Publicly Disclosed
PoC Exploits

🔴 Alway take caution when working with PoC Exploits 🔴

Discovered 4 hours ago

PoC for CVE-2026-43499

LinuxLinux7.8HIGH
Linux Kernel Vulnerability in rtmutex Component Affecting Multiple ...

A vulnerability exists in the Linux kernel's rtmutex component where the remove_waiter() function incorrectly utilizes current instead of waiter::task during a dequeue operation within various mutex handling paths. This mismanagement leads to multiple issues, including potential use-after-free vu...

Discovered 6 hours ago

PoC for CVE-2022-22715

MicrosoftWindows 10 Version 1809🟣 EPSS 13%7.8HIGH
Named Pipe File System Elevation of Privilege Vulnerability

Named Pipe File System Elevation of Privilege Vulnerability

Discovered 7 hours ago

PoC for CVE-2026-12793

WordPressJetformbuilder — Dynam...9.8CRITICAL
Privilege Escalation Vulnerability in JetFormBuilder Plugin for Wor...

The JetFormBuilder plugin for WordPress is exposed to a privilege escalation vulnerability due to inadequate validation of form IDs during submission. This flaw allows attackers, without authentication, to craft a request that creates an administrator-level user account, potentially compromising ...

PoC for CVE-2026-41940

WebprosCpanel🟣 EPSS 99%9.3CRITICAL
Authentication Bypass Vulnerability in cPanel and WHM

The affected versions of cPanel and WHM contain a serious authentication bypass flaw in the login flow. This vulnerability enables unauthenticated remote attackers to bypass authentication mechanisms, allowing them to gain unauthorized access to the control panel. Users of the specified versions ...

Discovered 8 hours ago

PoC for CVE-2026-0994

PythonProtobuf8.2HIGH
Denial-of-Service Vulnerability in Google Protocol Buffers by Google

A denial-of-service vulnerability has been identified in the Google Protocol Buffers library, specifically within the json_format.ParseDict() method in Python. This issue arises from a flaw in handling recursion depth when processing nested google.protobuf.Any messages. Attackers can craft deeply...

Discovered 9 hours ago

PoC for CVE-2026-89034

TchQring7.1HIGH
Unauthenticated Bluetooth Low Energy Vulnerability in TCH QRing Sma...

The TCH QRing smart ring model R20_B006, running firmware RT09R20_1.00.00_250318, exhibits a significant vulnerability that allows attackers within range to exploit the unsecured Nordic UART Service. This flaw permits nearby attackers to connect to the device without requiring any form of pairing...

PoC for CVE-2021-29447

WordPressWordPress-develop🟣 EPSS 86%7.1HIGH
WordPress Authenticated XXE attack when installation is running PHP 8

Wordpress is an open source CMS. A user with the ability to upload files (like an Author) can exploit an XML parsing issue in the Media Library leading to XXE attacks. This requires WordPress installation to be using PHP 8. Access to internal files is possible in a successful XXE attack. This has...

Discovered 10 hours ago

PoC for CVE-2026-92816

Comfy-orgComfyui8.5HIGH
Path Traversal Vulnerability in ComfyUI Allowing Arbitrary File Writes

ComfyUI versions prior to 0.30.0 have a vulnerability where the application fails to sanitize the 'folder_name' input in dataset save nodes, enabling attackers to exploit this flaw. By crafting a malicious workflow, an attacker can write files to unintended locations outside the designated output...

PoC for CVE-2026-92815

DgtlmoonChangedetection.io8.7HIGH
Server-Side Request Forgery Vulnerability in changedetection.io by ...

The vulnerability in changedetection.io versions up to 0.60.6 allows attackers to exploit the Goto URL action in browser steps without authentication. By manipulating the optional_value parameter, attackers can bypass URL validation and access sensitive internal resources. This flaw represents a ...

PoC for CVE-2026-92814

DgtlmoonChangedetection.io2.3LOW
Stored HTML Markup Injection in Changedetection.io Notifications

The Changedetection.io product, up to version 0.60.6, contains a vulnerability where it fails to properly escape scraped page titles in HTML notifications. This oversight can be exploited by attackers to inject malicious markup into monitored page titles. When the watch_title token is used in not...

PoC for CVE-2026-92812

DecaporgDecap-server7.6HIGH
Path Traversal Vulnerability in Decap Server by Decaporg

Decap Server exhibits a path traversal vulnerability within its local proxy containment guard. This flaw stems from the use of string prefix comparison that does not validate path separators. As a result, attackers can exploit this vulnerability to navigate sibling directories that share the same...

PoC for CVE-2026-92813

MetabaseMetabase6.9MEDIUM
Server-Side Request Forgery in Metabase Allows Unauthenticated Access

The recent vulnerability in Metabase, affecting versions up to 0.63.18, stems from a failure to correctly validate GeoJSON URLs. By using the address 0.0.0.0 in custom GeoJSON entries, an unauthenticated attacker can orchestrate requests that connect to internal loopback services. This can lead t...

PoC for CVE-2026-92811

BrowserlessBrowserless7.1HIGH
File Protocol Restriction Bypass in Browserless by Browserless

Versions 1.44.0 through 2.56.7 of Browserless are susceptible to a file protocol restriction bypass vulnerability. This flaw enables authenticated token holders to bypass file protocol restrictions on Playwright websocket endpoints, allowing them to access arbitrary files. Even with the ALLOW_FIL...

PoC for CVE-2026-92809

PrestashopPsgdpr5.3MEDIUM
GDPR Consent Log Forgery in PrestaShop psgdpr

The PrestaShop psgdpr module versions up to 1.4.3 exhibit a vulnerability where the system fails to properly verify that GDPR consent log entries belong to the authenticated user. This flaw allows authenticated attackers to exploit the application by submitting arbitrary customer identifiers, res...

PoC for CVE-2026-92810

PrestashopBlockwishlist5.3MEDIUM
Information Disclosure in PrestaShop Blockwishlist Plugin

The PrestaShop Blockwishlist plugin prior to version 3.0.3 suffers from a vulnerability in the getUrlByIdWishListAction method. This flaw allows authenticated users to bypass ownership validation, leading to the exposure of private wishlists of other customers. By exploiting this, attackers can s...

PoC for CVE-2026-92806

PHPlistPHPlist7.2HIGH
Cross-Site Request Forgery Vulnerability in phpList by phpList Ltd.

Prior to version 3.6.17, phpList's mass subscriber removal form handler lacks sufficient validation for cross-site request forgery (CSRF) tokens. This flaw can be exploited by attackers who can manipulate authenticated administrators into visiting harmful websites. These crafted pages are designe...

PoC for CVE-2026-92800

SuitenumeriqueDocs7.6HIGH
WebSocket Access Issues in Docs by Suitenumerique

In Suitenumerique's Docs prior to version 5.4.1, an access control vulnerability exists where revoked users can maintain real-time read and write capabilities through ongoing WebSocket sessions. This occurs when access is revoked at parent documents but not properly cascaded to sub-documents, all...

PoC for CVE-2026-92796

ManticoresoftwareManticore Search8.7HIGH
Multi-Statement Authorization Bypass in Manticore Search by Mantico...

Manticore Search versions from 27.0.0 up to 28.4.3 exhibit a significant security flaw that fails to validate permissions across all statements in multi-statement SQL requests. This oversight permits read-only users to execute unauthorized queries by appending additional SELECT statements. As a r...

PoC for CVE-2026-92776

RequarksWiki.js8.6HIGH
Access Control Vulnerability in Wiki.js by Requarks

Wiki.js versions up to 2.5.314 exhibit a flaw in the authorization mechanism that fails to enforce strict path separation when applying START and END page rules. This oversight permits attackers to access and modify files that share similar prefixes with permitted folders, thereby circumventing a...

PoC for CVE-2026-92775

RequarksWiki.js7.1HIGH
Server-Side Request Forgery in Wiki.js Affects Multiple Versions

Wiki.js versions up to 2.5.314 are exposed to a server-side request forgery vulnerability within the Image Prefetch renderer. This issue allows attackers with page editing permissions to exploit the system by injecting img elements featuring the prefetch-candidate class. As a result, arbitrary UR...

PoC for CVE-2026-92774

RequarksWiki.js5.3MEDIUM
Authorization Bypass Vulnerability in Wiki.js by Requarks

Wiki.js versions prior to 2.5.314 present a significant flaw where page tags are not subjected to authorization checks within various GraphQL resolvers. This oversight permits attackers to bypass access restrictions based on tags, enabling unauthorized retrieval of sensitive page metadata such as...

PoC for CVE-2026-92770

GoharborHarbor7.1HIGH
Authentication Flaw in Harbor by CyberArk Leading to Credential Exp...

Harbor versions up to 2.15.2 exhibit insufficient filtering of the q query parameter, allowing project administrators to exploit this weakness. By using fuzzy filtering on the AccessCredential column, attackers can extract the scanner adapter secret iteratively, character by character, leveraging...

PoC for CVE-2026-92527

ChatwootChatwoot5.3MEDIUM
Server-Side Request Forgery in Chatwoot's Shopify OAuth Component

A vulnerability exists in the Chatwoot application, particularly in the Shopify OAuth component, which may allow an attacker to exploit the system through server-side request forgery. This vulnerability is related to an unknown function in the callbacks_controller.rb file, enabling potential unau...

PoC for CVE-2026-84616

AppleiOS And iPad OS
Type Confusion Vulnerability in Apple Operating Systems

A type confusion issue in Apple's operating systems may allow an app to unexpectedly terminate system processes due to improper memory handling. This vulnerability affects several versions of iOS, iPadOS, macOS, tvOS, visionOS, and watchOS. Apple has addressed this issue in recent system updates ...

PoC for CVE-2026-92526

ItsourcecodeLeave Management System5.3MEDIUM
SQL Injection Vulnerability in itsourcecode Leave Management System...

A security flaw identified in the itsourcecode Leave Management System version 1.0 allows attackers to exploit an unsanitized input in the /module/leave/index.php file. By manipulating the argument ID, remote attackers can execute SQL injection attacks, potentially gaining unauthorized access to ...

Discovered 11 hours ago

PoC for CVE-2026-92475

GPAC Development ...Gpac4.8MEDIUM
Out-of-Bounds Read Vulnerability in GPAC by GPAC Development Team

A significant weakness has been discovered in GPAC version 26.08-DEV, specifically affecting the function wait_for_header_and_parse in the src/utils/downloader.c file. This vulnerability allows attackers with local access to manipulate the Content-Range argument, resulting in an out-of-bounds rea...

PoC for CVE-2026-92474

GPACGpac4.8MEDIUM
Use After Free Vulnerability in GPAC's Proto Link Handler Component

A security vulnerability has been identified in GPAC 26.08-DEV, specifically within the Proto Link Handler component in the function gf_inline_get_proto_lib located in mpeg4_inline.c. This flaw can lead to a use after free scenario, where previously freed memory can be accessed, potentially resul...

PoC for CVE-2026-92473

GPACGpac4.8MEDIUM
Use After Free Vulnerability in GPAC BIFS Handler

A use after free vulnerability was detected in GPAC 26.08-DEV, specifically within the gf_sg_command_del function in the BIFS Handler component. This flaw allows a local attacker to manipulate the application, potentially leading to execution of unintended commands. The exploit is publicly availa...

Discovered 12 hours ago

PoC for CVE-2026-92472

GPACGpac4.8MEDIUM
Use After Free Vulnerability in GPAC MP4Box by GPAC

A vulnerability exists in the GPAC MP4Box where the function gf_node_deactivate_ex located in src/scenegraph/base_scenegraph.c can lead to a use after free condition. This issue can be exploited locally, potentially allowing an attacker to manipulate the application's memory. The vulnerability ha...

PoC for CVE-2026-92418

ChangewederCrm5.1MEDIUM
Cross-Site Scripting in ChangeWeDer crm Affects Save Endpoint Funct...

A security vulnerability has been identified in the ChangeWeDer crm, specifically in the Save Endpoint feature. An issue with handling the customerName argument in the src/main/resources/public/js/customerServe/customer.serve.js file leads to a cross-site scripting (XSS) risk. This flaw allows re...

Discovered 13 hours ago

PoC for CVE-2026-47094

SimacMyphr8.7HIGH
Insecure Direct Object Reference in SIMAC MyPHR Affects Employee Re...

The SIMAC MyPHR 1.1 software is susceptible to an insecure direct object reference (IDOR) vulnerability. This flaw allows authenticated attackers to access and alter arbitrary employee records without proper server-side ownership validation. By sending a PUT request to the employee update endpoin...

PoC for CVE-2026-92413

ArtifexMuPDF5.3MEDIUM
Null Pointer Dereference in Artifex MuPDF Affects PDF Xref Loading

A vulnerability has been identified in Artifex MuPDF affecting the PDF Xref Loading functionality. The flaw occurs in the 'pdf_open_filter' function within the 'pdf-stream.c' component. An attacker can exploit this vulnerability by executing a crafted manipulation, potentially leading to a null p...

PoC for CVE-2026-92406

SourcecodesterInventory And Monitori...6.9MEDIUM
SQL Injection Vulnerability in SourceCodester Inventory and Monitor...

A SQL injection vulnerability has been identified in the SourceCodester Inventory and Monitoring System version 1.0, specifically within a function in the /admins/assessments/databank/btn_functions.php file. This security flaw allows attackers to manipulate the 'difficulty_id' argument, which can...

PoC for CVE-2026-92405

SourcecodesterInventory And Monitori...6.9MEDIUM
SQL Injection Vulnerability in SourceCodester Inventory and Monitor...

A SQL Injection vulnerability has been identified in the SourceCodester Inventory and Monitoring System version 1.0, specifically within an unprotected function of the /index.php file. This weakness allows attackers to manipulate the Username argument, potentially gaining unauthorized access to s...

Discovered 14 hours ago

PoC for CVE-2026-92399

GPACGpac6.9MEDIUM
Heap-based Buffer Overflow in GPAC WebSocket Handler

A vulnerability exists in GPAC version 26.07.0 within the WebSocket Handler, specifically in the rmt_client_handle_ws_frame function of the rmt_ws.c file. This vulnerability stems from the manipulation of the argument payload_size, leading to a heap-based buffer overflow. The exploit is remote an...

PoC for CVE-2026-92398

RuijieRg-ew3000gx9.4CRITICAL
OS Command Injection Vulnerability in Ruijie RG-EW3000GX Device

A significant OS command injection vulnerability has been identified in the Ruijie RG-EW3000GX device. This issue affects the admin component of the user_list_note module located at /etc/rg_config/admin. By manipulating the argument Name, an attacker can execute arbitrary OS commands through remo...

Discovered 15 hours ago

PoC for CVE-2026-92397

RuijieRg-ew3000gx9.4CRITICAL
OS Command Injection Vulnerability in Ruijie RG-EW3000GX

A security flaw has been identified in the Ruijie RG-EW3000GX, specifically within the cc_set function of the unifyframe-sgi.elf component, where improperly validated input allows attackers to inject operating system commands. This command injection vulnerability enables remote exploitation, pote...

PoC for CVE-2026-92385

SourcecodesterOnline Food Ordering S...4.8MEDIUM
Cross-Site Scripting Vulnerability in SourceCodester Online Food Or...

A vulnerability exists in the SourceCodester Online Food Ordering System 1.0 that allows for cross-site scripting (XSS) attacks through the manipulation of the /admin/update_category.php file. This issue occurs due to an unknown function within the system, enabling attackers to execute arbitrary ...

PoC for CVE-2022-38694

Unisoc (shanghai)...Sc9863a//t310/t610/t618/7.8HIGH
Uncontrolled Write Vulnerability in UNISOC BootRom Product

The vulnerability occurring in UNISOC's BootRom allows a possible unchecked write address, enabling local escalation of privilege without requiring additional execution privileges. This flaw poses a significant security risk, as it can be exploited by malicious actors to gain unauthorized access ...

PoC for CVE-2026-92383

PbootCMSPbootcms5.3MEDIUM
Cross-Site Request Forgery in PbootCMS User Management by PbootCMS

A security vulnerability has been identified in PbootCMS affecting versions up to 3.2.24, specifically within the UserController module. The vulnerability originates from inadequate validation within functions responsible for user deletion and modification, exposing the application to cross-site ...

PoC for CVE-2026-5430

Wso2Wso2 Universal Gateway10CRITICAL
JWT Authentication Vulnerability in WSO2 Products

The vulnerability in WSO2 products relates to the JWT authentication mechanism, which improperly validates tokens signed with algorithms not explicitly configured or supported. This flaw enables an attacker to create a JSON Web Token (JWT) using an unsupported signing algorithm. If an attacker su...

Discovered 16 hours ago

PoC for CVE-2026-92381

PbootCMSPbootcms5.1MEDIUM
Cross Site Scripting Vulnerability in PbootCMS Template Rendering F...

A cross site scripting (XSS) vulnerability has been identified in the PbootCMS framework affecting the decode_string function within the Template Rendering component. Specifically, the issue is present in apps/admin/controller/content/ContentController.php, where the manipulation of the 'Title' a...

PoC for CVE-2026-92380

WuzhiCMSWuzhicms6.9MEDIUM
Server-Side Request Forgery in WuzhiCMS Affected by Remote Image Fe...

A security flaw in WuzhiCMS versions up to 4.1.0 has been identified within the Remote Image Fetch component, specifically in the function `ckditor::saveRemote`. This vulnerability allows attackers to manipulate the `source[]` argument, potentially leading to server-side request forgery (SSRF) at...

PoC for CVE-2026-92366

Code-projectsMatrimonial System6.9MEDIUM
SQL Injection in Code-Projects Matrimonial System Product

A significant SQL injection vulnerability exists in the Regular Search component of Code-Projects' Matrimonial System 1.0. This flaw allows remote attackers to manipulate parameters such as sex, mothertongue, marital status, country, state, religion, agemin, and agemax, leading to unauthorized ac...

PoC for CVE-2014-0160

OpenSSLOpenSSL🟣 EPSS 100%7.5HIGH
Buffer Over-read Vulnerability in OpenSSL TLS and DTLS Implementations

The vulnerability in the TLS and DTLS implementations of OpenSSL versions prior to 1.0.1g allows remote attackers to exploit crafted Heartbeat Extension packets. This exploitation results in a buffer over-read, potentially revealing sensitive information from the memory of the affected process. A...

PoC for CVE-2026-82964

Gen DigitalAvast Free Antivirus, ...8.8HIGH
Improper Permissions in Avast Sandbox Driver Leading to SYSTEM Esca...

A flaw in the Avast sandbox minifilter driver allows a local, low-privileged attacker operating within the sandbox environment to escape file isolation. This vulnerability arises from improper handling of security descriptors when virtualizing files. By neglecting to apply necessary permissions, ...

Discovered 17 hours ago

PoC for CVE-2026-92364

ItsourcecodeLeave Management System5.3MEDIUM
SQL Injection Vulnerability in itsourcecode Leave Management System...

A vulnerability has been identified in the itsourcecode Leave Management System version 1.0, specifically affecting the file located at /module/employee/index.php. This vulnerability arises from improper handling of the ID argument, which allows for SQL injection attacks. Attackers can exploit th...

PoC for CVE-2026-92469

Zlt2000Microservices-platform7.2HIGH
Authorization Bypass in zlt2000 Microservices Platform File Center ...

The zlt2000 microservices-platform's file-center module up to version 6.0.0 contains a significant vulnerability that allows authenticated users to delete files belonging to other users. The DELETE /files/{id} endpoint lacks proper ownership verification, enabling attackers to exploit this oversi...

PoC for CVE-2026-92468

Zlt2000Microservices-platform7.1HIGH
Authorization Bypass in zlt2000 Microservices-Platform Search Cente...

The zlt2000 Microservices-Platform version 6.0.0 exposes an authorization bypass vulnerability in the search-center service. This flaw allows authenticated users to gain unauthorized access to sensitive Elasticsearch indices by manipulating the index name in specific API request paths. Attackers ...

PoC for CVE-2026-92468

Zlt2000Microservices-platform7.1HIGH
Authorization Bypass in zlt2000 Microservices-Platform Search Cente...

The zlt2000 Microservices-Platform version 6.0.0 exposes an authorization bypass vulnerability in the search-center service. This flaw allows authenticated users to gain unauthorized access to sensitive Elasticsearch indices by manipulating the index name in specific API request paths. Attackers ...