Publicly Disclosed
PoC Exploits

🔴 Alway take caution when working with PoC Exploits 🔴

Discovered just now...

PoC for CVE-2026-48907

Joomlacontentedit...Joomla Content Editor ...10CRITICAL
JCE Editor Extension for Joomla Vulnerability Allows Unauthenticate...

A flaw in the JCE editor extension for Joomla permits unauthorized users to create new editor profiles. This malicious capability exposes the site to risks, including the ability to upload PHP code and execute it, potentially leading to a full compromise of the website security. Site administrato...

PoC for CVE-2026-25177

MicrosoftWindows 10 Version 16078.8HIGH
Elevation of Privilege Vulnerability in Active Directory Domain Ser...

An improper restriction of names for files and other resources in Active Directory Domain Services enables an authorized attacker to exploit this vulnerability, allowing them to gain elevated privileges over a network. This could result in unauthorized access to sensitive resources and data. Prop...

PoC for CVE-2026-46331

LinuxLinux
Page Cache Corruption Vulnerability in Linux Kernel - Vendor: Linux

An issue exists in the Linux Kernel where improper handling of copy-on-write (COW) operations can lead to page cache corruption. This is due to the tcf_pedit_act() function, which computes the COW range without considering runtime header offsets added by typed keys. As a result, portions of the w...

Discovered 12 minutes ago

PoC for CVE-2024-20399

CiscoCisco Nx-os Software6MEDIUM
Cisco NX-OS Software Vulnerability: Arbitrary Command Execution as ...

The vulnerability CVE-2024-20399 affects Cisco NX-OS Software and allows an authenticated, local attacker to execute arbitrary commands as root on the affected device. This is a command injection vulnerability with a CVSS risk score of 6.0, and it has been exploited by the Chinese hacker group Ve...

Discovered 2 hours ago

PoC for CVE-2026-39808

FortinetFortisandbox🟣 EPSS 66%9.1CRITICAL
OS Command Injection Vulnerability in Fortinet FortiSandbox

An OS command injection vulnerability exists in Fortinet FortiSandbox versions 4.4.0 through 4.4.8. This flaw arises from improper neutralization of special elements used in operating system commands. An attacker can exploit this vulnerability to execute unauthorized commands, potentially comprom...

PoC for CVE-2026-39813

FortinetFortisandbox🟣 EPSS 24%9.1CRITICAL
Path Traversal Vulnerability in Fortinet FortiSandbox Products

A path traversal vulnerability exists in Fortinet's FortiSandbox, affecting versions 5.0.0 through 5.0.5 and 4.4.0 through 4.4.8. This vulnerability may enable attackers to exploit the system by manipulating file directories, potentially leading to privilege escalation. Proper input validation is...

Discovered 7 hours ago

PoC for CVE-2026-8089

WordPressWemail: Email Marketin...
Reflected Cross-Site Scripting Vulnerability in weMail Plugin for W...

The weMail plugin for WooCommerce, versions prior to 2.1.3, is susceptible to Reflected Cross-Site Scripting (XSS). This arises from inadequate escaping of user-supplied parameters reflected in HTML attributes within non-nonce-protected AJAX responses. As a result, unauthenticated attackers can e...

PoC for CVE-2026-7850

WordPressWP Magnific Popup
Cross-Site Scripting Vulnerability in WP Magnific Popup by WordPress

The WP Magnific Popup plugin for WordPress fails to properly escape URLs provided by users before inserting them into the Document Object Model (DOM) to display image load error messages. This flaw allows authenticated users with Author-level access or higher to execute Stored Cross-Site Scriptin...

PoC for CVE-2026-9570

WordPressTaskbuilder
Reflected Cross-Site Scripting Vulnerability in Taskbuilder Plugin ...

The Taskbuilder plugin for WordPress, versions prior to 5.0.8, is susceptible to a Reflected Cross-Site Scripting vulnerability due to improper sanitization of a URL parameter. This flaw allows an attacker to inject malicious JavaScript code into a frontend page that utilizes one of the plugin's ...

PoC for CVE-2026-8383

WordPressLearnpress
LearnPress WordPress Plugin Exposed to User Role Information Disclo...

The LearnPress plugin for WordPress, versions prior to 4.3.7, contains a vulnerability in one of its REST endpoints that allows unauthenticated attackers to access sensitive user information. Without proper access controls, malicious users can retrieve a list of every user’s roles, capabilities, ...

Discovered 9 hours ago

PoC for CVE-2026-9082

DrupalDrupal Core🟣 EPSS 34%9.8CRITICAL
SQL Injection Vulnerability in Drupal Core by Drupal

An SQL Injection vulnerability exists in Drupal Core that arises from improper neutralization of special elements utilized in SQL commands. This flaw allows attackers to manipulate SQL queries, potentially leading to unauthorized access to sensitive data. Affected versions include those from 8.9....

Discovered 10 hours ago

PoC for CVE-2026-41940

WebprosCpanel🟣 EPSS 91%9.3CRITICAL
Authentication Bypass Vulnerability in cPanel and WHM

The affected versions of cPanel and WHM contain a serious authentication bypass flaw in the login flow. This vulnerability enables unauthenticated remote attackers to bypass authentication mechanisms, allowing them to gain unauthorized access to the control panel. Users of the specified versions ...

Discovered 13 hours ago

PoC for CVE-2023-34468

ApacheApache Nifi🟣 EPSS 63%8.8HIGH
Apache NiFi: Potential Code Injection with Database Services using H2

The DBCPConnectionPool and HikariCPConnectionPool services in Apache NiFi versions 0.0.2 through 1.21.0 are susceptible to a vulnerability that allows an authenticated and authorized user to configure a Database URL leveraging the H2 driver, leading to potential execution of custom code. The reco...

Discovered 14 hours ago

PoC for CVE-2025-30208

ViteVite🟣 EPSS 79%
Vite Frontend Development Tool Susceptible to File Access Vulnerabi...

A vulnerability in Vite's frontend development tooling allows attackers to bypass file access restrictions. Specifically, versions prior to 6.2.3, 6.1.2, 6.0.12, 5.4.15, and 4.5.10 expose the risk where app URLs can be manipulated with trailing query parameters such as '?raw?' or '?import&raw?' t...

Discovered 18 hours ago

PoC for CVE-2026-4480

Red HatRed Hat Enterprise Lin...9CRITICAL
Samba Printing Subsystem Vulnerability in Samba Software

A vulnerability exists in the Samba printing subsystem that allows remote attackers to execute arbitrary commands on affected systems. The flaw occurs due to improper handling of the client-controlled job description string, which is passed directly to the configured print command without escapin...

PoC for CVE-2025-49844

RedisRedis🟣 EPSS 86%10CRITICAL
Use-After-Free Vulnerability in Redis Open Source Database

An issue has been identified in the Redis open-source database that impacts all versions with Lua scripting enabled. Authenticated users can exploit this vulnerability by executing specially crafted Lua scripts that manipulate the garbage collector. This can result in a use-after-free situation, ...

Discovered 22 hours ago

PoC for CVE-2026-20262

CiscoCisco Catalyst Sd-wan ...6.5MEDIUM
File Upload Vulnerability in Cisco Catalyst SD-WAN Manager

A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager enables an authenticated remote attacker to create or overwrite files on the system's filesystem. This issue arises from inadequate validation of user inputs during file uploads. An attacker, using a crafted HTTP request directed at t...

PoC for CVE-2026-54420

Litespeed Technol...Cpanel Plugin8.5HIGH
Symlink Handling Issues in LiteSpeed cPanel Plugin by LiteSpeed

The LiteSpeed cPanel plugin prior to version 2.4.8 is susceptible to improper handling of symbolic links on shared hosting servers that run CloudLinux/CageFS. This vulnerability allows attackers with FTP or web shell access to exploit symlink behaviors, potentially leading to unauthorized file ac...

Discovered 1 day ago

PoC for CVE-2026-47101

BerriaiLitellm8.7HIGH
Privilege Escalation Vulnerability in LiteLLM by BerriAI

A vulnerability in LiteLLM prior to version 1.83.14 allows an authenticated internal user to generate API keys with access to restricted routes. The vulnerability allows the 'allowed_routes' field to be set without proper validation against the user's role permissions. As a result, keys can be cr...

PoC for CVE-2026-53519

NezhahqNezha9.1CRITICAL
Path Traversal Vulnerability in Nezha Monitoring Dashboard

Nezha Monitoring, a self-hostable tool for monitoring servers and websites, has a path traversal vulnerability prior to version 2.0.13. The NoRoute handler in the dashboard improperly validates URLs, treating any URL that begins with '/dashboard' as an admin-frontend asset request. This flaw allo...

PoC for CVE-2026-49160

MicrosoftWindows 10 Version 16077.5HIGH
HTTP/2 Denial of Service Vulnerability in Microsoft Products

This vulnerability arises from uncontrolled resource consumption within the HTTP/2 protocol, which can be exploited by unauthorized attackers to launch Denial of Service (DoS) attacks over a network. This attack could potentially disrupt the availability of services that rely on HTTP/2, making it...

Discovered 2 days ago

PoC for CVE-2026-49954

Discuz!Discuz! X5.08.6HIGH
Local File Inclusion Vulnerability in Discuz! X5.0 by Discuz!

Discuz! X5.0 versions released between 20260320 and 20260501 exhibit a local file inclusion vulnerability that allows authenticated administrators to exploit improperly sanitized input. By importing plugin configurations containing path traversal sequences, attackers can bypass input validation p...

PoC for CVE-2026-48849

RoundcubeWebmail4.4MEDIUM
Stored XSS Vulnerability in Roundcube Webmail Software

In Roundcube Webmail versions 1.6.x prior to 1.6.16 and 1.7.x prior to 1.7.1, a vulnerability exists due to an unsanitized subject field within the draft restore functionality. This flaw can potentially allow attackers to inject malicious HTML or CSS code into shared mailboxes, leading to stored ...

PoC for CVE-2021-44228

ApacheApache Log4j2🟣 EPSS 100%10CRITICAL
Apache Log4j2 JNDI features do not protect against attacker control...

Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect against attacker controlled LDAP and other JNDI related endpoints. An attacker who can control log messages or log messag...

PoC for CVE-2019-25746

WordPressSliced Invoices7.1HIGH
SQL Injection Vulnerability in Sliced Invoices Plugin for WordPress

The Sliced Invoices plugin for WordPress, version 3.8.2, is affected by an authenticated SQL injection vulnerability that enables attackers with valid credentials to craft malicious database queries. By manipulating the 'post' parameter during requests to the admin.php endpoint with an action=dup...

PoC for CVE-2018-25437

WordPressCherry Framework Themes8.7HIGH
Information Disclosure Vulnerability in CherryFramework Themes by W...

CherryFramework Themes version 3.1.4 for WordPress is affected by an information disclosure vulnerability. This flaw enables unauthenticated attackers to exploit the download_backup.php endpoint, allowing them to download sensitive backup files stored on the server. By directly accessing the down...

PoC for CVE-2018-25436

WordPressBaggage Freight Shippi...9.3CRITICAL
Unrestricted File Upload Vulnerability in Baggage Freight Shipping ...

The Baggage Freight Shipping Plugin for WordPress version 0.1.0 is susceptible to an arbitrary file upload vulnerability caused by inadequate validation of uploaded files through the upload-package.php endpoint. This flaw permits unauthenticated attackers to remotely upload malicious files to the...

PoC for CVE-2016-20083

WordPressMore Fields6.9MEDIUM
Cross-Site Request Forgery in WordPress More Fields Plugin by WordP...

The More Fields Plugin version 2.1 for WordPress is susceptible to a cross-site request forgery vulnerability. This flaw enables malicious actors to execute unauthorized actions on behalf of logged-in administrators by circumventing CSRF token validation. By luring administrators to visit crafted...

PoC for CVE-2016-20084

WordPressBooking Calendar Contact5.1MEDIUM
Privilege Escalation Vulnerabilities in Appointment Booking Calenda...

The Appointment Booking Calendar plugin for WordPress version 1.1.24 is susceptible to multiple vulnerabilities that could allow unauthenticated attackers to escalate privileges. Through manipulation of parameters in the admin.php file, attackers can modify calendar settings and inject persistent...

PoC for CVE-2016-20082

WordPressAbtest6.9MEDIUM
Local File Inclusion Vulnerability in WordPress Plugin Abtest

The Abtest plugin for WordPress has a local file inclusion vulnerability, enabling unauthenticated attackers to exploit the action parameter in abtest_admin.php. By crafting specific GET requests with compromised action values, attackers can include arbitrary files from the admin directory. This ...

PoC for CVE-2016-20080

WordPressBrandfolder6.9MEDIUM
Local File Inclusion Vulnerability in Brandfolder Plugin for WordPress

The Brandfolder plugin for WordPress, specifically versions 3.0 and earlier, is susceptible to a local file inclusion vulnerability in its callback.php file. This flaw permits unauthenticated attackers to manipulate the wp_abspath parameter, potentially allowing them to include arbitrary files. B...

PoC for CVE-2016-20081

WordPressHb Audio Gallery Lite8.7HIGH
Path Traversal Vulnerability in HB Audio Gallery Lite Plugin by Wor...

The HB Audio Gallery Lite plugin for WordPress (version 1.0.0) is susceptible to a path traversal vulnerability that enables unauthenticated attackers to exploit the file_path parameter. By sending specially crafted requests to the audio-download.php endpoint, attackers can traverse directories a...

PoC for CVE-2016-20079

WordPressDharma Booking6.9MEDIUM
Local File Inclusion Vulnerability in Dharma Booking Plugin by Word...

The Dharma Booking plugin for WordPress, specifically versions 2.28.3 and earlier, is susceptible to a local file inclusion vulnerability due to improper sanitation of the gateway parameter. This flaw permits unauthenticated attackers to manipulate file paths and execute directory traversal or nu...

PoC for CVE-2016-20078

WordPressImdb Profile Widget6.9MEDIUM
Local File Inclusion Vulnerability in WordPress IMDb Profile Widget...

The IMDb Profile Widget version 1.0.8 for WordPress contains a local file inclusion vulnerability that can be exploited by unauthenticated attackers. By manipulating the `url` parameter through directory traversal sequences in GET requests to `pic.php`, attackers can potentially access sensitive ...

PoC for CVE-2016-20077

WordPressPhotocart Link6.9MEDIUM
Local File Inclusion Vulnerability in Photocart Link by WordPress

The Photocart Link plugin version 1.6 for WordPress is impacted by a local file inclusion vulnerability due to insufficient input validation in its decode.php file. This flaw enables unauthenticated attackers to supply malicious base64-encoded file paths through the 'id' parameter. By exploiting ...

PoC for CVE-2016-20076

WordPressSimple Backup8.7HIGH
File Deletion and Download Vulnerabilities in WordPress Simple-Back...

The WordPress Simple-Backup plugin version 2.7.11 is susceptible to vulnerabilities that allow unauthenticated attackers to exploit the application through improper input validation. By manipulating the parameters in the tools.php file, attackers can conduct directory traversal attacks to delete ...

PoC for CVE-2016-20075

WordPressUltimate Product Catalog8.7HIGH
Arbitrary File Upload Vulnerability in WordPress Ultimate Product C...

The WordPress Ultimate Product Catalog version 3.8.6 is susceptible to an arbitrary file upload vulnerability. Authenticated users with roles such as contributor, editor, author, or administrator can exploit this weakness through the custom fields feature in the Products tab. This allows attacker...

PoC for CVE-2016-20074

WordPressLazy Content Slider Pl...5.3MEDIUM
Cross-Site Request Forgery in WordPress Lazy Content Slider Plugin 3.4

The Lazy Content Slider Plugin version 3.4 for WordPress exhibits a cross-site request forgery vulnerability, enabling attackers to execute unauthorized actions. This is achieved by tricking authenticated administrators into inadvertently submitting malicious POST requests to the plugin's setting...

PoC for CVE-2016-20073

WordPressAnswer My Question8.8HIGH
SQL Injection Vulnerability in Answer My Question Plugin for WordPress

The Answer My Question 1.3 plugin for WordPress is susceptible to an SQL injection vulnerability, enabling attackers to execute unauthorized SQL code through the 'id' POST parameter. This security flaw occurs when malicious users exploit the modal.php endpoint, allowing them to submit crafted SQL...

PoC for CVE-2016-20072

WordPressBbs E-franchise8.8HIGH
SQL Injection Vulnerability in BBS e-Franchise Plugin for WordPress

The BBS e-Franchise plugin for WordPress suffers from an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL commands. By manipulating the 'uid' parameter in requests, attackers can craft specific requests that exploit this flaw. This manipulation enables th...

PoC for CVE-2016-20070

WordPressBooking Calendar Conta...5.1MEDIUM
Privilege Escalation and XSS in Booking Calendar Contact Form by Wo...

The Booking Calendar Contact Form 1.0.23 plugin for WordPress is susceptible to privilege escalation and stored XSS vulnerabilities. These flaws arise from inadequate verification of user privileges and insufficient input sanitation. An attacker with subscriber-level credentials can exploit these...

PoC for CVE-2016-20071

WordPress404 Redirection Manager8.8HIGH
SQL Injection Vulnerability in 404 Redirection Manager Plugin for W...

The 404 Redirection Manager plugin for WordPress version 1.0 is susceptible to an unauthenticated SQL injection vulnerability. This flaw enables remote attackers to exploit improperly sanitized user inputs, thereby injecting malicious SQL code through crafted GET requests. As a result, attackers ...

PoC for CVE-2016-20067

WordPressCp Polls5.3MEDIUM
Cross-Site Request Forgery Vulnerability in WordPress CP Polls by W...

WordPress CP Polls version 1.0.8 is susceptible to a cross-site request forgery (CSRF) vulnerability. This flaw permits attackers to craft malicious HTML pages that can execute unauthorized poll actions when visited by authenticated administrators. If an administrator inadvertently accesses such ...

PoC for CVE-2026-8935

WordPressWP Maps Pro9.8CRITICAL
Unauthenticated AJAX Issue in WP MAPS PRO Plugin Affects WordPress ...

The WP MAPS PRO plugin for WordPress contains a serious vulnerability that allows an unauthenticated attacker to create an administrator account without proper authorization. This security flaw is facilitated by an AJAX action that is registered publicly, exposing a valid nonce that can be access...

PoC for CVE-2026-9278

WordPressForm Builder Cp5.4MEDIUM
Stored Cross-Site Scripting Vulnerability in Form Builder CP Plugin...

The Form Builder CP plugin for WordPress, prior to version 1.2.47, is susceptible to stored cross-site scripting (XSS) attacks due to inadequate sanitization of form configuration values. This vulnerability allows authenticated users with Editor-level access or higher to inject malicious scripts ...

PoC for CVE-2026-8386

WordPressWP Go Maps5.3MEDIUM
Unauthorized Access in WP Go Maps Plugin for WordPress

The WP Go Maps plugin for WordPress prior to version 10.0.10 has a significant flaw in its public single-marker REST endpoint. Due to a lack of approval-state filtering, this vulnerability allows unauthenticated users to access marker records that have not been approved by an administrator for pu...

PoC for CVE-2026-8385

WordPressWP Go Maps5.3MEDIUM
Unauthorized Data Exposure in WP Go Maps WordPress Plugin

The WP Go Maps plugin for WordPress prior to version 10.0.10 is susceptible to a security flaw that fails to properly enforce a marker approval filter in its admin-ajax fallback. This oversight enables unauthorized individuals to access sensitive marker data, which has not been vetted for public ...

PoC for CVE-2026-12217

DvdfabVirtual Drive8.5HIGH
Local Privilege Escalation in DVDFab Virtual Drive by Fengtao Software

A security vulnerability has been identified in DVDFab Virtual Drive version 2.0.0.5, specifically affecting the Signed Kernel Driver component (dvdfabio.sys). This vulnerability allows for improper privilege management, which can be exploited locally by an attacker to gain elevated privileges. T...

PoC for CVE-2026-12216

SvaaralaDuktape4.8MEDIUM
Memory Corruption Vulnerability in Duktape by Svaarala

A vulnerability has been identified in Duktape up to version 2.99.99 that affects its memory management through the file duk_api_bytecode.c. By manipulating the argument count_instr, a local attacker could exploit this weakness to cause memory corruption. This issue is particularly concerning as ...

PoC for CVE-2026-12214

Qihoo360 Total Security8.5HIGH
Local Security Flaw in Qihoo 360 Total Security Affecting Nucleus E...

A security flaw has been identified in Qihoo 360 Total Security 6.0 that impacts the Nucleus Engine Monitoring Logic. This issue lies within the RpcStringBindingComposeW function, where a manipulation of the NetworkAddr argument can lead to a failure in the protection mechanisms. This vulnerabili...