Publicly Disclosed
PoC Exploits

🔴 Alway take caution when working with PoC Exploits 🔴

Discovered 2 hours ago

PoC for CVE-2026-93742

TotolinkA3002mu9.4CRITICAL
Command Injection Vulnerability in Totolink A3002MU Router

A command injection vulnerability has been identified in the Totolink A3002MU router specifically in the formWsc function located in the /boafrm/formWsc file. This weakness allows an attacker to manipulate the 'localPin' argument, leading to unauthorized command execution. The flaw is exploitable...

Discovered 4 hours ago

PoC for CVE-2024-28157

JenkinsJenkins Gitbucket Plugin8HIGH
Jenkins GitBucket Plugin vulnerable to XSS exploitation

The Jenkins GitBucket Plugin, up to version 0.8, contains a vulnerability due to inadequate sanitization of Gitbucket URLs in build views. This flaw allows attackers with the ability to configure jobs to inject malicious scripts, which can be executed in the context of users viewing the affected ...

Discovered 5 hours ago

PoC for CVE-2026-92435

WordPressMailchimp For WooCommerce
Security Flaw in Mailchimp for WooCommerce Plugin Exposes Admin End...

The Mailchimp for WooCommerce plugin, prior to version 6.1.1, contains a significant security flaw that allows unauthenticated users to interact with sensitive REST API endpoints. This occurs due to inadequate checks in the permission callback, which permits unauthorized users to create persisten...

PoC for CVE-2026-92430

WordPressRede Itaú For WooComme...
Authentication Bypass Vulnerability in Rede Itaú for WooCommerce Pl...

The Rede Itaú for WooCommerce plugin before version 5.4.7 lacks proper verification of the authenticity of its PIX payment webhook. This oversight allows malicious actors to exploit the system and change the status of pending orders to paid without completing the actual payment process. Such vuln...

PoC for CVE-2026-92420

WordPressHydra Booking — Appoin...
Authorization Flaw in Hydra Booking Plugin for WordPress

The Hydra Booking plugin, utilized for appointment scheduling in WordPress, has a significant security flaw that allows users with booking-provider-level access to manipulate other providers' bookings. Specifically, it fails to verify the ownership of bookings before allowing modifications or del...

PoC for CVE-2026-92425

WordPressHydra Booking — Appoin...
Object-Level Authorization Flaw in Hydra Booking Plugin by WordPress

The Hydra Booking plugin for WordPress, prior to version 1.2.4, contains a significant flaw that lacks proper object-level authorization checks across various host-management functionalities. This oversight allows users with administrator-assigned custom roles to manipulate sensitive data, includ...

PoC for CVE-2026-92421

WordPressHydra Booking — Appoin...
Unauthorized Profile Modification in Hydra Booking - Appointment Sc...

The Hydra Booking - Appointment Scheduling & Booking Calendar plugin for WordPress versions prior to 1.2.3 is susceptible to an authorization bypass vulnerability. This flaw allows authenticated users with the host role to modify other hosts' profile information and transfer ownership of related ...

PoC for CVE-2026-92403

WordPressSecure Custom Fields
Improper Form Verification in Secure Custom Fields Plugin for WordP...

The Secure Custom Fields WordPress plugin prior to version 6.9.4 suffers from a vulnerability where it fails to validate that a front-end form submission corresponds to the correct form instance displayed to a visitor. This flaw allows unauthenticated users to target different registered forms an...

PoC for CVE-2026-92404

WordPressMgosync
Authorization Flaw in MgoSync Plugin for WordPress Exposes API Cred...

The MgoSync plugin for WordPress lacks proper authorization controls on its REST API endpoints. This oversight enables unauthenticated users to access sensitive WooCommerce API credentials, which include a read/write consumer key and secret. Consequently, this vulnerability poses a significant ri...

PoC for CVE-2026-92099

WordPressWPgraphql Smart Cache
Unauthorized Query Submission in WPGraphQL Smart Cache Plugin by Wo...

The WPGraphQL Smart Cache plugin prior to version 2.3.2 is susceptible to an authorization bypass vulnerability. This flaw allows unauthenticated users to store arbitrary query documents by exploiting the lack of validation for caller-supplied query identifiers. As a result, malicious users can p...

PoC for CVE-2026-91847

WordPressOnline Scheduling And ...
Unauthenticated Access Flaw in Online Scheduling Plugin for WordPress

The Online Scheduling and Appointment Booking System WordPress plugin prior to version 28.2 fails to validate the ownership of conversations in its unauthenticated actions. This oversight permits any visitor to gain unauthorized access to messages within another user's AI booking-assistant conver...

PoC for CVE-2026-88926

WordPressVikrentitems Flexible ...
SQL Injection Vulnerability in VikRentItems Flexible Rental Managem...

The VikRentItems Flexible Rental Management System WordPress plugin prior to version 1.2.4 is vulnerable due to inadequate sanitization and escaping of user input in SQL statements. This flaw allows unauthenticated attackers to execute arbitrary SQL queries, potentially compromising the database ...

PoC for CVE-2026-88824

WordPressMaster Blocks
Stored XSS Vulnerability in Master Blocks WordPress Plugin

The Master Blocks plugin for WordPress, prior to version 1.5.0, is vulnerable due to insufficient authorization on certain REST routes. This oversight permits unauthenticated users to modify plugin settings, including values displayed unescaped in the WordPress admin area. Consequently, this lead...

PoC for CVE-2026-85574

WordPressUnbounce Landing Pages
Unauthorized Configuration Update in Unbounce Landing Pages Plugin ...

The Unbounce Landing Pages plugin for WordPress prior to version 1.1.5 is vulnerable to an authorization bypass issue. This vulnerability allows authenticated users, including those with low privilege accounts like subscribers, to manipulate the configuration used by the plugin's front-end proxy....

PoC for CVE-2026-86814

WordPressUsersWP
Authentication Bypass in UsersWP Plugin for WordPress

The UsersWP plugin for WordPress fails to ensure that a social login provider validates the ownership of an email address before using it to link to an existing account. This flaw allows attackers without authentication to log in as any user, including administrators, simply by asserting control ...

PoC for CVE-2026-86591

WordPressBotiga Pro
Authorization Bypass in Botiga Pro WordPress Plugin

The Botiga Pro plugin for WordPress prior to version 1.6.5 contains a serious flaw that permits unauthorized users to bypass authorization checks on certain REST routes. This vulnerability enables these users to alter WordPress options with arbitrary values, potentially leading to privilege escal...

PoC for CVE-2026-85680

WordPressUltimate Member
Cross-Site Scripting Vulnerability in Ultimate Member Plugin by Wor...

The Ultimate Member plugin for WordPress versions prior to 2.13.1 contains a critical cross-site scripting (XSS) vulnerability. This flaw arises when user-supplied profile names are rendered in the page title without proper escaping, and HTML entities are decoded following initial sanitization. A...

PoC for CVE-2026-76790

WordPressEstatik Real Estate Pl...
Reflected Cross-Site Scripting Vulnerability in Estatik Real Estate...

The Estatik Real Estate Plugin for WordPress, prior to version 4.3.5, is susceptible to Reflected Cross-Site Scripting (XSS). This vulnerability arises due to the improper sanitization and escaping of user input when handled through unauthenticated AJAX calls, allowing attackers to inject malicio...

PoC for CVE-2026-84750

WordPressUltra Addons For Conta...
Unrestricted File Upload Vulnerability in Ultra Addons for Contact ...

The Ultra Addons for Contact Form 7 plugin for WordPress prior to version 3.5.51 has a significant security flaw where it fails to validate the type or extension of files uploaded via its forms. This allows unauthenticated users to upload arbitrary files, potentially leading to serious security b...

PoC for CVE-2026-19860

WordPressJetformbuilder — Dynam...
Inadequate PHP Function Restriction in JetFormBuilder Plugin for Wo...

The JetFormBuilder WordPress plugin before version 3.6.5.3 permits insufficiently restricted PHP functions as custom field-validation callbacks. This loophole allows users with form management privileges to execute arbitrary file deletions on the server. The vulnerability is exploited during form...

PoC for CVE-2026-76554

WordPressWP Import Export Lite
Unauthorized User Role Manipulation in WP Import Export Lite Plugin

The WP Import Export Lite plugin allows unauthorized users to create and modify user accounts without proper permissions. Prior to version 3.9.35, it fails to verify the user's authority to manage user roles, enabling those with delegated permissions to establish administrator accounts and alter ...

PoC for CVE-2025-15698

WordPressBusiness Name Generator
Stored Cross-Site Scripting Vulnerability in Business Name Generato...

The Business Name Generator Plugin for WordPress, in versions through 1.3, is susceptible to a stored Cross-Site Scripting vulnerability. This issue arises from the lack of proper sanitization and escaping on certain settings, enabling high privilege users, such as admin, to execute malicious scr...

PoC for CVE-2026-16557

WordPressNimble Page Builder
Authorization Bypass in Nimble Page Builder Plugin by WordPress

The Nimble Page Builder WordPress plugin, up to version 3.3.8, lacks an authorization check when returning content through an authenticated AJAX action. This oversight allows any authenticated user with a role of Subscriber or higher to access and disclose the content of non-public posts and page...

PoC for CVE-2026-93741

TotolinkA3002mu10CRITICAL
Buffer Overflow Vulnerability in Totolink A3002MU Product

A critical security issue has been identified in the Totolink A3002MU, specifically in the formWlWds function within the file /boafrm/formWlWds. This vulnerability allows for a buffer overflow through improper handling of the submit-url argument, making it susceptible to remote exploitation. As t...

Discovered 8 hours ago

PoC for CVE-2025-32433

ErlangOtp🟣 EPSS 99%10CRITICAL
Remote Code Execution Vulnerability in Erlang/OTP SSH Server

The Erlang/OTP SSH server prior to versions OTP-27.3.3, OTP-26.2.5.11, and OTP-25.3.2.20 contains a critical flaw in SSH protocol message handling that allows attackers to bypass authentication and execute arbitrary commands remotely. This vulnerability can be exploited to gain unauthorized acces...

Discovered 9 hours ago

PoC for CVE-2026-18464

WordPressWP Maps Pro7.5HIGH
Denial of Service Vulnerability in WP MAPS PRO Plugin by WordPress

The WP MAPS PRO plugin for WordPress prior to version 6.1.3 lacks proper capability checks for certain AJAX actions. This oversights allows unauthenticated users to exploit these actions, leading to potential uncontrolled recursion. As a result, attackers may consume server resources excessively,...

PoC for CVE-2026-16265

WordPressWP Maps6.5MEDIUM
Denial of Service Vulnerability in WP Maps WordPress Plugin

The WP Maps plugin for WordPress, prior to version 4.9.7, lacks proper capability checks in its AJAX actions. This weakness allows users with a Subscriber account to execute uncontrolled recursive functions, subsequently exhausting server resources and leading to a Denial of Service. It is crucia...

PoC for CVE-2026-63030

WordPressWordPress🟣 EPSS 97%9.8CRITICAL
SQL Injection and Remote Code Execution in WordPress REST API

A confusion issue in the REST API batch endpoint of WordPress versions 6.9.x prior to 6.9.5 and 7.0.x prior to 7.0.2 could facilitate an exploit. This vulnerability, when combined with an existing SQL Injection flaw in the author__not_in WP_Query feature, can allow attackers to execute unauthoriz...

Discovered 13 hours ago

PoC for CVE-2026-93740

TotolinkA3002mu10CRITICAL
Buffer Overflow Vulnerability in Totolink A3002MU Router

A security flaw has been detected in the Totolink A3002MU router, particularly within the formWlEncrypt function located in the /boafrm directory. This vulnerability allows for a remote buffer overflow attack through manipulation of the 'submit-url' parameter. Attackers can exploit this flaw to e...

PoC for CVE-2026-93739

TotolinkA3002mu9.4CRITICAL
Buffer Overflow in Totolink A3002MU Router Product

A buffer overflow vulnerability exists in the Totolink A3002MU router, specifically affecting the formWlAc function of /boafrm/formWlAc. By manipulating the submit-url argument, an attacker could exploit this issue remotely. This vulnerability has been publicly disclosed, indicating a potential r...

Discovered 14 hours ago

PoC for CVE-2026-93738

TotolinkA3002mu9.4CRITICAL
Buffer Overflow Vulnerability in Totolink A3002MU Appliance

A buffer overflow vulnerability has been identified in the Totolink A3002MU, specifically affecting the formSchedule function in the /boafrm/formSchedule file. This vulnerability allows an attacker to manipulate the 'webpage' argument, leading to potential remote exploitation of the device. Explo...

Discovered 16 hours ago

PoC for CVE-2017-20284

Caucho Technology...Resin8.7HIGH
Path Traversal Vulnerability in Caucho Resin Documentation Webapp

Caucho Resin has a security flaw in its documentation webapp (resin-doc), which allows remote unauthenticated attackers to exploit path traversal techniques. By supplying a relative path via the inputFile request parameter in the jndi-appconfig tutorial servlet, attackers can gain access to arbit...

PoC for CVE-2019-25776

Weaver Network Co...E-cology8.7HIGH
Unauthenticated SQL Injection in Weaver E-cology Mobile Plugin

The Weaver E-cology mobile plugin is susceptible to an unauthenticated SQL injection vulnerability that enables remote attackers to execute arbitrary SQL commands. By manipulating the userIdentifiers GET parameter, attackers can exploit this flaw to perform UNION-based injections, effectively byp...

PoC for CVE-2019-25776

Weaver Network Co...E-cology8.7HIGH
Unauthenticated SQL Injection in Weaver E-cology Mobile Plugin

The Weaver E-cology mobile plugin is susceptible to an unauthenticated SQL injection vulnerability that enables remote attackers to execute arbitrary SQL commands. By manipulating the userIdentifiers GET parameter, attackers can exploit this flaw to perform UNION-based injections, effectively byp...

PoC for CVE-2023-54399

HongjingE-hr9.3CRITICAL
SQL Injection Vulnerability in Hongjing e-HR Product by Hongjing

The Hongjing e-HR software prior to version 8.2 is susceptible to a SQL injection vulnerability located at the /servlet/codesettree endpoint. This flaw allows an unauthenticated remote attacker to inject a crafted UNION SELECT statement through the categories query parameter, potentially exposing...

PoC for CVE-2023-54399

HongjingE-hr9.3CRITICAL
SQL Injection Vulnerability in Hongjing e-HR Product by Hongjing

The Hongjing e-HR software prior to version 8.2 is susceptible to a SQL injection vulnerability located at the /servlet/codesettree endpoint. This flaw allows an unauthenticated remote attacker to inject a crafted UNION SELECT statement through the categories query parameter, potentially exposing...

PoC for CVE-2023-54399

HongjingE-hr9.3CRITICAL
SQL Injection Vulnerability in Hongjing e-HR Product by Hongjing

The Hongjing e-HR software prior to version 8.2 is susceptible to a SQL injection vulnerability located at the /servlet/codesettree endpoint. This flaw allows an unauthenticated remote attacker to inject a crafted UNION SELECT statement through the categories query parameter, potentially exposing...

PoC for CVE-2026-93650

Mirumee SoftwareSaleor6.3MEDIUM
Improper Authentication Restrictions in Saleor by Mirumee Software

A vulnerability exists in certain versions of Saleor, specifically within the get_client_ip function in throttling.py. This issue can lead to inadequate restrictions on excessive authentication attempts, allowing remote exploitation. The complexity of the attack is high, and while exploitability ...

Discovered 19 hours ago

PoC for CVE-2026-64560

LinuxLinux7.8HIGH
Use-After-Free Vulnerability in Linux Kernel Affecting Timer Manage...

A vulnerability in the Linux kernel related to posix CPU timers can lead to a use-after-free condition due to a race in non-leader exec() scenarios. When a timer associated with a process is deleted while concurrently executing an exec() command, it can cause access to freed memory. Specifically,...

PoC for CVE-2026-93532

GedelumbungHospitalmanagement5.3MEDIUM
Improper Authentication Vulnerability in gedelumbung HospitalManage...

A vulnerability exists in gedelumbung HospitalManagement that affects its Password Change Handler responsible for managing user password updates. This flaw allows attackers to manipulate user credentials, particularly the 'kode_user' or 'username' parameters, enabling unauthorized access. The iss...

PoC for CVE-2026-93453

AlintoSogo8.7HIGH
Password Reset Vulnerability in SOGo Email Server by Alinto

The SOGo email server prior to version 5.12.11 contains a significant vulnerability that allows unauthorized attackers to exploit the password-reset process. By injecting a malicious Origin header when submitting password recovery requests, attackers can redirect valid password-reset tokens to th...

PoC for CVE-2026-93531

GedelumbungHospitalmanagement5.3MEDIUM
Cross-Site Request Forgery in gedelumbung HospitalManagement

A vulnerability in gedelumbung's HospitalManagement system allows for cross-site request forgery (CSRF), enabling attackers to exploit the weakness remotely. Users may unknowingly trigger malicious requests while authenticated, potentially compromising sensitive data. An exploit for this flaw has...

Discovered 20 hours ago

PoC for CVE-2026-7006

Sublime Hq Pty LtdSublime Text 47HIGH
Local Privilege Escalation in Sublime Text for Windows

Sublime Text for Windows, specifically versions 4 (Build 4192) and 3 (Build 3207), is prone to a local privilege escalation vulnerability. This flaw allows an unprivileged local attacker to execute arbitrary code with elevated privileges. The exploit takes advantage of the update staging mechanis...

Discovered 22 hours ago

PoC for CVE-2021-43798

GrafanaGrafana🟣 EPSS 89%7.5HIGH
Grafana path traversal

Grafana, an open-source monitoring and observability platform, is susceptible to a directory traversal vulnerability in versions ranging from 8.0.0-beta1 to 8.3.0. This vulnerability enables unauthorized access to local files via specially crafted URL paths which include the identifier for any in...

Discovered 1 day ago

PoC for CVE-2026-18574

CheckpointSecurity Management Se...9.3CRITICAL
Authentication Bypass Vulnerability in Check Point Security Managem...

An authentication bypass vulnerability exists in Check Point Security Management Server and Multi-Domain Security Management Server (MDS) that may allow an unauthenticated remote attacker to access Management services and execute arbitrary commands. This vulnerability poses a significant risk as ...

PoC for CVE-2026-91843

CheckpointQuantum Security Manag...9.8CRITICAL
Stack Overflow Vulnerability in XYZ Product by Vendor ABC

A vulnerability has been identified in XYZ Product that allows an attacker to exploit a stack overflow issue during the unauthenticated login process. This flaw could lead to remote execution of arbitrary code with root privileges, posing serious security risks to systems using this product.

PoC for CVE-2026-77179

DockerDocker Sandboxes9.4CRITICAL
Symlink Vulnerability in Docker Sandboxes on macOS

A vulnerability exists in the virtio-fs host server used by Docker Sandboxes on macOS, where improper symlink handling when reopening unlinked files can lead to unauthorized access. An attacker can manipulate the environment by replacing a parent directory with a symlink, allowing them to escape ...

PoC for CVE-2025-21479

QualcommSnapdragon8.6HIGH
Memory Corruption Vulnerability in Qualcomm GPU Micronode

This vulnerability allows unauthorized command execution in the GPU micronode, leading to potential memory corruption when a specific sequence of commands is executed. Attackers could exploit this weakness to disrupt system functionality or gain access to sensitive areas of memory, posing risks t...

PoC for CVE-2026-90977

WordPressClean Login5.3MEDIUM
Authentication Bypass Vulnerability in Clean Login WordPress Plugin

The Clean Login WordPress plugin prior to version 1.19 suffers from an authentication bypass vulnerability due to inadequate verification of the registration CAPTCHA. When the session value is empty, unauthorized users can exploit this flaw to bypass the anti-automation controls on the registrati...

PoC for CVE-2026-90976

WordPressClean Login5.3MEDIUM
User Registration Bypass in Clean Login Plugin for WordPress

The Clean Login WordPress plugin version prior to 1.19 contains a vulnerability that fails to verify if user registration is enabled before allowing account creation. This flaw permits unauthenticated individuals to create accounts on websites where account registration functionalities should be ...