Publicly Disclosed
PoC Exploits
🔴 Alway take caution when working with PoC Exploits 🔴
Discovered 3 hours ago
PoC for CVE-2026-87902
An unauthenticated attacker can exploit a vulnerability in WordPress that allows `get_page_template()` to inadvertently resolve and include a chosen local `.php` file located outside of the active theme directories. When specific server conditions and configurations of the active theme are met, t...
Discovered 4 hours ago
PoC for CVE-2026-96258
A vulnerability exists in the Public Password Reset Endpoint of onSite internet GmbH's Auktion NG Auktionssoftware, specifically affecting the email manipulation within the /forgotpasswd.html file. This vulnerability allows attackers to execute arbitrary scripts in the context of a user's browser...
PoC for CVE-2026-87902
An unauthenticated attacker can exploit a vulnerability in WordPress that allows `get_page_template()` to inadvertently resolve and include a chosen local `.php` file located outside of the active theme directories. When specific server conditions and configurations of the active theme are met, t...
PoC for CVE-2026-96257
A vulnerability exists in the Fast FAC1203R Gigabit Edition 2.0.4, specifically within the 'copy_msg_element' function of the Device Discovery Service. This flaw allows attackers to manipulate the functionality, potentially leading to a stack-based buffer overflow. The vulnerability can be exploi...
PoC for CVE-2026-95957
A vulnerability exists in the SourceCodester Smart Attendance System with QR Code Scanner 1.0, specifically in the function prepend of student_signup.php within the Self-Registration component. This flaw allows for manipulation of the full_name argument, leading to potential cross-site scripting ...
Discovered 5 hours ago
PoC for CVE-2026-95928
A security vulnerability has been identified in the recommenders-team's recommenders library, specifically in versions up to 1.2.1. The flaw is located in the function 'pickle.load' within the file 'recommenders/models/newsrec/io/mind_iterator.py'. This issue allows for remote code execution thro...
PoC for CVE-2026-48519
Langflow, an innovative platform for building AI-powered agents, experienced a critical vulnerability prior to version 1.9.2 that allowed for remote code execution via its 'Shareable Playground' feature. This flaw enabled unauthorized users to execute arbitrary Python code by exploiting a public ...
PoC for CVE-2026-95927
A vulnerability has been identified in the SourceCodester Online Reviewer Management System 1.0, specifically affecting the exam-delete.php file. The flaw appears when manipulating the 'test_id' argument, which can lead to unauthorized SQL query execution. This vulnerability can be exploited remo...
Discovered 6 hours ago
PoC for CVE-2026-95926
A SQL injection vulnerability exists in the SourceCodester Online Reviewer Management System 1.0, specifically within an unknown function of the file /reviewer_0/admins/assessments/pretest/btn_functions.php when the action parameter is set to update. An attacker could exploit this vulnerability r...
PoC for CVE-2026-95925
A SQL injection vulnerability exists in the SourceCodester Online Reviewer Management System version 1.0, specifically within an unknown function in the file /reviewer_0/admins/assessments/databank/btn_functions.php, triggered by the manipulation of the difficulty_id argument during an update act...
PoC for CVE-2026-95924
A security flaw has been identified in the SourceCodester Online Reviewer Management System version 1.0, specifically within the 'btn_functions.php' file that handles assessments. An argument manipulation related to 'difficulty_id' can lead to unauthorized SQL command execution, allowing attacker...
PoC for CVE-2026-95897
A security vulnerability has been identified in Dask's Loader component, specifically in the from_npy_stack function within dask/array/core.py. This flaw enables potential attackers to manipulate data in a way that facilitates remote code execution through deserialization. Although the exploit ha...
PoC for CVE-2026-96272
ClipBucket versions prior to 5.5.3-#182 are susceptible to a blind SQL injection flaw within the photo search endpoint. This vulnerability arises when the query parameter is fed directly into SQL WHERE and ORDER BY clauses without proper sanitization. Attackers, even if unauthenticated, can utili...
Discovered 7 hours ago
PoC for CVE-2026-95833
A vulnerability has been detected in the itsourcecode Leave Management System 1.0, specifically within an unspecified function in the file /module/leavetype/index.php. This weakness allows for SQL injection attacks due to improper handling of the argument ID, enabling potential unauthorized acces...
PoC for CVE-2026-95830
A security flaw identified in theRealSain Pixtream relates to an insecure file handling mechanism in /post_upload.php. This vulnerability allows attackers to manipulate the 'media' argument, leading to unrestricted file uploads. Such exposure permits remote adversaries to upload potentially malic...
Discovered 8 hours ago
PoC for CVE-2026-95828
A session fixation vulnerability has been identified in Mstfakts College-Management-System's authentication mechanism, particularly in the session_start function found in Front-end/server.php. This vulnerability allows an attacker to execute a remote manipulation, which may result in unauthorized...
PoC for CVE-2026-95820
An unrestricted upload vulnerability has been identified in the College-Notes-Gallery application, specifically within the userprofile.php script under the admin1 section. This security flaw allows unauthenticated attackers to manipulate the image parameter, leading to potential malicious file up...
Discovered 9 hours ago
PoC for CVE-2026-95819
A SQL injection vulnerability exists in the login.php file of College-Notes-Gallery up to version 8c1cf3d98f30982d069c88ca172612c001eb39f6. This flaw allows unauthorized remote attackers to manipulate user authentication by sending crafted login parameters, potentially compromising sensitive user...
Discovered 11 hours ago
PoC for CVE-2026-95812
ClipBucket versions prior to 5.5.3-#182 contain a reflected cross-site scripting vulnerability within the sort_link() helper function. This flaw arises because the application does not adequately sanitize user-supplied input from the 'cat', 'sort', and 'time' query parameters. As a result, attack...
PoC for CVE-2026-68376
A vulnerability in the Linux kernel's SCTP implementation allows for a buffer overflow due to an incorrect calculation of the auth_hmacs array size in the struct sctp_cookie. This miscalculation leads to the potential for corrupting adjacent memory, which can allow invalid HMAC identifiers to be ...
Discovered 12 hours ago
PoC for CVE-2026-47116
The LTSecurity LTK3500SF product is vulnerable due to hard-coded credentials being stored as reversible hashes in /etc/shadow. This security flaw allows attackers to use dictionary-based cracking tools to recover root and guest account passwords, enabling unauthorized access via Telnet or SSH. Co...
PoC for CVE-2026-93485
An improper neutralization of input during web page generation vulnerability in Automattic WordPress core can lead to a DOM-Based XSS attack. This issue arises from the default configuration of WordPress, which allows unauthenticated users to exploit cross-site scripting by bypassing comment mode...
Discovered 13 hours ago
PoC for CVE-2026-95660
A security flaw has been identified in the Moonshot AI Kimi Code prior to version 0.31.1. This vulnerability arises from an unknown function in the 'agent-core-v2/src/agent/mcp/config-loader.ts' file of the MCP Configuration Loader component. Exploitation of this weakness allows for OS command in...
PoC for CVE-2026-43643
The Softaculous Virtualizor software contains a vulnerability in its billing module that allows attackers to bypass authorization mechanisms. This enables unauthorized users to modify a tenant's account balance by sending crafted POST requests to the admin panel. By manipulating parameters such a...
PoC for CVE-2026-95657
A vulnerability exists in dgtlmoon Changedetection.io versions up to 0.55.8 that affects the Visual Selector component. This issue arises within the setCurrentSelectedText function in the visual-selector.js file. Malicious manipulation of the function's argument can lead to a cross-site scripting...
Discovered 14 hours ago
PoC for CVE-2026-95656
A server-side request forgery vulnerability exists in dgtlmoon Changedetection.io affecting the add_watch_ui_snapshot function. This issue arises due to improper handling of the URL argument in the Preview Endpoint, allowing an attacker to manipulate requests sent to the server. Exploitation of t...
Discovered 17 hours ago
PoC for CVE-2026-95675
The D-Link DAP-1360 experiences a significant security flaw that allows unauthenticated remote code execution via its web management interface. An attacker can exploit this vulnerability by sending specially crafted requests, enabling them to execute arbitrary commands with root privileges. This ...
Discovered 18 hours ago
PoC for CVE-2026-95396
A vulnerability was discovered in the sfturing Hospital Order application, specifically within the Public Search Handlers component. The flaw exists in an unknown function within the HospitalController.java file, where improper handling of the 'Search' argument can lead to cross site scripting (X...
PoC for CVE-2026-95273
A path traversal vulnerability exists in dgtlmoon changedetection.io, particularly in the static_content function of the visual_selector_data component located in changedetectionio/flask_app.py. This flaw allows attackers to manipulate the filename argument, potentially leading to unauthorized ac...
Discovered 19 hours ago
PoC for CVE-2026-95272
A path traversal vulnerability has been identified in the dgtlmoon changedetection.io application, specifically within the Screenshot Handler component found in the 'static_content' function of the 'flask_app.py' file. By manipulating the 'filename' argument, an attacker can potentially access ar...
PoC for CVE-2026-95271
A vulnerability has been identified in dgtlmoon changedetection.io versions up to 0.60.7, specifically within the function check_authentication located in the file flask_app.py. This flaw in the Authentication Hook enables improper authentication, which could allow attackers to exploit the system...
Discovered 20 hours ago
PoC for CVE-2026-95270
A vulnerability in dgtlmoon Changedetection.io has been identified, affecting versions up to 0.60.7. This flaw resides in the check_password function within the Hash Comparison component, specifically in the file flask_app.py. An attacker can exploit this vulnerability to create observable timing...
Discovered 23 hours ago
PoC for CVE-2026-64638
WordPress is susceptible to a pre-auth reflected cross-site scripting (XSS) vulnerability on the login interface. This security issue allows attackers to exploit a specially crafted malicious webpage designed to lure users into interaction. Although this gateway typically leads to XSS, it represe...
Discovered 1 day ago
PoC for CVE-2026-91827
The Ninja Forms plugin version 3.15.3 for WordPress has a critical security flaw that allows unauthorized attackers to exploit user-submitted form data. When form submissions are exported to CSV by an administrator, the plugin fails to properly sanitize the deserialized data, creating an opportun...
PoC for CVE-2026-92438
The Ninja Forms plugin for WordPress, specifically version 3.15.3, is susceptible to a vulnerability due to its failure to properly escape submitted form field values. This oversight allows unauthenticated users to submit data through publicly accessible forms. When these values are displayed on ...
PoC for CVE-2026-88788
The Text Styler WordPress plugin, up to version 1.1.1, is vulnerable to Cross-Site Scripting (XSS) attacks due to inadequate sanitization of user-supplied styling values. This vulnerability enables users with contributor-level access or higher to introduce malicious JavaScript into the output. As...
PoC for CVE-2026-94493
The Gigatech PDV5701 has been identified with a vulnerability in its WebSocket Service, specifically affecting the processing of the /index.html file. This security flaw allows for missing authentication, making it possible for attackers to exploit the system remotely. The potential for exploitat...
PoC for CVE-2026-94492
A security vulnerability has been uncovered within the Yonyou U8cloud 5.x software, specifically in the OpenAPI component located at /u8cloud/openapi/so.saleorder.sendaudit. This vulnerability enables attackers to manipulate the 'operator' argument, leading to potential SQL injection attacks. Suc...
PoC for CVE-2026-43786
A privilege escalation issue has been discovered in Apple's macOS, which may allow an application to obtain unauthorized root privileges. This vulnerability arises from insufficient entitlement checks in the system, leading to potential exploitation that can compromise system integrity. It is cru...
PoC for CVE-2026-94426
A vulnerability exists in the xuxueli XXL-Job software that allows for cross-site scripting (XSS) through a flaw in the `jobgroup/insert` function. This vulnerability can be exploited remotely by manipulating the argument 'Name'. The potential for exploitation is heightened as the flaw has been p...
PoC for CVE-2026-28618
A vulnerability in the Android OS identified as a heap buffer overflow can allow potential attackers to execute remote code without requiring any user interaction. This weakness resides in the 'dec_frm_prepare' function of the 'oapv.c' file, which can be exploited to conduct out-of-bounds writes,...
PoC for CVE-2026-94540
DesktopSMS 1.11.0 by MrPear is susceptible to an unauthorized access vulnerability, enabling local attackers to utilize the application's local service. This flaw allows attackers to send SMS messages and retrieve SMS-derived content without requiring user interaction or pairing confirmation. An ...
PoC for CVE-2026-94536
The Lamp-cloud software, up to version 5.10.0, is susceptible to an information disclosure vulnerability due to inadequate validation of the 'employeeId' parameter in the '/anyone/visible/resource' endpoint. This flaw permits authenticated users to exploit the system, enabling them to read roles ...
PoC for CVE-2026-94535
An authorization bypass vulnerability exists in the deleteMyNotice endpoint of lamp-cloud (versions up to 5.10.0). This flaw allows authenticated users to craft malicious DELETE requests, targeting arbitrary notice IDs, thus enabling them to delete notifications that belong to other users without...
PoC for CVE-2026-94534
Lamp-Cloud versions up to 5.10.0 are susceptible to a serious security issue where user identity is not properly validated during profile updates. This vulnerability allows authenticated attackers to manipulate user profiles by sending requests with targeted user IDs. Attackers can alter critical...
PoC for CVE-2026-94534
Lamp-Cloud versions up to 5.10.0 are susceptible to a serious security issue where user identity is not properly validated during profile updates. This vulnerability allows authenticated attackers to manipulate user profiles by sending requests with targeted user IDs. Attackers can alter critical...
PoC for CVE-2026-94533
The lamp-cloud product, specifically through version 5.10.0, suffers from an authorization bypass vulnerability in the FileAnyoneController. This flaw permits authenticated users to download arbitrary attachments from other users. By manipulating valid attachment identifiers, attackers can exploi...
PoC for CVE-2026-94532
Lamp-Cloud, up to version 5.10.0, has a vulnerability in the getUserInfoById endpoint which allows authenticated users to bypass authorization checks. This flaw enables individuals to access full profiles of any user within the system by manipulating the userId parameter. As a consequence, attack...
PoC for CVE-2026-77078
The multer middleware used for handling multipart/form-data in Node.js applications has a vulnerability that can be exploited to trigger a denial of service (DoS). This occurs when a multipart request containing two specially crafted text field names is sent. The first field attempts to create an...
PoC for CVE-2025-6325
A vulnerability exists in King Addons for Elementor, developed by KingAddons.com, that allows attackers to escalate their privileges. This Incorrect Privilege Assignment flaw enables unauthorized users to gain elevated access to restricted functionalities within the plugin. The issue affects all ...