQL injection due to insufficient sanitization and escaping of user-supplied input in its SQL statements. This vulnerability permits users with subscriber-level access or higher to manipulate booking consent record...

PoC for CVE-2026-18035

WordPressUser Access Manager5.3MEDIUM
Access Control Flaw in User Access Manager Plugin for WordPress

The User Access Manager plugin for WordPress prior to version 2.3.15 contains a significant access control flaw. This vulnerability allows unauthenticated individuals to bypass intended restrictions, gaining unauthorized access to posts, pages, and custom post types. The absence of proper access ...

PoC for CVE-2026-18046

WordPressCookie Consent4.3MEDIUM
Insufficient Access Controls in Cookie Consent Plugin for WordPress

The Cookie Consent WordPress plugin prior to version 0.0.10 contains a significant flaw that allows authenticated users, even those with minimal privileges, to modify the geolocation service license key. This vulnerability arises due to insufficient enforcement of administrator-only capabilities ...

PoC for CVE-2026-17013

WordPressWP Photo Album Plus6.1MEDIUM
Reflected Cross-Site Scripting in WP Photo Album Plus by WordPress

The WP Photo Album Plus plugin for WordPress versions prior to 9.2.07.002 is susceptible to reflected cross-site scripting (XSS) due to improper sanitization and escaping of input parameters. This weakness can be exploited by unauthenticated attackers, who can craft malicious links that, when cli...

PoC for CVE-2026-16977

WordPressForm Maker By 10web8.1HIGH
SQL Injection Vulnerability in Form Maker Plugin by 10Web

The Form Maker plugin by 10Web for WordPress prior to version 1.15.45 contains a vulnerability due to improper parameterization of user-controlled values. This flaw allows an attacker with subscriber-level permissions to exploit dynamic SQL queries within the plugin, potentially enabling second-o...

PoC for CVE-2026-16294

WordPressPowerpress Podcasting ...7.1HIGH
Server-Side Request Forgery Vulnerability in PowerPress Podcasting ...

The PowerPress Podcasting Plugin by Blubrry prior to version 11.17.1 contains a security flaw where it fails to validate the Podcast Episode URL settings. This oversight permits users assigned to lower roles, such as Contributor, to exploit server-side request forgery (SSRF) vulnerabilities. As a...

PoC for CVE-2026-16538

WordPressWallet For WooCommerce9.1CRITICAL
Wallet for WooCommerce Plugin Vulnerability Allows Unauthorized Wal...

The Wallet for WooCommerce plugin prior to version 1.6.10 suffers from a vulnerability where it fails to validate the actual amount collected during wallet top-up transactions. This oversight enables users to increase their wallet balance unjustly, allowing for potential financial exploitation. P...

PoC for CVE-2026-16737

WordPressWP Travel Engine5.3MEDIUM
Unauthenticated Data Exposure in WP Travel Engine Plugin by WordPress

The WP Travel Engine plugin for WordPress before version 6.8.5 lacks proper authorization checks on unauthenticated cart actions. This loophole allows attackers to exploit the system by providing a booking identifier to access sensitive customer booking details and billing information. Additional...

PoC for CVE-2026-15249

WordPressPatterns Kit5.4MEDIUM
Cross-Site Scripting Vulnerability in Patterns Kit for WordPress by...

The Patterns Kit plugin for WordPress has a vulnerability that allows users with minimal privileges, such as the Contributor role, to inject malicious payloads. This occurs because the plugin fails to properly escape link attributes before inserting them into client-side scripts. Consequently, at...

PoC for CVE-2026-15388

WordPressCookie Consent4.3MEDIUM
Improper Access Control in Cookie Consent Plugin for WordPress

The Cookie Consent plugin for WordPress prior to version 0.0.10 is susceptible to improper access control due to a lack of proper enforcement of administrator capabilities on its REST routes. This vulnerability allows any authenticated user, even those with limited privileges such as subscribers,...

PoC for CVE-2026-16051

WordPressWPmudev-updates9.8CRITICAL
Remote Code Execution Risk in WPMU DEV Updates Plugin for WordPress

The WPMU DEV Updates plugin prior to version 5.0.1 fails to ensure the integrity of packages installed via its remote management interface. This oversight allows attackers to exploit legitimate management requests, potentially leading to the installation and execution of arbitrary code on affecte...

PoC for CVE-2026-16066

WordPressWelcart E-commerce5.4MEDIUM
Web Application Vulnerability in Welcart e-Commerce Plugin by WordP...

The Welcart e-Commerce plugin for WordPress prior to version 2.11.34 lacks proper sanitization and escaping of product fields. This oversight allows users with the Author role or higher to inject arbitrary web scripts. Such scripts can execute in the browser of any visitor accessing the product p...

PoC for CVE-2026-16253

WordPressTotal Upkeep7.5HIGH
Backup Functionality Vulnerability in Total Upkeep WordPress Plugin

The Total Upkeep plugin for WordPress, prior to version 1.17.3, is susceptible to an insecure direct object reference, resulting in inadequate protection of backup-restore functionality secrets. This flaw allows unauthenticated users to access sensitive backup data and potentially initiate a full...

PoC for CVE-2026-14858

WordPressWP Crowdfunding4.3MEDIUM
Unauthorized Access in WP Crowdfunding Plugin by WordPress

The WP Crowdfunding plugin for WordPress, prior to version 2.2.1, exhibits a significant security flaw that fails to verify ownership of orders before disclosing their details. This allows any authenticated users, including those with Subscriber roles, to access sensitive WooCommerce order inform...

PoC for CVE-2026-14859

WordPressWP Crowdfunding4.3MEDIUM
Unauthorized Campaign Creation in WP Crowdfunding Plugin

The WP Crowdfunding plugin for WordPress prior to version 2.2.1 features an authorization bypass flaw. This vulnerability allows authenticated users, including those with subscriber privileges, to submit crowdfunding campaign posts without the necessary permissions. Specifically, the plugin does ...

PoC for CVE-2026-15039

WordPressGiftware9.8CRITICAL
File Upload Vulnerability in Giftware Plugin for WordPress

The Giftware WordPress plugin prior to version 4.2.10 has a security flaw that fails to properly validate the type of uploaded files in certain upload paths. This oversight allows unauthenticated users to upload arbitrary files, including potentially malicious PHP scripts, which can be executed o...

PoC for CVE-2026-14925

WordPressImport WP7.5HIGH
Authorization Bypass in Import WP Plugin Affects WordPress Users

The Import WP plugin prior to version 2.14.23 is susceptible to an authorization bypass flaw, which permits unauthenticated attackers to download export files that were generated by administrators. These files may unintentionally expose sensitive user information, including email addresses, login...