Publicly Disclosed
PoC Exploits

🔴 Alway take caution when working with PoC Exploits 🔴

Discovered 5 hours ago

PoC for CVE-2026-104638

OnetwothreenethHospitalmanagementsystem6.9MEDIUM
Improper Authentication in onetwothreeneth HospitalManagementSystem

A security vulnerability has been identified in the onetwothreeneth HospitalManagementSystem, specifically within the php/sessions.php file. The vulnerability arises from improper handling of the ID argument, allowing for potential unauthorized access. This flaw enables remote attackers to exploi...

PoC for CVE-2026-19660

WordPressDivi Membership9.8CRITICAL
Authentication Bypass Vulnerability in Divi Membership Plugin for W...

The Divi Membership plugin for WordPress has a critical vulnerability that allows unauthenticated attackers to bypass authentication processes, enabling them to log in as any existing user, including administrators. This issue arises from a flaw in how the `process_paypal_callback` function handl...

PoC for CVE-2026-104637

OnetwothreenethHospitalmanagementsystem6.9MEDIUM
Unrestricted Upload Vulnerability in onetwothreeneth HospitalManage...

A vulnerability has been identified in the onetwothreeneth HospitalManagementSystem, where the functions responsible for managing patient and physician data suffer from an unrestricted file upload issue. This weakness resides in the php/controller.php file, particularly within the functions add_p...

PoC for CVE-2026-104625

CodeastroSimple Loan Management...5.3MEDIUM
SQL Injection Vulnerability in CodeAstro Simple Loan Management System

A security flaw has been identified in the CodeAstro Simple Loan Management System version 1.0, specifically within an unidentified function in the /admin/index.php file. This vulnerability allows attackers to carry out SQL injection attacks by manipulating the 'g_name' argument, potentially lead...

Discovered 6 hours ago

PoC for CVE-2026-104614

CodeastroSimple Pharmacy Manage...5.3MEDIUM
SQL Injection Vulnerability in CodeAstro Simple Pharmacy Management...

An SQL injection vulnerability has been identified in the CodeAstro Simple Pharmacy Management System version 1.0. This vulnerability arises from improper handling of the ID parameter in the file /SimplePharmacy-PHP/product/delete.php, which allows remote attackers to manipulate the SQL query exe...

Discovered 7 hours ago

PoC for CVE-2026-104613

CodeastroSimple Pharmacy Manage...5.3MEDIUM
SQL Injection Vulnerability in CodeAstro Simple Pharmacy Management...

The Simple Pharmacy Management System by CodeAstro, version 1.0, contains a vulnerability that can be exploited through an SQL injection attack via the view.php file. This vulnerability allows an attacker to manipulate the ID argument, potentially leading to unauthorized access to sensitive data....

PoC for CVE-2026-104612

SourcecodesterStudent Result Managem...5.3MEDIUM
Cross Site Scripting Vulnerability in SourceCodester Student Result...

A vulnerability exists in the SourceCodester Student Result Management System version 1.0, specifically within the Announcement Module's new_announcement.php file. This weakness allows remote attackers to execute cross site scripting (XSS) attacks by manipulating the 'title' or 'announcement' arg...

Discovered 8 hours ago

PoC for CVE-2026-104611

TendaAc99.4CRITICAL
Stack-based Buffer Overflow in Tenda AC9 Router

A vulnerability exists in the Tenda AC9 router, specifically in the POST Request Handler component found at /goform/fast_setting_internet_set. This vulnerability arises when an attacker manipulates the netWanType argument, leading to a stack-based buffer overflow. The exploit can be executed remo...

PoC for CVE-2026-104610

TendaHg710CRITICAL
Stack-Based Buffer Overflow in Tenda HG Series

A critical security vulnerability exists in Tenda's HG7, HG9, and HG10 routers, specifically within the function boaGetVar of the Boa Web Server component. This vulnerability allows an attacker to manipulate the Ethtype argument, resulting in a stack-based buffer overflow. The nature of this vuln...

PoC for CVE-2026-104609

OnetwothreenethHospitalmanagementsystem6.9MEDIUM
SQL Injection Vulnerability in onetwothreeneth HospitalManagementSy...

A critical security weakness has been detected in the onetwothreeneth HospitalManagementSystem affecting the edit_accounts.php file's get function. This flaw occurs due to improper handling of query parameters such as user_id, patient_id, physician_id, discounts_id, and services_id, which allows ...

Discovered 9 hours ago

PoC for CVE-2026-104606

ItsourcecodeOnline Admission Syste...5.3MEDIUM
SQL Injection Vulnerability in itsourcecode Online Admission System...

A vulnerability exists in the itsourcecode Online Admission System Project version 1.0, specifically within the confirm.php file. An unknown function in this file processes an argument ID, which can be manipulated to execute SQL injection attacks. This flaw allows unauthorized users to potentiall...

Discovered 12 hours ago

PoC for CVE-2026-40281

GotenbergGotenberg10CRITICAL
Injection Vulnerability in Gotenberg PDF Processing API

The Gotenberg PDF API, a Docker-based tool for PDF file processing, has a significant vulnerability affecting versions 8.30.1 and earlier. It allows unauthenticated attackers to exploit the metadata write endpoint, which inadequately sanitizes metadata values. By including a newline character in ...

Discovered 13 hours ago

PoC for CVE-2026-97219

WordPressMstore Api4.3MEDIUM
User Manipulation Vulnerability in MStore API WordPress Plugin

The MStore API WordPress plugin prior to version 4.22.1 is susceptible to a user manipulation vulnerability that permits any authenticated user with a self-registerable account to alter the status of their own unpaid orders. This flaw enables individuals to change their order status to 'paid' or ...

PoC for CVE-2026-92924

WordPressUnlimited Elements For...5.4MEDIUM
Insecure Widget Output Rendering in Unlimited Elements for Elemento...

The Unlimited Elements for Elementor WordPress plugin is affected by a vulnerability allowing unauthorized users, including those with minimal permissions such as 'subscriber', to execute arbitrary shortcodes on the site. This flaw arises from inadequate validation of requests made to render widg...

PoC for CVE-2026-91020

WordPressWebtoffee Gift Cards F...5.3MEDIUM
Unauthorized Manipulation in WebToffee Gift Cards Plugin for WooCom...

The WebToffee Gift Cards for WooCommerce plugin prior to version 1.3.1 fails to adequately validate user-provided gift card amounts on the server side. This oversight permits unauthenticated users to input arbitrary or negative amounts, sidestepping the established denominations set by the store....

PoC for CVE-2026-90987

WordPressEasy Paypal & Stripe B...5.3MEDIUM
Insecure Payment Calculation in Easy PayPal & Stripe Buy Now Button...

The Easy PayPal & Stripe Buy Now Button WordPress plugin, prior to version 2.0.6, contains a vulnerability where the payment amount is derived directly from a client-supplied field. This design flaw allows unauthenticated attackers to manipulate the payment amount, enabling them to set an arbitra...

PoC for CVE-2026-90952

WordPressWP Edit Password Prote...5.3MEDIUM
Access Control Bypass in WP Edit Password Protected Plugin

The WP Edit Password Protected WordPress plugin prior to version 2.0.7 suffers from an access control bypass issue, failing to properly enforce site-wide restrictions on the WordPress REST API. This flaw permits unauthenticated attackers to gain unauthorized access to the content of published pos...

PoC for CVE-2026-84740

WordPressThe Events Calendar6.5MEDIUM
AJAX Vulnerability in The Events Calendar Plugin for WordPress

The Events Calendar plugin for WordPress, in versions prior to 6.17.5.1, is prone to a vulnerability that allows unauthenticated users to submit data through an AJAX action without proper validation or sanitization. This can lead to unauthorized execution of arbitrary shortcodes registered on the...

PoC for CVE-2026-85005

WordPressPopup Maker WP5.4MEDIUM
Unauthorized Access Issue in Popup Maker WP Plugin by WordPress

The Popup Maker WP plugin for WordPress prior to version 1.4.5 lacks proper authorization checks on multiple actions, leaving its management interface exposed to any logged-in user. This exploitation allows individuals with low-privileged roles, such as Subscribers, to manipulate display-targetin...

PoC for CVE-2026-79618

WordPressWP User Frontend4.3MEDIUM
Post Creation Bypass in WP User Frontend Plugin by WordPress

The WP User Frontend plugin for WordPress, prior to version 4.3.12, contains a flaw in its post-creation handler, permitting authenticated users with subscriber-level access and above to create and publish posts through forms intended for paying subscribers only. This vulnerability circumvents th...

PoC for CVE-2026-13413

WordPressCmp – Coming Soon & Ma...5.3MEDIUM
Access Control Issue in CMP – Coming Soon & Maintenance Plugin for ...

The CMP – Coming Soon & Maintenance plugin for WordPress prior to version 4.1.20 suffers from an access control vulnerability. When the plugin is activated in maintenance or coming-soon mode, it fails to adequately restrict access to the site. This allows unauthorized users to bypass the intended...

PoC for CVE-2026-1661

WordPressWP Mail Logging4.3MEDIUM
HTML Injection Vulnerability in WP Mail Logging Plugin by WordPress

The WP Mail Logging plugin for WordPress, prior to version 1.17.0, is susceptible to an HTML injection vulnerability. This flaw arises from inadequate restrictions on the HTML and CSS of logged emails, which are displayed on admin log screens. An attacker can exploit this vulnerability by sending...

Discovered 14 hours ago

PoC for CVE-2026-97318

WordPressGiveaways And Contests...6.1MEDIUM
Improper URL Validation in RafflePress Giveaways Plugin for WordPress

The Giveaways and Contests by RafflePress plugin for WordPress versions prior to 1.12.27 lacks proper validation for a giveaway's parent page URL during the saving process. This vulnerability allows unauthenticated attackers to manipulate the site's giveaway confirmation and referral URLs, potent...

PoC for CVE-2026-94298

WordPressBuildkit6.2MEDIUM
SQL Injection Vulnerability in BuildKit WordPress Plugin

The BuildKit WordPress plugin prior to version 1.0.29 lacks necessary data sanitization and escaping for user inputs submitted by contributors. This oversight allows unauthorized SQL code injection, leading to potential database manipulation and exposure of sensitive information. Once the malicio...

PoC for CVE-2026-97317

WordPressGiveaways And Contests...5.3MEDIUM
Exposure of reCAPTCHA Secret Key in RafflePress Giveaways Plugin

The Giveaways and Contests by RafflePress WordPress plugin prior to version 1.12.27 fails to adequately secure the reCAPTCHA secret key, which is unintentionally exposed on public giveaway pages. This oversight allows unauthorized users to access the secret key associated with any active giveaway...

PoC for CVE-2026-91828

WordPressOmgf | Gdpr/dsgvo Comp...7.5HIGH
Denial of Service Vulnerability in OMGF WordPress Plugin by OMGF

The OMGF plugin, designed for GDPR/DSGVO compliance and improved Google Fonts integration, is prone to a vulnerability that allows unauthenticated attackers to initiate a specific action without requiring authentication or a valid nonce. This action generates a slow server-side loopback request t...

PoC for CVE-2026-85016

WordPressUnlimited Elements For...6.8MEDIUM
Code Injection Vulnerability in Unlimited Elements for Elementor Wo...

A code injection vulnerability has been identified in the Unlimited Elements for Elementor WordPress plugin before version 2.0.21. This flaw arises from inadequate escaping of an icon value in the plugin's shared widget-parameter processor. As a result, authenticated users with Contributor access...

PoC for CVE-2026-91023

WordPressMotors3.1LOW
Authorization Flaw in Motors WordPress Plugin Allows Unauthorized P...

The Motors WordPress plugin, prior to version 1.4.124, contains a significant authorization flaw that permits authenticated attackers, with subscriber-level access or higher, to alter post metadata without the necessary permissions. This vulnerability is especially critical when the WooCommerce i...

PoC for CVE-2026-91022

WordPressMotors6.8MEDIUM
Vulnerability in Motors WordPress Plugin Exposes User Data via Unsa...

The Motors WordPress plugin prior to version 1.4.124 contains a security flaw that fails to properly sanitize and escape a listing badge setting before it is rendered within an HTML attribute. This oversight enables users assigned to specific listing-management roles to inject malicious web scrip...

PoC for CVE-2026-81740

WordPressPaytm Payment Gateway5.3MEDIUM
Payment Status Manipulation Vulnerability in Paytm Payment Gateway ...

The Paytm Payment Gateway plugin for WordPress prior to version 2.8.9 exhibits a critical flaw in its payment callback verification process. When the plugin is activated without configuring the secret key, it fails to authenticate incoming payment callbacks from the payment provider. This oversig...

PoC for CVE-2026-85004

WordPressPopup Maker4.3MEDIUM
Privilege Escalation in Popup Maker Plugin for WordPress

The Popup Maker plugin for WordPress, specifically version 1.4.5, lacks adequate capability checks on certain account-connection actions. This oversight permits authenticated users with minimal privileges, such as Subscribers, to alter crucial site-wide Popup Maker configurations, including linke...

PoC for CVE-2026-90988

WordPressRequest A Quote5.3MEDIUM
Unauthorized Access in Request a Quote Plugin for WordPress

The Request a Quote plugin for WordPress through version 2.5.6 is susceptible to an authorization bypass flaw in its unauthenticated AJAX handler. This security issue permits unauthorized users to access sensitive contact records from quote-request submissions, which can include unpublished infor...

PoC for CVE-2026-13718

WordPressTabs Responsive6.8MEDIUM
Cross-Site Scripting Vulnerability in Tabs Responsive Plugin for Wo...

The Tabs Responsive WordPress plugin, up to version 2.5, has a cross-site scripting vulnerability that arises from improper sanitization of WooCommerce product tab contents. This allows a shop manager to inject harmful JavaScript, posing a risk to all users, including administrators, when they vi...

Discovered 16 hours ago

PoC for CVE-2025-47947

Owasp-modsecurityModsecurity7.5HIGH
Denial of Service Vulnerability in ModSecurity by OWASP

ModSecurity, an open source web application firewall engine utilized with Apache, IIS, and Nginx, presents a vulnerability that can lead to a denial of service condition under specific circumstances. This occurs in versions up to and including 2.9.8 when processing requests with the content type ...

Discovered 17 hours ago

PoC for CVE-2026-104123

SourcecodesterOnline Reviewer Manage...6.9MEDIUM
SQL Injection Vulnerability in SourceCodester Online Reviewer Manag...

A vulnerability has been identified in the SourceCodester Online Reviewer Management System version 1.0. Specifically, the issue arises from the file located at /reviewer_0/admins/assessments/activities/btn_functions.php, where manipulation of the 'Title' argument leads to SQL injection. This typ...

PoC for CVE-2018-12533

RedhatRichfaces🟣 EPSS 19%9.8CRITICAL
Expression Language Injection Vulnerability in JBoss RichFaces by R...

The JBoss RichFaces framework versions 3.1.0 to 3.3.4 are susceptible to an expression language injection vulnerability. This flaw allows unauthenticated remote attackers to inject EL expressions and potentially execute arbitrary Java code. This can occur when the application processes paths that...

Discovered 18 hours ago

PoC for CVE-2026-104120

ModelcontextprotocolMcp-server-fetch6.9MEDIUM
Server-Side Request Forgery Vulnerability in ModelContextProtocol's...

A security flaw has been identified in ModelContextProtocol's Fetch Tool, affecting versions up to 2026.6.4. The vulnerability resides in the fetch_url function within the server.py file of the mcp-server-fetch and mcp-server-everything components. Attackers can manipulate the url/path argument, ...

PoC for CVE-2026-104054

CalcomCal.diy5.3MEDIUM
Authorization Flaw in Calcom Cal.diy - PBAC Permission Engine

A vulnerability has been identified in Calcom's Cal.diy product, specifically in versions up to 6.2.0. The flaw resides in the function doesUserIdHaveAccessToBooking within the PBAC Permission Engine, which fails to properly enforce access controls. This oversight allows an attacker to initiate u...

Discovered 19 hours ago

PoC for CVE-2026-104052

ItsourcecodePet Shop Management Sy...5.3MEDIUM
SQL Injection Vulnerability in itsourcecode Pet Shop Management System

A SQL injection vulnerability has been identified in the itsourcecode Pet Shop Management System version 1.0. This issue arises from an unknown function in the file admin_reject_completed.php, where improper handling of the ID argument allows attackers to manipulate SQL queries. As a result, it i...

PoC for CVE-2026-90817

Vanderbilt Univer...Redcap9.8CRITICAL
Unauthenticated Remote Code Execution in REDCap by VENDOR

An unauthenticated Remote Code Execution vulnerability affects REDCap, enabling attackers to exploit the survey passthrough routing and Data Import processing. By manipulating HTTP requests, a malicious user can target an unintended controller route from a public survey context and provide a craf...

Discovered 20 hours ago

PoC for CVE-2026-103766

MacwarriorClipbucket-v58.6HIGH
SQL Injection Vulnerability in ClipBucket Product by MacWarrior

ClipBucket versions 5 through 5.5.3-#197 are susceptible to an SQL injection vulnerability that potentially allows authenticated users with ad_manager_access permission to manipulate SQL queries via the delete parameter in admin_area/ads_manager.php. By leveraging time-based blind payloads, attac...

Discovered 21 hours ago

PoC for CVE-2026-26026

GLPI ProjectGlpi9.1CRITICAL
Template Injection Vulnerability in GLPI IT Management Software

GLPI, an open-source asset and IT management software, is susceptible to template injection through administrator actions, allowing for remote code execution. This vulnerability affects versions 11.0.0 to 11.0.5 and has been resolved in version 11.0.6. Users of affected versions are advised to up...

Discovered 22 hours ago

PoC for CVE-2026-102425

Balbooa.comBalbooa Forms Extensio...9.5CRITICAL
Remote Code Execution Risk in Balbooa Forms by Joomla Extension

The Balbooa Forms extension for Joomla has a vulnerability that allows unauthenticated remote code execution (RCE) due to improper handling of PHP code submission. This issue arises when the product supports administrator-defined PHP code that executes after a public form submission. By manipulat...

Discovered 1 day ago

PoC for CVE-2026-88771

Citrix NetscalerAdc9.5CRITICAL
Improper Input Validation in Citrix NetScaler ADC and Gateway

An improper input validation vulnerability exists in Citrix NetScaler ADC and NetScaler Gateway, enabling unauthenticated attackers to execute arbitrary commands. This potentially compromises system integrity and security, allowing unauthorized control over the affected product.

PoC for CVE-2026-88789

ApacheApache Camel Quarkus8.6HIGH
Improper XML External Entity Handling in Apache Camel Quarkus

A vulnerability in the Apache Camel Quarkus XSLT support extension allows attackers to read local files or issue requests to internal network locations through XML external entity declarations. This weakness exists due to the extension's use of an outdated TransformerFactory that does not adhere ...

PoC for CVE-2026-103690

ItsourcecodeLeave Management System5.3MEDIUM
SQL Injection Vulnerability in itsourcecode Leave Management System...

A vulnerability exists in itsourcecode Leave Management System version 1.0 that allows for SQL injection through manipulation of the LEAVEID argument in the controller.php file. Attackers can exploit this flaw remotely, potentially leading to unauthorized access and data manipulation. The exploit...

PoC for CVE-2026-43499

LinuxLinux7.8HIGH
Linux Kernel Vulnerability in rtmutex Component Affecting Multiple ...

A vulnerability exists in the Linux kernel's rtmutex component where the remove_waiter() function incorrectly utilizes current instead of waiter::task during a dequeue operation within various mutex handling paths. This mismanagement leads to multiple issues, including potential use-after-free vu...

PoC for CVE-2026-103687

RhuksterDom-sanitizer6.9MEDIUM
SVG Sanitization Flaw in Rhukster DOM-Sanitizer Affects Multiple Ve...

A vulnerability exists in the Rhukster DOM-Sanitizer component related to SVG sanitization. The flaw lies in the handling of the function 'url' in the src/DOMSanitizer.php file, which creates an incomplete blacklist for input validation. This allows a potential attacker to exploit the vulnerabili...

PoC for CVE-2024-58388

Sharp CorporationMultiple Multifunction...8.7HIGH
Unauthenticated Local File Inclusion Vulnerability in Sharp Multifu...

Sharp and Toshiba Tec multifunction printers are susceptible to an unauthenticated local file inclusion vulnerability. This issue arises from improper validation of user input in the installed_emanual_down.html endpoint. By manipulating the path parameter, attackers can execute directory traversa...

PoC for CVE-2026-103686

RhuksterDom-sanitizer5.1MEDIUM
Cross-Site Scripting Vulnerability in rhukster dom-sanitizer URL Va...

A security flaw exists in rhukster's dom-sanitizer component, specifically in the URL validation functionality. The issue lies within the DOMSanitizer::isDangerousUrl method, which can be exploited for cross-site scripting attacks. This vulnerability can allow attackers to initiate remote exploit...