Publicly Disclosed
PoC Exploits

🔴 Alway take caution when working with PoC Exploits 🔴

Discovered just now...

PoC for CVE-2023-45866

BlueZAndroid🟣 EPSS 37%6.3MEDIUM
Unauthenticated Injection of HID Messages via Bluetooth HID Hosts i...

CVE-2023-45866 is a Bluetooth vulnerability affecting the BlueZ software, which can lead to the injection of HID messages by unauthenticated devices. This vulnerability could potentially impact Linux-based systems and Ubuntu 22.04LTS. Apple has released patches to fix 12 vulnerabilities on variou...

PoC for CVE-2026-23744

McpjamInspector🟣 EPSS 30%9.8CRITICAL
Remote Code Execution Vulnerability in MCPJam Inspector by MCP

MCPJam Inspector, designed for local-first development on MCP servers, has a vulnerability allowing remote code execution (RCE) due to improper binding settings. In versions 1.4.2 and earlier, the platform listens on 0.0.0.0 by default, enabling attackers to exploit this configuration through cra...

Discovered 6 hours ago

PoC for CVE-2026-10193

OFSoftOfcms5.3MEDIUM
SQL Injection Vulnerability in OFCMS by OFSoft

A security flaw has been found in OFCMS, specifically in the ComnController component up to version 1.1.3. This vulnerability involves a manipulation of the 'system.user.query' argument in the Query function located in 'ofcms-admin/src/main/java/com/ofsoft/cms/admin/controller/ComnController.java...

PoC for CVE-2026-10192

TendaW128.7HIGH
Stack-Based Buffer Overflow Vulnerability in Tenda W12 by Tenda

Tenda W12 version 3.0.0.7(4763) contains a vulnerability in the set_local_time_0 function located in the /bin/httpd file. The flaw allows for a remote attacker to manipulate the Time argument, leading to a stack-based buffer overflow. This vulnerability can be exploited remotely and has publicly ...

PoC for CVE-2026-10191

TendaW128.7HIGH
Stack-Based Buffer Overflow in Tenda W12 from Tenda

A stack-based buffer overflow vulnerability exists in the Tenda W12 router due to improper handling of the wifiMacFilterSet.macList.mac argument in the cgiWifiMacFilterSet function of /bin/httpd. This vulnerability can be exploited remotely, enabling attackers to execute arbitrary code or cause d...

Discovered 7 hours ago

PoC for CVE-2026-10190

TendaW127.1HIGH
Denial of Service Vulnerability in Tenda W12 Web Management Interface

A denial of service vulnerability exists in the Tenda W12's Web Management Interface, specifically within the cgiSysWebTimeoutSet function of the httpd server component. This vulnerability arises from improper handling of the 'web_over_time' parameter, allowing an attacker to manipulate backend s...

PoC for CVE-2026-10189

TendaW128.7HIGH
Stack-Based Buffer Overflow Vulnerability in Tenda W12 by Tenda

A vulnerability exists in the Tenda W12 firmware 3.0.0.7(4763), specifically in the cgiSysTimeInfoSet function within the /bin/httpd file. By manipulating the 'sec' argument, an attacker can trigger a stack-based buffer overflow, allowing for potential remote exploitation. This vulnerability pose...

Discovered 8 hours ago

PoC for CVE-2026-10188

TendaW128.7HIGH
Stack-based Buffer Overflow in Tenda W12 by Tenda

A vulnerability has been identified in Tenda W12 version 3.0.0.7(4763) that affects the function cgistaKickOff located in the /bin/httpd file. By manipulating the 'staMac' argument, an attacker can trigger a stack-based buffer overflow, potentially allowing remote code execution. This exploit has...

PoC for CVE-2026-10187

TotolinkN300rh9.3CRITICAL
Stack-Based Buffer Overflow in Totolink N300RH Web Management Inter...

A stack-based buffer overflow vulnerability has been identified in the Totolink N300RH's Web Management Interface, specifically within the setWiFiBasicConfig function of the wireless.so component. This issue arises from improper handling of the KeyStr argument, which allows remote attackers to ex...

PoC for CVE-2026-10186

Code-projectsOnline Hospital Manage...6.9MEDIUM
SQL Injection Vulnerability in Online Hospital Management System by...

A significant security flaw exists in the code-projects Online Hospital Management System version 1.0, specifically within the /patient.php file. This vulnerability allows attackers to manipulate the 'editid' argument, resulting in SQL injection attacks. The nature of this vulnerability is such t...

PoC for CVE-2026-10185

SourcecodesterHospitals Patient Reco...6.9MEDIUM
SQL Injection Vulnerability in SourceCodester Hospitals Patient Rec...

A security vulnerability has been detected in the SourceCodester Hospitals Patient Records Management System version 1.0 that allows for SQL injection through manipulation of the argument ID in the file /classes/Users.php?f=save. This flaw can potentially be exploited remotely, permitting attacke...

Discovered 9 hours ago

PoC for CVE-2026-10184

SourcecodesterHospitals Patient Reco...6.9MEDIUM
SQL Injection Vulnerability in SourceCodester Hospitals Patient Rec...

A vulnerability has been discovered in SourceCodester's Hospitals Patient Records Management System Version 1.0, located in the file /classes/Users.php?f=delete. This flaw allows attackers to manipulate the argument ID, facilitating SQL injection attacks. The vulnerability can be exploited remote...

PoC for CVE-2026-10183

TrendnetTew-432brp8.7HIGH
Stack Overflow Vulnerability in TRENDnet TEW-432BRP Router

A stack-based buffer overflow vulnerability has been identified in the TRENDnet TEW-432BRP router, specifically within the formWlanSetup function of the /goform/formWlanSetup file. This flaw arises from improper handling of the 'enrollee' argument, allowing attackers to potentially exploit the vu...

PoC for CVE-2026-10182

TrendnetTew-432brp5.3MEDIUM
Command Injection Vulnerability in TRENDnet TEW-432BRP Router

A command injection vulnerability has been identified in the TRENDnet TEW-432BRP router, specifically in the formWlanSetup function within the file /goform/formWlanSetup. This issue arises when an attacker manipulates the 'enrollee' argument, allowing them to execute arbitrary commands remotely. ...

PoC for CVE-2026-10181

TrendnetTew-432brp8.7HIGH
Stack-Based Buffer Overflow in TRENDnet TEW-432BRP Router

A vulnerability in the TRENDnet TEW-432BRP router allows for remote exploitation due to a stack-based buffer overflow in the formSysCmd function. By manipulating the submit-url argument, attackers can exploit this vulnerability to execute malicious actions. It's important to note that this router...

Discovered 10 hours ago

PoC for CVE-2026-49489

OpencatsOpencats8.4HIGH
SQL Injection Vulnerability in OpenCATS DataGrid Component

OpenCATS versions up to 0.9.7.4 are vulnerable to an SQL injection attack via the sortDirection parameter in the DataGrid component. Authenticated users can exploit this flaw by injecting malicious SQL code through the ajax/getDataGridPager.php endpoint. This exploitation allows for time-based bl...

PoC for CVE-2026-49489

OpencatsOpencats8.4HIGH
SQL Injection Vulnerability in OpenCATS DataGrid Component

OpenCATS versions up to 0.9.7.4 are vulnerable to an SQL injection attack via the sortDirection parameter in the DataGrid component. Authenticated users can exploit this flaw by injecting malicious SQL code through the ajax/getDataGridPager.php endpoint. This exploitation allows for time-based bl...

Discovered 11 hours ago

PoC for CVE-2026-10180

TrendnetTew-432brp5.3MEDIUM
Command Injection Vulnerability in TRENDnet TEW-432BRP

A command injection vulnerability exists in the TRENDnet TEW-432BRP router, specifically in the formSysCmd function located in the /goform/formSysCmd file. This vulnerability allows attackers to manipulate the sysCmd argument, potentially permitting remote command execution. As this product has b...

PoC for CVE-2026-10179

TrendnetTew-432brp8.7HIGH
Stack-Based Buffer Overflow in TRENDnet TEW-432BRP Router

The TRENDnet TEW-432BRP router exhibits a severe flaw in its handling of the formSetWlanEncrypt function, leading to a stack-based buffer overflow. This vulnerability allows remote attackers to exploit the system by manipulating the webpage argument, potentially leading to unauthorized access or ...

Discovered 12 hours ago

PoC for CVE-2026-10178

Code-projectsOnline Music Site6.9MEDIUM
SQL Injection Vulnerability in code-projects Online Music Site by C...

A vulnerability has been identified in code-projects Online Music Site 1.0, specifically in the AdminEditAlbum.php file. This issue arises from improper handling of user-supplied input, enabling an attacker to execute SQL injection attacks by manipulating the 'ID' argument. The potential for expl...

PoC for CVE-2026-10177

Aider-aiAider5.3MEDIUM
Server-Side Request Forgery in Aider-AI Aider by Aider-AI

A critical security flaw has been discovered in Aider-AI Aider version 0.86.3, specifically in the AWS EC2 Metadata Endpoint implementation. The vulnerability resides in the requests.get function found in the api_docs.py file, allowing for potential server-side request forgery attacks. This issue...

Discovered 13 hours ago

PoC for CVE-2026-10176

Aider-aiAider5.3MEDIUM
SQL Injection Vulnerability in Aider-AI Aider by Aider-AI

Aider-AI Aider version 0.86.3 contains a vulnerability within its Code Generation Workflow component, allowing for SQL injection. This security flaw can be exploited remotely, potentially leading to unauthorized access to sensitive data. Publicly available exploits increase the risk of attacks, a...

PoC for CVE-2026-10175

Aider-aiAider5.3MEDIUM
Code Injection Vulnerability in Aider-AI Architect Mode by Aider

A significant security vulnerability exists in the Aider-AI Architect Mode, specifically within the auth.py component's editor_coder.run function. This flaw allows for code injection through manipulation, which could be exploited remotely. The exploit has already been made public, increasing the ...

Discovered 14 hours ago

PoC for CVE-2026-10174

Aider-aiAider5.3MEDIUM
Pre-commit Hook Handler Vulnerability in Aider-AI Software

A significant security issue has been found in the Aider-AI software, specifically in the Pre-commit Hook Handler function within the 'aider/args.py' file. This vulnerability allows manipulation of the 'git-commit-verify' argument, leading to a failure in the built-in protection mechanisms. This ...

Discovered 15 hours ago

PoC for CVE-2025-10162

WordPressAdmin And Customer Mes...🟣 EPSS 39%7.5HIGH
Path Traversal Vulnerability in OrderConvo Plugin for WooCommerce b...

The OrderConvo WordPress plugin for WooCommerce, prior to version 14, contains a vulnerability that fails to properly validate the paths for downloadable files. This oversight enables an unauthenticated attacker to exploit a path traversal flaw, potentially allowing them to read or download arbit...

PoC for CVE-2026-10173

OrthancExplorer 25.3MEDIUM
Cross Site Scripting Vulnerability in Orthanc Explorer by Orthanc

A cross site scripting vulnerability exists in Orthanc Explorer versions up to 1.12.0, specifically within an unknown function in the file WebApplication/src/components/StudyList.vue. This flaw is due to inadequate validation of the 'remote-source' argument, enabling attackers to exploit the vuln...

PoC for CVE-2026-10172

BdtaskMulti-store Inventory ...5.3MEDIUM
Unrestricted File Upload Vulnerability in Bdtask Multi-Store Invent...

A security flaw exists in the Bdtask Multi-Store Inventory Management System version 1.0, specifically within the Upload function located in the application/modules/dashboard/controllers/Module.php file of the Component Module. This vulnerability allows for unrestricted file uploads by manipulati...

Discovered 16 hours ago

PoC for CVE-2026-10171

Code-projectsOnline Music Site5.1MEDIUM
SQL Injection Vulnerability in Code-Projects Online Music Site by C...

A SQL injection vulnerability exists in code-projects' Online Music Site 1.0, specifically in the /Administrator/PHP/AdminUpdateAlbum.php file. This issue arises due to improper handling of the ID parameter, enabling attackers to manipulate SQL queries and potentially gain unauthorized access to ...

Discovered 17 hours ago

PoC for CVE-2026-10170

Code-projectsVisitor Management System5.3MEDIUM
SQL Injection Vulnerability in Visitor Management System by Code-Pr...

A SQL injection vulnerability has been identified in the Visitor Management System 1.0 by Code-Projects. This flaw resides in the /vms/php/phone_0.php file, where manipulation of the 'phone' argument allows for unauthorized access and execution of SQL commands by attackers. The exploit can be per...

PoC for CVE-2026-10169

Ousl-group-brinar...School Student Managem...6.3MEDIUM
Weak Password Recovery Vulnerability in OUSL-GROUP-BrinaryBrains Sc...

A vulnerability exists in the Forgot Password Endpoint of the OUSL-GROUP-BrinaryBrains School Student Management System, specifically affecting the ajax_forgot_password function in the Login.php file. This vulnerability can lead to weak password recovery mechanisms, which may allow attackers to e...

Discovered 18 hours ago

PoC for CVE-2026-23744

McpjamInspector🟣 EPSS 30%9.8CRITICAL
Remote Code Execution Vulnerability in MCPJam Inspector by MCP

MCPJam Inspector, designed for local-first development on MCP servers, has a vulnerability allowing remote code execution (RCE) due to improper binding settings. In versions 1.4.2 and earlier, the platform listens on 0.0.0.0 by default, enabling attackers to exploit this configuration through cra...

PoC for CVE-2023-27350

PapercutNg🟣 EPSS 94%9.8CRITICAL
Bypass Authentication Vulnerability in PaperCut NG 22.0.5

A vulnerability in PaperCut NG allows remote attackers to bypass authentication due to improper access control within the SetupCompleted class. This can lead to the execution of arbitrary code with SYSTEM privileges, posing significant security risks. Attackers do not need to authenticate to expl...

PoC for CVE-2026-10168

Ousl-group-brinar...School Student Managem...5.3MEDIUM
Improper Control of Resource Identifiers in OUSL-GROUP-BrinaryBrain...

A security vulnerability has been identified in the OUSL-GROUP-BrinaryBrains School Student Management System where the 'marks' function in 'application/controllers/Parents.php' is susceptible to an improper control of resource identifiers issue. This flaw allows remote attackers to manipulate th...

Discovered 19 hours ago

PoC for CVE-2024-3400

Palo Alto NetworksPan-os🟣 EPSS 94%10CRITICAL
Palo Alto Networks PAN-OS Command Injection Vulnerability

A vulnerability exists in the GlobalProtect feature of Palo Alto Networks PAN-OS software, allowing for arbitrary file creation. This issue can be exploited by an unauthenticated attacker to execute code with root privileges on the affected firewall systems. Specific configurations and versions a...

PoC for CVE-2026-10167

Ousl-group-brinar...School Student Managem...6.9MEDIUM
Improper Authentication in OUSL-GROUP BrinaryBrains School Student ...

A vulnerability has been detected in the OUSL-GROUP BrinaryBrains School Student Management System, affecting the sign_auth_cookie function within the Login.php file of the MY_Controller component. By manipulating the role argument, an attacker can gain unauthorized access, compromising the syste...

PoC for CVE-2026-10166

EdimaxBr-6478ac5.3MEDIUM
Command Injection Vulnerability in Edimax BR-6478AC Routers

A command injection vulnerability has been identified in the Edimax BR-6478AC router. Specifically, the issue lies within the formWlbasic function located in the /goform/formWlbasic file, where improper handling of the rootAPmac argument can allow an attacker to execute arbitrary commands. This v...

PoC for CVE-2026-10165

EdimaxBr-6478ac8.7HIGH
Buffer Overflow Vulnerability in Edimax Router

A buffer overflow vulnerability exists in the Edimax BR-6478AC router, specifically within the function formWanTcpipSetup located in the file /goform/formWanTcpipSetup. This issue arises from inadequate handling of the pppUserName argument, potentially allowing a remote attacker to execute arbitr...

Discovered 20 hours ago

PoC for CVE-2026-10164

EdimaxBr-6478ac8.7HIGH
Buffer Overflow Vulnerability in Edimax BR-6478AC Router

A vulnerability has been identified in the Edimax BR-6478AC router version 1.23. This buffer overflow occurs in the formUSBFolder function found within the POST Request Handler. An attacker can manipulate the ShareName/SelectName argument, allowing for unauthorized access and remote exploitation....

PoC for CVE-2026-10163

EdimaxBr-6478ac8.7HIGH
Buffer Overflow Vulnerability in Edimax BR-6478AC Router

A buffer overflow vulnerability exists in the Edimax BR-6478AC router, specifically within the formUSBAccount feature of the POST Request Handler. This vulnerability allows an attacker to manipulate the UserName and Password arguments, potentially leading to remote exploitation. The issue has bee...

PoC for CVE-2026-10162

TrendnetTew-432brp8.7HIGH
Stack-based Buffer Overflow in TRENDnet TEW-432BRP Router

A vulnerability has been identified in the TRENDnet TEW-432BRP that allows for a stack-based buffer overflow through the formSetPassword function in the /goform/formSetPassword endpoint. By manipulating the 'webpage' argument, an attacker could potentially exploit this flaw remotely. It is import...

PoC for CVE-2026-10161

TrendnetTew-432brp8.7HIGH
Buffer Overflow Vulnerability in TRENDnet Network Router Product

A stack-based buffer overflow vulnerability has been identified in the TRENDnet TEW-432BRP 3.10B20 router. The flaw lies within the 'formResetStatistic' function in the /goform/formResetStatistic file, where improper handling of the 'status_statistic' argument allows for remote exploitation. Unfo...

Discovered 21 hours ago

PoC for CVE-2026-10160

TrendnetTew-432brp8.7HIGH
Stack-Based Buffer Overflow in TRENDnet TEW-432BRP Router

A security vulnerability has been identified in the TRENDnet TEW-432BRP router, specifically within the formSetEnableWizard function. This issue allows an attacker to exploit a stack-based buffer overflow by manipulating the start_wizard argument. Importantly, this vulnerability can be remotely t...

Discovered 22 hours ago

PoC for CVE-2025-9485

WordPressOauth Single Sign On –...9.8CRITICAL
Improper Cryptographic Signature Verification in WordPress Plugin b...

The OAuth Single Sign On – SSO (OAuth Client) plugin for WordPress suffers from a significant vulnerability due to its improper handling of JSON Web Tokens (JWT). Versions up to and including 6.26.12 do not adequately verify or validate the signatures of incoming tokens in the `get_resource_owner...

PoC for CVE-2026-10156

Open5GSOpen5gs5.3MEDIUM
Resource Consumption Vulnerability in Open5GS by Open5GS

A vulnerability has been identified in Open5GS versions up to 2.7.7, specifically within the handle_amf_info function located in the /lib/sbi/nnrf-handler.c file of the nf-instances Endpoint. This vulnerability allows for a manipulation of the nf_info_pool argument, which can lead to excessive re...

Discovered 23 hours ago

PoC for CVE-2026-10155

BdtaskMulti-store Inventory ...5.1MEDIUM
SQL Injection Vulnerability in Bdtask Multi-Store Inventory Managem...

A vulnerability exists in Bdtask Multi-Store Inventory Management System 1.0, specifically impacting the accounts_report_search function within the Accounts Report Handler. By manipulating the dtpToDate argument, attackers can execute SQL injection attacks, allowing for unauthorized access to the...

Discovered 1 day ago

PoC for CVE-2026-10153

WestboyCicadascms5.3MEDIUM
Cross Site Scripting Vulnerability in CicadasCMS by Westboy

A significant flaw exists in the function Search within the CicadasCMS platform created by Westboy. The vulnerability is located in the AbstractCacheManager.java file, where an argument manipulation can lead to cross site scripting attacks. This enables potential attackers to execute malicious sc...

PoC for CVE-2026-8732

WordPressWP Maps Pro9.8CRITICAL
Privilege Escalation in WP Maps Pro Plugin by WordPress

The WP Maps Pro plugin contains a vulnerability that allows unauthenticated attackers to escalate their privileges by creating a new administrator account. This occurs due to insufficient protection around a public AJAX action, which can be exploited using a nonce that is easily accessible. By in...

PoC for CVE-2026-10152

TalelinLin-cms-spring-boot5.3MEDIUM
Access Control Vulnerability in TaleLin CMS Product

A vulnerability has been identified in the TaleLin lin-cms-spring-boot product, specifically affecting the book endpoint within the BookController.java file. This issue allows for improper access controls, potentially enabling remote attackers to manipulate backend processes and gain unauthorized...

PoC for CVE-2026-0257

Palo Alto NetworksCloud Ngfw🟣 EPSS 42%7.8HIGH
Authentication Bypass in Palo Alto Networks PAN-OS Software

The authentication bypass vulnerability in Palo Alto Networks' PAN-OS software presents a significant security risk by allowing unauthorized access to the GlobalProtect portal and gateway. This flaw enables attackers to circumvent authentication mechanisms, potentially gaining unauthorized VPN co...

PoC for CVE-2026-39987

Marimo-teamMarimo🟣 EPSS 82%9.3CRITICAL
Pre-Authentication Remote Code Execution in Marimo Python Notebook

Marimo, a reactive Python notebook, exhibits a significant security vulnerability prior to version 0.23.0. The terminal WebSocket endpoint (/terminal/ws) allows unauthenticated access, enabling attackers to gain a complete pseudo-terminal shell and execute arbitrary commands on the host system. U...