Publicly Disclosed
PoC Exploits
🔴 Alway take caution when working with PoC Exploits 🔴
Discovered 3 hours ago
PoC for CVE-2026-105171
A security vulnerability has been identified within the kishor-23 food-waste-management-system that affects the admin/admin.php file associated with the Role Attribute Handler component. This flaw allows an attacker to manipulate the argument Name, potentially bypassing authorization checks. The ...
PoC for CVE-2026-105170
A vulnerability has been discovered within the Kishor-23 food waste management system, specifically affecting the admin/signup.php file. This flaw enables unauthorized access due to a missing authentication mechanism when manipulating the signup argument. Attackers can exploit this weakness remot...
PoC for CVE-2026-105169
A security issue has been uncovered in the Kishor-23 Food Waste Management System, specifically in the Take Order Handler's delivery.php file. The vulnerability arises from improper handling of parameters such as order_id and delivery_person_id, leading to potential SQL injection attacks. This fl...
PoC for CVE-2026-105168
A SQL injection vulnerability has been detected in the Order Assignment Block of the kishor-23 food-waste-management-system. The issue arises from the manipulation of the 'order_id' and 'delivery_person_id' parameters in the 'admin.php' file. This flaw enables attackers to exploit the system remo...
Discovered 4 hours ago
PoC for CVE-2026-105167
A security flaw exists in the Kishor-23 Food Waste Management System, specifically in the admin/donate.php file, where an unprotected function allows for SQL injection through manipulation of the 'location' argument. This vulnerability can be exploited remotely, enabling attackers to execute arbi...
PoC for CVE-2026-105166
A SQL injection vulnerability exists in the Food Donation Form within the Kishor-23 Food Waste Management System, specifically in the insert function of the fooddonateform.php file. This flaw arises from improper handling of user inputs, particularly the 'image-choice' argument. Attackers can exp...
Discovered 7 hours ago
PoC for CVE-2026-92084
The Beaver Builder Page Builder plugin for WordPress contains a vulnerability that permits unauthenticated attackers to execute arbitrary shortcodes. This flaw arises from insufficient validation of values prior to processing do_shortcode, notably within pages that leverage the Sidebar module. At...
Discovered 11 hours ago
PoC for CVE-2023-23752
An issue was discovered in Joomla! 4.0.0 through 4.2.7. An improper access check allows unauthorized access to webservice endpoints.
Discovered 13 hours ago
PoC for CVE-2026-105158
A vulnerability exists in the RainyGao DocSys up to version 2.02.85 within the Database Management component. Specifically, the issue arises in the BaseController.createDBForMysql function in BaseController.java, where manipulation of the 'url' argument can lead to SQL injection vulnerabilities. ...
Discovered 14 hours ago
PoC for CVE-2026-105157
A vulnerability has been identified in RainyGao's DocSys up to version 2.02.85, specifically in the function DocController.doGetTmp of the file /Doc/doGetTmpFile.do. This flaw allows an attacker to manipulate the argument path/fileName, leading to a path traversal attack. If successfully exploite...
PoC for CVE-2026-105156
A vulnerability has been identified in YzmCMS versions up to 7.6, specifically in the password handling function within the MD5 Handler located in /common/function/system.func.php. This issue allows an attacker to manipulate the password argument, resulting in a password hash that is generated wi...
Discovered 15 hours ago
PoC for CVE-2026-105148
A security vulnerability exists in the Retrieval Completion API Endpoint of SciPhi-AI R2R versions up to 3.6.6, specifically in the code located in py/shared/abstractions/llm.py. This issue arises due to user-controlled input in the argument 'generation_config.api_base', which may lead to server-...
PoC for CVE-2026-105147
A vulnerability exists in SciPhi-AI R2R up to version 3.6.6, where the JWT Secret Handler contains hard-coded credentials. This issue arises from the manipulation of the DEFAULT_BCRYPT_SECRET_KEY and DEFAULT_NACL_SECRET_KEY parameters, enabling potential remote exploitation. Despite early notific...
Discovered 17 hours ago
PoC for CVE-2026-105145
A vulnerability exists in Weaviate Verba versions up to 2.1.3, particularly within the get_environment function of the generate_stream Endpoint, located in goldenverba/components/util.py. This flaw enables remote attackers to potentially expose sensitive information, leading to unauthorized acces...
Discovered 19 hours ago
PoC for CVE-2025-60787
MotionEye versions up to and including 0.43.1b4 are susceptible to OS Command Injection through improperly sanitized configuration parameters like image_file_name. This vulnerability allows remote authenticated users with administrative privileges to inject malicious commands into Motion configur...
PoC for CVE-2026-27944
Nginx UI, a web interface for the Nginx web server, has a critical security flaw where the /api/backup endpoint is accessible without authentication. This vulnerability allows unauthenticated attackers to retrieve a complete system backup that includes sensitive information such as user credentia...
PoC for CVE-2026-105137
A vulnerability exists in the Laradock Build Process, specifically related to an unknown function in the workspace/Dockerfile file. This flaw allows an attacker to download code without performing integrity checks. The attack can be executed remotely, posing a significant risk to systems utilizin...
Discovered 20 hours ago
PoC for CVE-2026-103956
An authentication flaw in Loom for AWS versions prior to 1.6.1 exposes the system to unauthorized remote actors. This vulnerability enables such actors to gain super-admin access to the agent control plane, allowing them to register tool servers, access stored integration credentials, and alter I...
PoC for CVE-2026-105135
A code injection vulnerability exists in InternLM MindSearch version 0.1.0, specifically within the ExecutionAction.run function located in the mindsearch/agent/graph.py file. This vulnerability allows attackers to manipulate input arguments, leading to remote code execution. The potential exploi...
PoC for CVE-2024-51482
ZoneMinder, a popular open-source closed-circuit television software, has a vulnerability that exposes versions v1.37.* up to and including v1.37.64 to a boolean-based SQL injection attack through the web/ajax/event.php endpoint. This flaw can allow an attacker to manipulate SQL queries, potentia...
PoC for CVE-2026-97332
The User Private Files plugin for WordPress, prior to version 2.2.0, suffers from an access control issue on multisite installations. The plugin fails to enforce access restrictions on private files, as the essential rewrite rule for routing file requests and conducting access checks is not execu...
PoC for CVE-2026-86817
The Five Star Business Profile and Schema WordPress plugin prior to version 2.4.0 is susceptible to a flaw that improperly controls the callbacks for resolving default values in schema fields. This weakness enables authenticated users with Author-level permissions or higher to insert values that ...
PoC for CVE-2026-93549
The CoCart plugin for WordPress prior to version 4.9.7 lacks adequate REST API authentication filtering on its endpoints. This oversight circumvents the built-in nonce protection of WordPress, making the system vulnerable to cross-site request forgery attacks. An attacker can exploit this vulnera...
PoC for CVE-2026-104119
The Simple Shopping Cart plugin for WordPress versions prior to 5.2.6 is affected by a vulnerability that results from improper escaping of settings field values when outputting them on the admin settings page. This flaw enables high-privilege users, such as administrators, to execute Stored Cros...
PoC for CVE-2026-104118
The Razorpay for WooCommerce plugin prior to version 4.8.8 contains a vulnerability that allows unauthenticated users to bypass ownership checks on a REST API route. As a result, attackers can manipulate shipping information for arbitrary orders during the checkout process, posing a significant r...
PoC for CVE-2026-17005
The Horizontal Scrolling Announcements Plugin for WordPress, up to version 2.6, is vulnerable to Stored Cross-Site Scripting (XSS). This vulnerability arises from insufficient input sanitization and escaping of announcement settings, which are directly outputted into the front-end context. Conseq...
Discovered 23 hours ago
PoC for CVE-2026-105099
A weakness has been detected in the Omega Solution CoinEx Crypto 2025 platform, specifically within the Ticket Attachment Upload component found in the /user/ticket file. This vulnerability allows for manipulation that can lead to cross site scripting (XSS) attacks, which may be executed remotely...
Discovered 1 day ago
PoC for CVE-2026-105098
A critical vulnerability has been identified in the Support Ticket API of Omega Solution CoinEx Crypto 2025. This security flaw allows attackers to manipulate parameters associated with the ticketing system, resulting in unauthorized access to sensitive information. Given that this attack can be ...
PoC for CVE-2026-105097
A security vulnerability has been found in an unknown function of the Omega Solution CoinEx Crypto 2025's Customer Information API, specifically in the /customer-currency/ path. This vulnerability allows an attacker to manipulate the argument ID, resulting in an authorization bypass. This means t...
PoC for CVE-2025-21065
A vulnerability exists in Samsung's Retail Mode prior to version 5.59.11 due to improper input validation. This flaw enables self attackers to execute privileged commands on their own devices, which can lead to unauthorized actions and potential compromise of device integrity. It is essential for...
PoC for CVE-2026-39808
An OS command injection vulnerability exists in Fortinet FortiSandbox versions 4.4.0 through 4.4.8. This flaw arises from improper neutralization of special elements used in operating system commands. An attacker can exploit this vulnerability to execute unauthorized commands, potentially comprom...
PoC for CVE-2026-105096
A vulnerability has been identified in the Customer Profile API of Omega Solution CoinEx Crypto 2025, stemming from improper handling of the argument ID. This flaw can enable unauthorized remote users to bypass access controls. While the product’s official website is no longer available, indicati...
PoC for CVE-2008-0600
The vmsplice_to_pipe function in the Linux kernel versions 2.6.17 through 2.6.24.1 contains a flaw where it fails to properly validate certain userspace pointers before dereferencing them. This oversight allows local users to exploit the functionality of the vmsplice system call by supplying craf...
PoC for CVE-2026-19660
The Divi Membership plugin for WordPress has a critical vulnerability that allows unauthenticated attackers to bypass authentication processes, enabling them to log in as any existing user, including administrators. This issue arises from a flaw in how the `process_paypal_callback` function handl...
PoC for CVE-2026-14461
The mtr tool is affected by an Out-of-Bound read vulnerability in the ipinfo_lookup() function, which can be exploited if an attacker manipulates the TXT response used during AS lookups. By delivering a DNS response larger than 512 bytes and incorporating a crafted compression pointer in the answ...
PoC for CVE-2022-0891
A vulnerability exists within the libtiff library that may allow attackers to exploit a heap buffer overflow through the 'ExtractImageSection' function in 'tiffcrop.c'. By crafting a malformed TIFF image file, an attacker can trigger unsafe or out-of-bounds memory access, which could lead to vari...
PoC for CVE-2026-92592
Craft CMS versions 4.8.0 to 4.18.5 and 5.0.0 to 5.10.12 contain a vulnerability that allows authenticated users to exploit signed cookies. Attackers can manipulate a license-shun cookie, leveraging an improper HMAC key that isn't bound to its intended purpose. By transferring this signed cookie i...
Discovered 2 days ago
PoC for CVE-2026-104983
A path traversal vulnerability exists in the PDF Attachment Saving Handler of Linux Mint's Xreader up to version 4.6.9. This issue arises from improper handling of file paths in the g_file_get_child function, allowing malicious actors to manipulate attachment arguments and access unintended files...
PoC for CVE-2026-96962
The Pie Register plugin for WordPress prior to version 3.8.4.14 has a significant access control vulnerability that leaves user data exposed. Specifically, this flaw allows unauthenticated users who possess a valid invitation code to access a report containing the usernames and email addresses of...
PoC for CVE-2026-94239
The Loco Translate WordPress plugin, prior to version 2.8.9, contains a vulnerability that fails to properly sanitize and escape certain bundle configuration values before rendering them in an admin interface. This oversight allows users with translator capabilities and higher to exploit the vuln...
PoC for CVE-2026-89236
The SaveTo Wishlist Lite plugin for WordPress prior to version 1.1.5 contains a security vulnerability that allows unauthenticated attackers to inject malicious SQL code through unsanitized parameters in the ORDER BY clause. This flaw permits attackers to execute arbitrary SQL queries, leading to...
PoC for CVE-2026-92923
The Unlimited Elements for Elementor plugin for WordPress prior to version 2.0.21 contains a vulnerability that allows users with minimal privileges (as low as a subscriber) to execute blind SQL injection attacks. This flaw arises from inadequate sanitization and escaping of parameters used in SQ...
PoC for CVE-2026-92437
The Mailchimp for WooCommerce plugin prior to version 6.3 contains a vulnerability that permits unauthenticated attackers to manipulate or remove another user's abandoned cart records. This exploit occurs due to the lack of necessary authentication, nonce verification, or ownership checks when ha...
PoC for CVE-2026-94238
The Loco Translate plugin for WordPress, prior to version 2.8.9, contains a vulnerability that permits users with translator capabilities to access and read sensitive files from arbitrary paths on the server. This flaw allows unauthorized access to information outside the intended web root, poten...
PoC for CVE-2026-91078
The TillKit WordPress plugin, prior to version 1.0.5, creates a privileged POS account with a hard-coded PIN known publicly. This design flaw permits unauthenticated attackers to exploit the public POS login endpoint, gaining access to a privileged POS session without undergoing necessary identit...
PoC for CVE-2026-88783
The Kubio AI Page Builder plugin for WordPress before version 2.9.3 is susceptible to an HTML injection vulnerability. This flaw arises because the plugin fails to restrict the allowed HTML elements strictly to the editor context. Consequently, when unauthenticated users submit content, the plugi...
PoC for CVE-2026-86834
The MetForm WordPress plugin prior to version 4.3.1 contains a security flaw that fails to sufficiently restrict access to a debug file created in the web root during form submissions, especially when the HubSpot Forms integration is active. This oversight permits unauthorized attackers to retrie...
PoC for CVE-2026-86832
The MetForm WordPress plugin, prior to version 4.3.1, contains a security flaw that fails to adequately restrict access to form submission data. This vulnerability allows unauthenticated attackers to exploit the REST API, potentially revealing sensitive user information submitted through the form...
PoC for CVE-2026-88782
The Kubio AI Page Builder plugin for WordPress versions prior to 2.9.3 is vulnerable due to improper validation of the URI scheme for user-supplied values. This allows users with roles of contributor and above to store payloads that can be executed in the browsers of anyone who interacts with the...
PoC for CVE-2026-80517
The WP Ultimate CSV Importer plugin for WordPress prior to version 9.2 features a significant security flaw. This vulnerability arises from inadequate validation of file types within uploaded archives, coupled with a failure to sanitize their content before storing them in publicly accessible dir...