Publicly Disclosed
PoC Exploits

🔴 Alway take caution when working with PoC Exploits 🔴

Discovered 3 hours ago

PoC for CVE-2026-87902

WordPressWordPress8.1HIGH
Local File Inclusion in WordPress Leading to Remote Code Execution

An unauthenticated attacker can exploit a vulnerability in WordPress that allows `get_page_template()` to inadvertently resolve and include a chosen local `.php` file located outside of the active theme directories. When specific server conditions and configurations of the active theme are met, t...

Discovered 4 hours ago

PoC for CVE-2026-96258

Onsite Internet GmbhAuktion Ng Auktionssof...5.3MEDIUM
Cross-Site Scripting Vulnerability in onSite Auction Software

A vulnerability exists in the Public Password Reset Endpoint of onSite internet GmbH's Auktion NG Auktionssoftware, specifically affecting the email manipulation within the /forgotpasswd.html file. This vulnerability allows attackers to execute arbitrary scripts in the context of a user's browser...

PoC for CVE-2026-87902

WordPressWordPress8.1HIGH
Local File Inclusion in WordPress Leading to Remote Code Execution

An unauthenticated attacker can exploit a vulnerability in WordPress that allows `get_page_template()` to inadvertently resolve and include a chosen local `.php` file located outside of the active theme directories. When specific server conditions and configurations of the active theme are met, t...

PoC for CVE-2026-96257

FastFac1203r Gigabit Edition10CRITICAL
Stack-Based Buffer Overflow in Fast FAC1203R Gigabit Edition Device...

A vulnerability exists in the Fast FAC1203R Gigabit Edition 2.0.4, specifically within the 'copy_msg_element' function of the Device Discovery Service. This flaw allows attackers to manipulate the functionality, potentially leading to a stack-based buffer overflow. The vulnerability can be exploi...

PoC for CVE-2026-95957

SourcecodesterSmart Attendance Syste...5.3MEDIUM
Cross-Site Scripting Affecting SourceCodester Smart Attendance System

A vulnerability exists in the SourceCodester Smart Attendance System with QR Code Scanner 1.0, specifically in the function prepend of student_signup.php within the Self-Registration component. This flaw allows for manipulation of the full_name argument, leading to potential cross-site scripting ...

Discovered 5 hours ago

PoC for CVE-2026-95928

Recommenders-teamRecommenders5.1MEDIUM
Deserialization Vulnerability in Recommenders by Recommenders-Team

A security vulnerability has been identified in the recommenders-team's recommenders library, specifically in versions up to 1.2.1. The flaw is located in the function 'pickle.load' within the file 'recommenders/models/newsrec/io/mind_iterator.py'. This issue allows for remote code execution thro...

PoC for CVE-2026-48519

Langflow-aiLangflow9.6CRITICAL
Remote Code Execution Vulnerability in Langflow by Langflow AI

Langflow, an innovative platform for building AI-powered agents, experienced a critical vulnerability prior to version 1.9.2 that allowed for remote code execution via its 'Shareable Playground' feature. This flaw enabled unauthorized users to execute arbitrary Python code by exploiting a public ...

PoC for CVE-2026-95927

SourcecodesterOnline Reviewer Manage...6.9MEDIUM
SQL Injection Vulnerability in SourceCodester Online Reviewer Manag...

A vulnerability has been identified in the SourceCodester Online Reviewer Management System 1.0, specifically affecting the exam-delete.php file. The flaw appears when manipulating the 'test_id' argument, which can lead to unauthorized SQL query execution. This vulnerability can be exploited remo...

Discovered 6 hours ago

PoC for CVE-2026-95926

SourcecodesterOnline Reviewer Manage...6.9MEDIUM
SQL Injection Vulnerability in SourceCodester Online Reviewer Manag...

A SQL injection vulnerability exists in the SourceCodester Online Reviewer Management System 1.0, specifically within an unknown function of the file /reviewer_0/admins/assessments/pretest/btn_functions.php when the action parameter is set to update. An attacker could exploit this vulnerability r...

PoC for CVE-2026-95925

SourcecodesterOnline Reviewer Manage...6.9MEDIUM
SQL Injection Vulnerability in SourceCodester Online Reviewer Manag...

A SQL injection vulnerability exists in the SourceCodester Online Reviewer Management System version 1.0, specifically within an unknown function in the file /reviewer_0/admins/assessments/databank/btn_functions.php, triggered by the manipulation of the difficulty_id argument during an update act...

PoC for CVE-2026-95924

SourcecodesterOnline Reviewer Manage...6.9MEDIUM
SQL Injection Vulnerability in SourceCodester Online Reviewer Manag...

A security flaw has been identified in the SourceCodester Online Reviewer Management System version 1.0, specifically within the 'btn_functions.php' file that handles assessments. An argument manipulation related to 'difficulty_id' can lead to unauthorized SQL command execution, allowing attacker...

PoC for CVE-2026-95897

DaskDask5.1MEDIUM
Deserialization Vulnerability in Dask Loader Affects Remote Code Ex...

A security vulnerability has been identified in Dask's Loader component, specifically in the from_npy_stack function within dask/array/core.py. This flaw enables potential attackers to manipulate data in a way that facilitates remote code execution through deserialization. Although the exploit ha...

PoC for CVE-2026-96272

MacwarriorClipbucket-v58.7HIGH
Blind SQL Injection in ClipBucket 5.x Photo Search Functionality

ClipBucket versions prior to 5.5.3-#182 are susceptible to a blind SQL injection flaw within the photo search endpoint. This vulnerability arises when the query parameter is fed directly into SQL WHERE and ORDER BY clauses without proper sanitization. Attackers, even if unauthenticated, can utili...

Discovered 7 hours ago

PoC for CVE-2026-95833

ItsourcecodeLeave Management System5.3MEDIUM
SQL Injection Risk in itsourcecode Leave Management System 1.0

A vulnerability has been detected in the itsourcecode Leave Management System 1.0, specifically within an unspecified function in the file /module/leavetype/index.php. This weakness allows for SQL injection attacks due to improper handling of the argument ID, enabling potential unauthorized acces...

PoC for CVE-2026-95830

TherealsainPixtream5.3MEDIUM
Unrestricted File Upload Vulnerability in theRealSain Pixtream by t...

A security flaw identified in theRealSain Pixtream relates to an insecure file handling mechanism in /post_upload.php. This vulnerability allows attackers to manipulate the 'media' argument, leading to unrestricted file uploads. Such exposure permits remote adversaries to upload potentially malic...

Discovered 8 hours ago

PoC for CVE-2026-95828

MstfaktsCollege-management-system5.3MEDIUM
Session Fixation Vulnerability in Mstfakts College-Management-Syste...

A session fixation vulnerability has been identified in Mstfakts College-Management-System's authentication mechanism, particularly in the session_start function found in Front-end/server.php. This vulnerability allows an attacker to execute a remote manipulation, which may result in unauthorized...

PoC for CVE-2026-95820

Anirbandutta9College-notes-gallery5.3MEDIUM
Unrestricted Upload Vulnerability in College-Notes-Gallery by anirb...

An unrestricted upload vulnerability has been identified in the College-Notes-Gallery application, specifically within the userprofile.php script under the admin1 section. This security flaw allows unauthenticated attackers to manipulate the image parameter, leading to potential malicious file up...

Discovered 9 hours ago

PoC for CVE-2026-95819

Anirbandutta9College-notes-gallery6.9MEDIUM
SQL Injection Vulnerability in College-Notes-Gallery by anirbandutta9

A SQL injection vulnerability exists in the login.php file of College-Notes-Gallery up to version 8c1cf3d98f30982d069c88ca172612c001eb39f6. This flaw allows unauthorized remote attackers to manipulate user authentication by sending crafted login parameters, potentially compromising sensitive user...

Discovered 11 hours ago

PoC for CVE-2026-95812

MacwarriorClipbucket-v55.3MEDIUM
Reflected Cross-Site Scripting Vulnerability in ClipBucket by MacWa...

ClipBucket versions prior to 5.5.3-#182 contain a reflected cross-site scripting vulnerability within the sort_link() helper function. This flaw arises because the application does not adequately sanitize user-supplied input from the 'cat', 'sort', and 'time' query parameters. As a result, attack...

PoC for CVE-2026-68376

LinuxLinux8.1HIGH
SCTP Auth HMAC Buffer Overflow in Linux Kernel

A vulnerability in the Linux kernel's SCTP implementation allows for a buffer overflow due to an incorrect calculation of the auth_hmacs array size in the struct sctp_cookie. This miscalculation leads to the potential for corrupting adjacent memory, which can allow invalid HMAC identifiers to be ...

Discovered 12 hours ago

PoC for CVE-2026-47116

LtsecurityLtk3500sf9.3CRITICAL
Hard-Coded Credentials Affecting LTSecurity LTK3500SF Products

The LTSecurity LTK3500SF product is vulnerable due to hard-coded credentials being stored as reversible hashes in /etc/shadow. This security flaw allows attackers to use dictionary-based cracking tools to recover root and guest account passwords, enabling unauthorized access via Telnet or SSH. Co...

PoC for CVE-2026-93485

WordPressWordPress7.1HIGH
Cross-Site Scripting in Automattic WordPress Core

An improper neutralization of input during web page generation vulnerability in Automattic WordPress core can lead to a DOM-Based XSS attack. This issue arises from the default configuration of WordPress, which allows unauthenticated users to exploit cross-site scripting by bypassing comment mode...

Discovered 13 hours ago

PoC for CVE-2026-95660

Moonshot AiKimi Code5.3MEDIUM
OS Command Injection Vulnerability in Moonshot AI's Kimi Code Appli...

A security flaw has been identified in the Moonshot AI Kimi Code prior to version 0.31.1. This vulnerability arises from an unknown function in the 'agent-core-v2/src/agent/mcp/config-loader.ts' file of the MCP Configuration Loader component. Exploitation of this weakness allows for OS command in...

PoC for CVE-2026-43643

SoftaculousVirtualizor8.7HIGH
Authorization Bypass Vulnerability in Softaculous Virtualizor Billi...

The Softaculous Virtualizor software contains a vulnerability in its billing module that allows attackers to bypass authorization mechanisms. This enables unauthorized users to modify a tenant's account balance by sending crafted POST requests to the admin panel. By manipulating parameters such a...

PoC for CVE-2026-95657

DgtlmoonChangedetection.io5.1MEDIUM
Cross-Site Scripting Vulnerability in dgtlmoon Changedetection.io

A vulnerability exists in dgtlmoon Changedetection.io versions up to 0.55.8 that affects the Visual Selector component. This issue arises within the setCurrentSelectedText function in the visual-selector.js file. Malicious manipulation of the function's argument can lead to a cross-site scripting...

Discovered 14 hours ago

PoC for CVE-2026-95656

DgtlmoonChangedetection.io6.9MEDIUM
Server-Side Request Forgery Vulnerability in dgtlmoon Changedetecti...

A server-side request forgery vulnerability exists in dgtlmoon Changedetection.io affecting the add_watch_ui_snapshot function. This issue arises due to improper handling of the URL argument in the Preview Endpoint, allowing an attacker to manipulate requests sent to the server. Exploitation of t...

Discovered 17 hours ago

PoC for CVE-2026-95675

D-linkDap-13609.3CRITICAL
Unauthenticated Remote Code Execution Vulnerability in D-Link DAP-1...

The D-Link DAP-1360 experiences a significant security flaw that allows unauthenticated remote code execution via its web management interface. An attacker can exploit this vulnerability by sending specially crafted requests, enabling them to execute arbitrary commands with root privileges. This ...

Discovered 18 hours ago

PoC for CVE-2026-95396

SfturingHosp Order5.3MEDIUM
Cross Site Scripting Vulnerability in sfturing Hospital Order by Sf...

A vulnerability was discovered in the sfturing Hospital Order application, specifically within the Public Search Handlers component. The flaw exists in an unknown function within the HospitalController.java file, where improper handling of the 'Search' argument can lead to cross site scripting (X...

PoC for CVE-2026-95273

DgtlmoonChangedetection.io5.3MEDIUM
Path Traversal Vulnerability in dgtlmoon Changedetection.io

A path traversal vulnerability exists in dgtlmoon changedetection.io, particularly in the static_content function of the visual_selector_data component located in changedetectionio/flask_app.py. This flaw allows attackers to manipulate the filename argument, potentially leading to unauthorized ac...

Discovered 19 hours ago

PoC for CVE-2026-95272

DgtlmoonChangedetection.io6.3MEDIUM
Path Traversal Vulnerability in dgtlmoon changedetection.io Software

A path traversal vulnerability has been identified in the dgtlmoon changedetection.io application, specifically within the Screenshot Handler component found in the 'static_content' function of the 'flask_app.py' file. By manipulating the 'filename' argument, an attacker can potentially access ar...

PoC for CVE-2026-95271

DgtlmoonChangedetection.io6.9MEDIUM
Improper Authentication in dgtlmoon changedetection.io Affects Remo...

A vulnerability has been identified in dgtlmoon changedetection.io versions up to 0.60.7, specifically within the function check_authentication located in the file flask_app.py. This flaw in the Authentication Hook enables improper authentication, which could allow attackers to exploit the system...

Discovered 20 hours ago

PoC for CVE-2026-95270

DgtlmoonChangedetection.io6.3MEDIUM
Timing Discrepancy in Hash Comparison Function of dgtlmoon Changede...

A vulnerability in dgtlmoon Changedetection.io has been identified, affecting versions up to 0.60.7. This flaw resides in the check_password function within the Hash Comparison component, specifically in the file flask_app.py. An attacker can exploit this vulnerability to create observable timing...

Discovered 23 hours ago

PoC for CVE-2026-64638

WordPressWordPress🟣 EPSS 31%8.9HIGH
Pre-auth Reflected XSS Vulnerability in WordPress

WordPress is susceptible to a pre-auth reflected cross-site scripting (XSS) vulnerability on the login interface. This security issue allows attackers to exploit a specially crafted malicious webpage designed to lure users into interaction. Although this gateway typically leads to XSS, it represe...

Discovered 1 day ago

PoC for CVE-2026-91827

WordPressNinja Forms7.5HIGH
PHP Object Injection Risk in Ninja Forms WordPress Plugin

The Ninja Forms plugin version 3.15.3 for WordPress has a critical security flaw that allows unauthorized attackers to exploit user-submitted form data. When form submissions are exported to CSV by an administrator, the plugin fails to properly sanitize the deserialized data, creating an opportun...

PoC for CVE-2026-92438

WordPressNinja Forms8.8HIGH
Improper Input Handling in Ninja Forms Plugin Affecting WordPress

The Ninja Forms plugin for WordPress, specifically version 3.15.3, is susceptible to a vulnerability due to its failure to properly escape submitted form field values. This oversight allows unauthenticated users to submit data through publicly accessible forms. When these values are displayed on ...

PoC for CVE-2026-88788

WordPressText Styler6.8MEDIUM
Cross-Site Scripting Vulnerability in Text Styler Plugin for WordPress

The Text Styler WordPress plugin, up to version 1.1.1, is vulnerable to Cross-Site Scripting (XSS) attacks due to inadequate sanitization of user-supplied styling values. This vulnerability enables users with contributor-level access or higher to introduce malicious JavaScript into the output. As...

PoC for CVE-2026-94493

GigatechPdv570110CRITICAL
WebSocket Service Missing Authentication in Gigatech PDV5701

The Gigatech PDV5701 has been identified with a vulnerability in its WebSocket Service, specifically affecting the processing of the /index.html file. This security flaw allows for missing authentication, making it possible for attackers to exploit the system remotely. The potential for exploitat...

PoC for CVE-2026-94492

YonyouU8cloud5.3MEDIUM
SQL Injection Vulnerability in Yonyou U8cloud OpenAPI Component

A security vulnerability has been uncovered within the Yonyou U8cloud 5.x software, specifically in the OpenAPI component located at /u8cloud/openapi/so.saleorder.sendaudit. This vulnerability enables attackers to manipulate the 'operator' argument, leading to potential SQL injection attacks. Suc...

PoC for CVE-2026-43786

AppleMac OS7.8HIGH
Privilege Escalation Vulnerability in Apple macOS Products

A privilege escalation issue has been discovered in Apple's macOS, which may allow an application to obtain unauthorized root privileges. This vulnerability arises from insufficient entitlement checks in the system, leading to potential exploitation that can compromise system integrity. It is cru...

PoC for CVE-2026-94426

XuxueliXxl-job5.1MEDIUM
Cross-Site Scripting Vulnerability in xuxueli XXL-Job Software

A vulnerability exists in the xuxueli XXL-Job software that allows for cross-site scripting (XSS) through a flaw in the `jobgroup/insert` function. This vulnerability can be exploited remotely by manipulating the argument 'Name'. The potential for exploitation is heightened as the flaw has been p...

PoC for CVE-2026-28618

GoogleAndroid8.8HIGH
Heap Buffer Overflow Vulnerability in Android OS

A vulnerability in the Android OS identified as a heap buffer overflow can allow potential attackers to execute remote code without requiring any user interaction. This weakness resides in the 'dec_frm_prepare' function of the 'oapv.c' file, which can be exploited to conduct out-of-bounds writes,...

PoC for CVE-2026-94540

MrpearDesktopsms7.4HIGH
Unauthorized Access Vulnerability in DesktopSMS by MrPear

DesktopSMS 1.11.0 by MrPear is susceptible to an unauthorized access vulnerability, enabling local attackers to utilize the application's local service. This flaw allows attackers to send SMS messages and retrieve SMS-derived content without requiring user interaction or pairing confirmation. An ...

PoC for CVE-2026-94536

DromaraLamp-cloud5.3MEDIUM
Unauthorized Information Disclosure in Lamp-cloud by Dromara

The Lamp-cloud software, up to version 5.10.0, is susceptible to an information disclosure vulnerability due to inadequate validation of the 'employeeId' parameter in the '/anyone/visible/resource' endpoint. This flaw permits authenticated users to exploit the system, enabling them to read roles ...

PoC for CVE-2026-94535

DromaraLamp-cloud7.1HIGH
Authorization Bypass Vulnerability in lamp-cloud by dromara

An authorization bypass vulnerability exists in the deleteMyNotice endpoint of lamp-cloud (versions up to 5.10.0). This flaw allows authenticated users to craft malicious DELETE requests, targeting arbitrary notice IDs, thus enabling them to delete notifications that belong to other users without...

PoC for CVE-2026-94534

DromaraLamp-cloud7.1HIGH
User Profile Vulnerability in Lamp-Cloud by Dromara

Lamp-Cloud versions up to 5.10.0 are susceptible to a serious security issue where user identity is not properly validated during profile updates. This vulnerability allows authenticated attackers to manipulate user profiles by sending requests with targeted user IDs. Attackers can alter critical...

PoC for CVE-2026-94534

DromaraLamp-cloud7.1HIGH
User Profile Vulnerability in Lamp-Cloud by Dromara

Lamp-Cloud versions up to 5.10.0 are susceptible to a serious security issue where user identity is not properly validated during profile updates. This vulnerability allows authenticated attackers to manipulate user profiles by sending requests with targeted user IDs. Attackers can alter critical...

PoC for CVE-2026-94533

DromaraLamp-cloud7.1HIGH
Authorization Bypass in lamp-cloud Vulnerability Allowing File Access

The lamp-cloud product, specifically through version 5.10.0, suffers from an authorization bypass vulnerability in the FileAnyoneController. This flaw permits authenticated users to download arbitrary attachments from other users. By manipulating valid attachment identifiers, attackers can exploi...

PoC for CVE-2026-94532

DromaraLamp-cloud7.1HIGH
Authorization Bypass in Lamp-Cloud by Dromara

Lamp-Cloud, up to version 5.10.0, has a vulnerability in the getUserInfoById endpoint which allows authenticated users to bypass authorization checks. This flaw enables individuals to access full profiles of any user within the system by manipulating the userId parameter. As a consequence, attack...

PoC for CVE-2026-77078

MulterMulter7.5HIGH
Denial of Service in multer Middleware for Node.js by Express.js

The multer middleware used for handling multipart/form-data in Node.js applications has a vulnerability that can be exploited to trigger a denial of service (DoS). This occurs when a multipart request containing two specially crafted text field names is sent. The first field attempts to create an...

PoC for CVE-2025-6325

WordPressKing Addons For Elementor9.8CRITICAL
Privilege Escalation Vulnerability in King Addons for Elementor by ...

A vulnerability exists in King Addons for Elementor, developed by KingAddons.com, that allows attackers to escalate their privileges. This Incorrect Privilege Assignment flaw enables unauthorized users to gain elevated access to restricted functionalities within the plugin. The issue affects all ...