Publicly Disclosed
PoC Exploits

🔴 Alway take caution when working with PoC Exploits 🔴

Discovered 6 hours ago

PoC for CVE-2026-82211

WordPressNexi Xpay Build8.2HIGH
Payment Processing Flaw in Nexi XPay Build Plugin for WordPress

The Nexi XPay Build plugin for WordPress, up to version 7.6.2, is susceptible to an improper input validation vulnerability. This issue allows attackers to manipulate the payment results supplied to several unauthenticated routes within the plugin. As a result, malicious actors can mark orders as...

PoC for CVE-2026-82212

WordPressNexi Xpay Build7.5HIGH
Security Flaw in Nexi XPay Build WordPress Plugin Allows Order Mani...

The Nexi XPay Build plugin for WordPress, in versions up to 7.6.2, is susceptible to improper authentication due to inadequate validation of security tokens on its payment notification route. This vulnerability enables unauthenticated attackers to manipulate order statuses by either marking arbit...

PoC for CVE-2026-105322

WordPressMagee Shortcodes5.3MEDIUM
Unauthorized Email Sending Vulnerability in Magee Shortcodes Plugin...

The Magee Shortcodes WordPress plugin, up to version 2.1.1, is susceptible to an exploit that allows unauthenticated users to send unauthorized emails to any address via the site's contact form. This vulnerability occurs due to insufficient restrictions in the plugin's form actions, enabling pote...

PoC for CVE-2026-86833

WordPressMetform5.4MEDIUM
Cross-Site Scripting in MetForm WordPress Plugin Affects Email Noti...

The MetForm plugin for WordPress prior to version 4.3.1 is susceptible to Cross-Site Scripting (XSS) attacks. It allows adversaries to exploit a lack of sanitization and escaping of form-field values before they are embedded into the HTML body of email notifications. This oversight permits unauth...

Discovered 7 hours ago

PoC for CVE-2026-97354

WordPressPowerpress Podcasting ...4.1MEDIUM
Server-Side Request Forgery in Blubrry PowerPress Podcasting Plugin...

The PowerPress Podcasting plugin by Blubrry for WordPress, in versions prior to 11.17.11, is vulnerable to Server-Side Request Forgery attacks. This issue arises due to improper validation of redirect destinations while fetching user-supplied media URLs. As a result, users with the contributor ro...

PoC for CVE-2026-97188

WordPressString Locator8.8HIGH
Deserialization Vulnerability in String Locator Plugin for WordPress

The String Locator plugin for WordPress prior to version 2.6.8 is vulnerable due to insufficient restrictions on classes allowed during deserialization of database content. This flaw enables unauthenticated attackers to store serialized PHP objects within database rows through the plugin's databa...

PoC for CVE-2026-87971

WordPressIf-so Dynamic Content7.1HIGH
JavaScript Injection Vulnerability in If-So Dynamic Content Plugin ...

The If-So Dynamic Content WordPress plugin prior to version 1.10.2 fails to validate the URL scheme of user-supplied values. This oversight allows attackers to inject arbitrary JavaScript code into admin pages. If a logged-in user clicks on a crafted link, it could lead to the execution of malici...

PoC for CVE-2026-96530

WordPressOptimole6.5MEDIUM
Exposed Account Data in Optimole WordPress Plugin

The Optimole plugin for WordPress prior to version 4.2.15 has a security flaw that allows authenticated users, including those with limited permissions such as Subscribers, to access sensitive account data stored within the plugin. This issue arises due to a lack of proper capability checks befor...

PoC for CVE-2026-97331

WordPressUser Private Files4.3MEDIUM
Information Disclosure in User Private Files Plugin for WordPress

The User Private Files plugin for WordPress prior to version 2.1.9 contains a vulnerability that fails to restrict access based on user permissions. This allows any authenticated user, including those with minimal roles such as Subscriber, to retrieve the email addresses of other registered accou...

PoC for CVE-2026-87782

WordPressKoinonia Link8.8HIGH
Role Escalation Vulnerability in Koinonia Link by WordPress

The Koinonia Link plugin for WordPress, versions before 1.1.5, fails to properly verify user permissions when altering role selections during profile updates. This oversight can be exploited by any authenticated user, such as a subscriber, allowing them to upgrade their own role to Administrator,...

PoC for CVE-2026-86816

WordPressWPcafe5.3MEDIUM
Unauthorized Access Vulnerability in WPCafe WordPress Plugin

The WPCafe WordPress plugin prior to version 3.0.21 has a significant flaw in its REST API, where it fails to adequately restrict access to certain endpoints. This oversight allows unauthenticated users to infiltrate sensitive areas of the site, thereby gaining access to critical WooCommerce prod...

PoC for CVE-2026-104678

WordPressCp Media Player2.7LOW
Access Control Flaw in CP Media Player Plugin for WordPress

The CP Media Player plugin for WordPress, prior to version 1.3.4, suffers from an access control vulnerability. This issue arises because the plugin fails to implement proper capability checks on its settings-page handler. As a result, users with only Contributor-level permissions can create, mod...

PoC for CVE-2026-104953

WordPressMpg6.8MEDIUM
SQL Injection Vulnerability in MPG WordPress Plugin by MPG

The MPG WordPress plugin versions prior to 4.2.3 contains a vulnerability that fails to adequately validate the structure of imported project data before utilizing it in database queries. This oversight allows users with Editor roles or higher permissions to execute SQL injection attacks. Consequ...

PoC for CVE-2026-105316

WordPressMagee Shortcodes7.1HIGH
Reflected Cross-Site Scripting in Magee Shortcodes WordPress Plugin

The Magee Shortcodes plugin for WordPress versions up to 2.1.1 is vulnerable due to improper sanitization and escaping of user input in certain AJAX actions. This lack of sanitization allows unauthenticated users to inject malicious scripts, leading to reflected cross-site scripting (XSS) attacks...

PoC for CVE-2026-104677

WordPressWP Coder7.2HIGH
PHP Code Execution Vulnerability in WP Coder WordPress Plugin

The WP Coder plugin for WordPress prior to version 4.5.2 allows users with Editor-level access to execute arbitrary PHP code due to improper access controls. This vulnerability enables unauthorized users to exploit the PHP code-execution feature, potentially compromising the entire website by sav...

PoC for CVE-2026-104651

WordPressYaad Sarig Payment Gat...4.3MEDIUM
Authorization Flaw in Yaad Sarig Payment Gateway for WooCommerce by...

The Yaad Sarig Payment Gateway for WooCommerce plugin prior to version 2.2.13 contains an authorization bypass vulnerability that allows any authenticated user to access and modify orders belonging to other customers. This flaw arises from the plugin's failure to properly verify that the user req...

PoC for CVE-2026-104653

WordPressEnvira Gallery6.8MEDIUM
Cross-Site Scripting Vulnerability in Envira Gallery WordPress Plugin

The Envira Gallery WordPress plugin prior to version 1.16.1 is vulnerable due to improper sanitization and escaping of user-provided gallery display configuration values. This flaw enables users with Author role or higher to inject arbitrary web scripts. These scripts are executed when any site v...

PoC for CVE-2026-104652

WordPressEnvira Gallery6.8MEDIUM
Injection Flaw in Envira Gallery Plugin for WordPress

The Envira Gallery plugin for WordPress prior to version 1.16.1 is susceptible to an injection vulnerability. This issue arises because the plugin fails to properly sanitize and escape gallery item identifiers before rendering them in image tag attributes. As a result, users with the Author role ...

PoC for CVE-2026-104050

WordPressAcademy Lms4.3MEDIUM
Unauthorized Access Vulnerability in Academy LMS WordPress Plugin

The Academy LMS WordPress plugin prior to version 4.0.0 exposes a flaw where it fails to confirm whether a quiz question is associated with the course that a requesting user is allowed to access. This oversight allows any authenticated user, such as an enrolled student, to retrieve answers for qu...

PoC for CVE-2026-104667

WordPressAnimated Number Counters6.8MEDIUM
SQL Injection Vulnerability in Animated Number Counters Plugin for ...

The Animated Number Counters WordPress plugin, prior to version 3.1, contains a serious security flaw that allows an Editor-level user to inject unsanitized values into SQL queries. This vulnerability enables unauthorized access to sensitive information, such as password hashes, through second-or...

PoC for CVE-2026-103323

WordPressIntegration For Epos N...5.9MEDIUM
Authorization Bypass in WooCommerce Plugin by Epos Now

The Epos Now integration for WooCommerce WordPress plugin versions prior to 4.11.2 lacks sufficient authorization checks on a critical REST API endpoint. This vulnerability allows unauthenticated users to access sensitive information, including details of scheduled background tasks and their para...

PoC for CVE-2026-104049

WordPressAcademy Lms4.3MEDIUM
Unauthorized Access Vulnerability in Academy LMS WordPress Plugin

The Academy LMS plugin for WordPress prior to version 4.0.0 contains a vulnerability that fails to adequately verify user enrollment and ownership of course materials when utilizing its REST API. This oversight permits users with self-registerable student accounts to access and retrieve content f...

PoC for CVE-2026-103378

WordPressGeliver Akıllı Kargo P...6.5MEDIUM
Unauthorized Access to Log Files in Geliver Akıllı Kargo Pazaryeri ...

The Geliver Akıllı Kargo Pazaryeri WordPress plugin prior to version 3.1.1 contains a serious vulnerability that allows unauthorized access to a log file stored in its web-accessible directory. This log file includes the site's carrier integration key, which can be exploited by attackers to alter...

PoC for CVE-2026-103681

WordPressFrontend Dashboard4.3MEDIUM
Improper Access Control in Frontend Dashboard Plugin for WordPress

The Frontend Dashboard plugin for WordPress prior to version 3.0.0 is susceptible to improper access control due to its failure to enforce capability checks during AJAX actions. This oversight permits authenticated users with lower privileges, such as subscribers, to delete crucial settings assoc...

Discovered 9 hours ago

PoC for CVE-2026-57967

ApacheApache Artemis9.8CRITICAL
Unauthenticated Session Hijacking in Apache Artemis and ActiveMQ

A vulnerability exists in Apache Artemis and ActiveMQ that allows an unauthenticated remote attacker to exploit the CORE protocol SESSION_REATTACH packet. This exploitation can potentially lead to unauthorized access by seizing control of an ongoing authenticated session. Users are urged to upgra...

Discovered 10 hours ago

PoC for CVE-2011-4825

PHPletterAjax File And Image Ma...🟣 EPSS 39%
Static Code Injection Vulnerability in Ajax File and Image Manager ...

The static code injection vulnerability in the Ajax File and Image Manager allows remote attackers to exploit crafted parameters to inject arbitrary PHP code into the data.php file. This can lead to unauthorized manipulation of the server environment, potentially compromising sensitive data and a...

Discovered 12 hours ago

PoC for CVE-2026-3888

7.8HIGH
Local Privilege Escalation in Snapd Affecting Ubuntu Linux

A local privilege escalation vulnerability in Snapd on Linux systems allows attackers to exploit the automatic cleanup of Snap's private /tmp directory. By re-creating this directory under certain configurations of systemd-tmpfiles, an attacker can potentially gain root privileges. This issue imp...

Discovered 13 hours ago

PoC for CVE-2026-59265

ApacheApache Openoffice8.8HIGH
Code Execution Flaw in Java Integration of Apache OpenOffice by Apache

A vulnerability in the Java integration of Apache OpenOffice versions 4.1.16 and earlier allows attackers to execute arbitrary code through carefully crafted untrusted documents. This can lead to unauthorized actions being performed on the user's system upon opening the compromised document. To m...

PoC for CVE-2026-63277

The Document Foun...Libreoffice8.5HIGH
Remote Code Execution Risk in LibreOffice Calc by LibreOffice

LibreOffice Calc allows users to link cell ranges to external data sources. This feature poses a risk, as documents can specify a Java database driver that points to a remote location. Consequently, when users open the document, Java code from that external source can be executed on their system,...

PoC for CVE-2026-43805

AppleiOS And iPad OS9.8CRITICAL
Race Condition Vulnerability in Apple iOS and macOS Products

A race condition vulnerability has been identified in Apple iOS and macOS products, where improper state handling could lead to unexpected system terminations or allow an app to write unauthorized kernel memory. This flaw has been addressed in recent updates across various Apple platforms, includ...

Discovered 15 hours ago

PoC for CVE-2026-97286

WordPressStrong Testimonials6.5MEDIUM
Cross Site Scripting Vulnerability in Strong Testimonials Plugin by...

The Strong Testimonials plugin for WordPress contains a Cross Site Scripting (XSS) vulnerability that affects versions up to 3.3.11. An attacker could exploit this weakness to inject malicious scripts into web pages viewed by users, potentially leading to unauthorized actions or data theft. Websi...

Discovered 16 hours ago

PoC for CVE-2025-6867

SourcecodesterSimple Company Website5.1MEDIUM
SQL Injection Flaw in SourceCodester Simple Company Website 1.0

A vulnerability exists within the SourceCodester Simple Company Website 1.0, specifically affecting the processing of the file /admin/services/manage.php. An attacker can exploit this vulnerability through a manipulation of the argument ID, enabling SQL injection attacks. This issue poses a risk ...

Discovered 19 hours ago

PoC for CVE-2025-21479

QualcommSnapdragon8.6HIGH
Memory Corruption Vulnerability in Qualcomm GPU Micronode

This vulnerability allows unauthorized command execution in the GPU micronode, leading to potential memory corruption when a specific sequence of commands is executed. Attackers could exploit this weakness to disrupt system functionality or gain access to sensitive areas of memory, posing risks t...

Discovered 21 hours ago

PoC for CVE-2026-105957

SourcecodesterPerformance Indicator ...5.3MEDIUM
SQL Injection Vulnerability in SourceCodester Performance Indicator...

A vulnerability affecting the SourceCodester Performance Indicator System 1.0 has been identified, which allows for SQL injection through the manipulation of the 'Category' argument in the /opils/admin/view_product.php file. This flaw facilitates remote exploitation, raising significant security ...

Discovered 22 hours ago

PoC for CVE-2026-105922

Vllm-projectVllm5.3MEDIUM
Denial of Service Vulnerability in vLLM by vllm-project

A security flaw has been identified in the vLLM product of vllm-project, affecting versions up to 0.31.0. This vulnerability is rooted in the function get_token_bin_counts_and_mask located in the utils.py file of the Penalty Handler component. An attacker could exploit this issue to manipulate th...

Discovered 23 hours ago

PoC for CVE-2026-105921

KusalkasilvaLearning-management-sy...5.3MEDIUM
SQL Injection Vulnerability in Kusalkasilva Learning-Management-Sys...

A vulnerability exists in the Kusalkasilva Learning-Management-System that allows an attacker to manipulate the argument 'school_year' via the file search_class.php. This SQL injection vulnerability can be exploited remotely, potentially leading to unauthorized access or modification of the syste...

PoC for CVE-2025-55182

MetaReact-server-dom-webpack🟣 EPSS 100%10CRITICAL
Remote Code Execution Vulnerability in React Server Components by Meta

A remote code execution vulnerability found in React Server Components allows attackers to exploit improperly handled payloads. This issue affects versions 19.0.0 through 19.2.0, compromising server function endpoints through unsafe deserialization of HTTP request payloads. As a result, this flaw...

Discovered 1 day ago

PoC for CVE-2026-105920

KusalkasilvaLearning-management-sy...6.9MEDIUM
SQL Injection Vulnerability in Kusalkasilva Learning-Management-Sys...

The Kusalkasilva Learning-Management-System is subject to a SQL injection vulnerability in the student_signup.php file within the Student Registration Endpoint component. This vulnerability enables an attacker to execute arbitrary SQL queries, potentially compromising sensitive data. The vulnerab...

PoC for CVE-2026-105919

KusalkasilvaLearning-management-sy...6.9MEDIUM
SQL Injection Vulnerability in Kusalkasilva Learning-Management-Sys...

A SQL injection vulnerability has been identified in the Kusalkasilva Learning-Management-System, specifically within the Administrator Login Endpoint function mysql_query located in admin/login.php. By manipulating the arguments for the username and password, attackers can exploit this vulnerabi...

PoC for CVE-2026-105918

KusalkasilvaLearning-management-sy...6.9MEDIUM
SQL Injection Vulnerability in Kusalkasilva Learning-Management-Sys...

A vulnerability exists in the Kusalkasilva Learning-Management-System affecting the login endpoint's mysql_error function in the login.php file. By manipulating the username and password arguments, an attacker can perform SQL injection attacks remotely. Despite early notifications regarding this ...

PoC for CVE-2026-96940

MicrosoftMicrosoft Exchange Ser...8.8HIGH
Privilege Elevation Vulnerability in Microsoft Exchange Server

A weakness in the authorization mechanisms of Microsoft Exchange Server can be exploited by authenticated attackers, allowing them to gain elevated privileges over the network. This vulnerability poses significant risks as it can enable attackers to manipulate sensitive data or compromise additio...

PoC for CVE-2026-105809

SourcecodesterSimple Student Informa...5.3MEDIUM
Cross-Site Scripting in SourceCodester Simple Student Information S...

A cross-site scripting vulnerability has been identified in the SourceCodester Simple Student Information System 1.0. This issue specifically affects the processing of user input in the file /register.php, where the arguments 'firstname' and 'lastname' can be manipulated. This allows attackers to...

PoC for CVE-2026-105808

SourcecodesterSimple Student Informa...5.1MEDIUM
Cross Site Scripting Vulnerability in SourceCodester Simple Student...

A vulnerability exists in the SourceCodester Simple Student Information System version 1.0 within the searchresults.php file's clean function. This flaw allows for remote cross site scripting attacks through manipulation of the searchbox argument. Attackers can execute payloads that may compromis...

PoC for CVE-2026-105778

TendaAc59.4CRITICAL
Stack-Based Buffer Overflow in Tenda AC5 WiFi Handler

A vulnerability has been identified in the Tenda AC5 router, specifically within the Wifi Handler component at the /goform/setWifi endpoint. This flaw allows for manipulation of the wifiPwd argument, potentially leading to a stack-based buffer overflow. The exploitation of this vulnerability can ...

PoC for CVE-2026-86786

WordPressSlider Pro5.3MEDIUM
Authorization Bypass in Slider Pro for WordPress by Slider Revolution

The Slider Pro plugin for WordPress, up to version 1.0.0, contains a vulnerability that allows unauthenticated users to exploit an AJAX action without any capability or authorization checks. This could enable these users to access sensitive information such as the titles, excerpts, and permalinks...

PoC for CVE-2026-94278

WordPressFile Media Renamer5.5MEDIUM
Unauthorized Access in File Media Renamer Plugin for WordPress

The File Media Renamer plugin for WordPress has a flaw that fails to validate user authorization for modifying media attachments. This vulnerability allows any user with file-upload privileges to rename media files belonging to other users, including site administrators. As a result, it can lead ...

PoC for CVE-2026-89289

WordPressFast Courier5.3MEDIUM
Unauthenticated REST Route Vulnerability in Fast Courier WordPress ...

The Fast Courier WordPress plugin, up to version 5.2.3, contains a significant security flaw that exposes a REST API endpoint without proper authentication. This vulnerability allows unauthorized attackers to modify order fulfillment data, including the courier status and customer-facing tracking...

PoC for CVE-2026-94299

WordPressElegro Crypto Payment6.5MEDIUM
Unauthenticated Payment Confirmation Exploit in elegro Crypto Payme...

The elegro Crypto Payment WordPress plugin prior to version 1.0.1 has a serious security flaw that allows attackers to deceive the payment system. Specifically, it fails to enforce the requirement for a shared secret, enabling unauthorized individuals to send fraudulent payment notifications. As ...

PoC for CVE-2026-94270

WordPressDeema Payment Gateway5.3MEDIUM
Payment Gateway Plugin Vulnerability in Deema by WordPress

The Deema Payment Gateway plugin for WordPress, up to version 1.1.2, has a significant security issue due to its failure to verify the authenticity of incoming payment provider notifications. This vulnerability occurs because the verification feature is disabled by default, enabling unauthorized ...

PoC for CVE-2026-94271

WordPressDeema Payment Gateway5.3MEDIUM
Unauthenticated Payment Processing Issue in Deema Payment Gateway f...

The Deema Payment Gateway for WordPress, up to version 1.1.2, contains a vulnerability that permits unauthenticated users to mark orders as paid without any legitimate payment verification with the payment provider. This occurs due to the plugin's failure to verify the payment status or amount wh...