Publicly Disclosed
PoC Exploits

🔴 Alway take caution when working with PoC Exploits 🔴

Discovered 3 hours ago

PoC for CVE-2026-5261

Shandong HoteamInforcenter Plm6.9MEDIUM
Unrestricted File Upload Vulnerability in Shandong Hoteam InforCent...

A security vulnerability has been detected in Shandong Hoteam InforCenter PLM up to version 8.3.8, specifically in the function 'uploadFileToIIS' of the file '/Base/BaseHandler.ashx'. This flaw allows attackers to manipulate the 'File' argument, leading to unrestricted file uploads. Consequently,...

Discovered 4 hours ago

PoC for CVE-2026-5259

AutohomecorpFrostmourne5.3MEDIUM
Server-Side Request Forgery in AutohomeCorp frostmourne

In AutohomeCorp’s frostmourne version 1.0, a vulnerability in the Alarm Preview component allows for server-side request forgery (SSRF) through an undisclosed function in the AlarmController.java file. This flaw enables remote attackers to exploit the system by manipulating requests sent from the...

PoC for CVE-2026-5258

SansterIopaint6.9MEDIUM
Path Traversal Vulnerability in Sanster IOPaint File Manager

A path traversal vulnerability exists in Sanster IOPaint version 1.5.3, specifically within the _get_file function in the file_manager.py component. By manipulating the filename argument, attackers can perform unauthorized file access remotely. This exploit has been publicly disclosed, and the ve...

Discovered 5 hours ago

PoC for CVE-2026-5257

Code-projectsSimple Laundry System6.9MEDIUM
SQL Injection Vulnerability in Code-Projects Simple Laundry System

A security flaw exists in Code-Projects' Simple Laundry System version 1.0, specifically within the '/delstaffinfo.php' file of the Parameter Handler component. An unauthorized user can manipulate the 'userid' argument, leading to SQL injection vulnerabilities that could allow for remote exploita...

PoC for CVE-2026-5256

Code-projectsSimple Laundry System6.9MEDIUM
SQL Injection Vulnerability in Simple Laundry System by Code-Projects

A SQL injection vulnerability exists in the Simple Laundry System version 1.0, specifically within the Parameter Handler component's modify.php file. This flaw allows an attacker to manipulate the 'firstName' argument, potentially leading to unauthorized database access and data manipulation. Giv...

PoC for CVE-2026-2696

WordPressExport All Urls
Security Flaw in Export All URLs Plugin for WordPress

The Export All URLs plugin for WordPress, prior to version 5.1, has a critical flaw that allows unauthenticated users to access sensitive information. This is due to its generation of CSV filenames containing post URLs, including private posts, in a predictable pattern based on a random six-digit...

PoC for CVE-2025-15484

WordPressOrder Notification For...
Authentication Bypass in Order Notification for WooCommerce Plugin ...

The Order Notification plugin for WooCommerce has a vulnerability that allows unauthenticated users to bypass permission checks, granting unrestricted read/write access to store resources. This includes crucial data such as product, coupon, and customer information, potentially leading to unautho...

Discovered 6 hours ago

PoC for CVE-2026-5255

Code-projectsSimple Laundry System5.3MEDIUM
Cross Site Scripting in Simple Laundry System by Code-Projects

A cross site scripting (XSS) vulnerability has been identified in Code-Projects' Simple Laundry System version 1.0. This security issue affects the delivery of the delstaffinfo.php component, specifically through the manipulation of the 'userid' argument. Attackers can potentially launch this exp...

Discovered 7 hours ago

PoC for CVE-2026-5254

WelovemediaFfmate5.1MEDIUM
Cross Site Scripting in welovemedia FFmate Webhook Handler

A security vulnerability has been identified in the Webhook Handler component of welovemedia's FFmate, specifically within the file located at /ui/app/components/AppJsonTreeView.vue. This vulnerability enables an attacker to execute cross site scripting (XSS) attacks remotely. Exploitation of thi...

Discovered 8 hours ago

PoC for CVE-2026-5253

BufanyunHotgo5.1MEDIUM
Cross Site Scripting Vulnerability in bufanyun HotGo Product

A vulnerability has been discovered in bufanyun's HotGo versions 1.0 and 2.0, specifically in the editNotice Endpoint, located in the MessageList.vue file. This flaw allows for remote execution of malicious scripts through manipulation of an unknown functionality. As the exploit has been publicly...

PoC for CVE-2026-5252

Z-9527Admin5.1MEDIUM
Cross Site Scripting Vulnerability in z-9527 Admin by Unknown Vendor

A security flaw has been identified in the z-9527 admin application, specifically affecting the Message Create Endpoint found in the /server/routes/message.js file. This vulnerability allows for cross site scripting (XSS) attacks, which can be initiated remotely by manipulating an unidentified fu...

Discovered 9 hours ago

PoC for CVE-2026-5251

Z-9527Admin5.3MEDIUM
Dynamically-Determined Object Attributes in z-9527 Admin Product

A security vulnerability exists in the z-9527 admin versions 1.0 and 2.0, specifically affecting the User Update Endpoint component within the user.js file. This vulnerability arises when the isAdmin parameter is manipulated with a value of 1, potentially exposing sensitive security mechanisms th...

Discovered 10 hours ago

PoC for CVE-2026-5249

GouguGougucms5.1MEDIUM
Cross-Site Scripting Vulnerability in gougucms by Gougu

A cross-site scripting vulnerability exists in gougucms version 4.08.18, specifically impacting the Record Endpoint's record.html file. This vulnerability arises from improper handling of user-controlled input in the content argument, allowing malicious actors to inject and execute arbitrary scri...

PoC for CVE-2026-3055

NetscalerAdc🟣 EPSS 37%9.3CRITICAL
Insufficient Input Validation in NetScaler ADC and Gateway by Citrix

An insufficient input validation vulnerability exists in Citrix's NetScaler ADC and NetScaler Gateway when configured as a SAML Identity Provider (IDP). This flaw could potentially lead to memory overread, making it a target for exploitation. It's essential for administrators to be aware of this ...

Discovered 11 hours ago

PoC for CVE-2026-35057

Xen ProjectforoXen Projectforo5.1MEDIUM
Stored Cross-Site Scripting Vulnerability in XenForo by XenForo Ltd.

Legacy profile posts in XenForo versions prior to 2.3.10 and 2.2.19 are susceptible to stored cross-site scripting (XSS) attacks. This vulnerability allows attackers to inject malicious scripts through specially crafted mentions. When other users view this content, the scripts are executed within...

PoC for CVE-2026-0848

NltkNltk/nltk10CRITICAL
Arbitrary Code Execution Vulnerability in NLTK's StanfordSegmenter ...

The StanfordSegmenter module in NLTK is susceptible to arbitrary code execution due to inadequate input validation. It improperly handles external Java .jar files, allowing attackers to manipulate these files without verification. This flaw permits the execution of arbitrary Java bytecode when a ...

PoC for CVE-2026-5240

Code-projectsBloodbank Managing System5.3MEDIUM
Cross Site Scripting Vulnerability in BloodBank Managing System by ...

A significant vulnerability in the BloodBank Managing System 1.0 allows an attacker to exploit the /admin_state.php file through manipulation of the 'statename' argument, leading to Cross Site Scripting (XSS) attacks. This vulnerability can be remotely triggered, enabling malicious actors to inje...

PoC for CVE-2026-5238

ItsourcecodePayroll Management System6.9MEDIUM
SQL Injection Vulnerability in itsourcecode Payroll Management System

A vulnerability has been discovered in the itsourcecode Payroll Management System version 1.0, specifically within the file /view_employee.php. This weakness is related to the handling of the 'ID' parameter, which can be manipulated to perform an SQL injection attack. An attacker can exploit this...

PoC for CVE-2026-0848

NltkNltk/nltk10CRITICAL
Arbitrary Code Execution Vulnerability in NLTK's StanfordSegmenter ...

The StanfordSegmenter module in NLTK is susceptible to arbitrary code execution due to inadequate input validation. It improperly handles external Java .jar files, allowing attackers to manipulate these files without verification. This flaw permits the execution of arbitrary Java bytecode when a ...

Discovered 12 hours ago

PoC for CVE-2026-32096

UseplunkPlunk9.3CRITICAL
Server-Side Request Forgery in Plunk Email Platform by UsePlunk

Plunk, the open-source email platform leveraging AWS SES, was found susceptible to a Server-Side Request Forgery (SSRF) vulnerability prior to version 0.7.0. This flaw allowed unauthorized attackers to craft specific requests causing the server to issue arbitrary outbound HTTP GET requests to any...

PoC for CVE-2026-5237

ItsourcecodePayroll Management System6.9MEDIUM
SQL Injection Vulnerability in itsourcecode Payroll Management System

A security flaw has been identified in the itsourcecode Payroll Management System version 1.0, specifically within the '/manage_user.php' file related to the Parameter Handler component. This vulnerability allows attackers to manipulate the 'ID' argument, resulting in SQL injection. This can be e...

PoC for CVE-2026-5236

AxiomaticBento44.8MEDIUM
Heap-based Buffer Overflow Vulnerability in Axiomatic Bento4 DSI v1...

A vulnerability exists in Axiomatic Bento4, specifically within the DSI v1 Parser's AP4_BitReader::SkipBits function in the Ap4Dac4Atom.cpp file. This flaw can be exploited through a local attack by manipulating the n_presentations argument, leading to a heap-based buffer overflow. The exploit is...

Discovered 13 hours ago

PoC for CVE-2026-5235

AxiomaticBento44.8MEDIUM
Heap-Based Buffer Overflow in Axiomatic Bento4 MP4 File Parser

A significant vulnerability exists in Axiomatic Bento4 up to version 1.6.0-641, specifically within the AP4_BitReader::ReadCache function found in Ap4Dac4Atom.cpp. This issue can lead to a heap-based buffer overflow when exploited locally. Notably, the problem has been publicly disclosed, raising...

Discovered 14 hours ago

PoC for CVE-2026-5215

D-linkDns-1205.3MEDIUM
Improper Access Control in D-Link Network Storage Devices

A vulnerability exists in various D-Link network storage devices, specifically in the handling of the function cgi_get_ipv6 located in /cgi-bin/network_mgr.cgi. This weakness allows attackers to exploit improper access controls, potentially leading to unauthorized access to sensitive data or conf...

PoC for CVE-2026-5214

D-linkDns-1208.7HIGH
Stack-based Buffer Overflow in D-Link Network Storage Devices

A stack-based buffer overflow vulnerability exists in various D-Link network storage devices due to improper handling of the 'Name' parameter in the cgi_addgroup_get_group_quota_minsize function. This flaw allows attackers to manipulate arguments, leading to potential execution of arbitrary code ...

Discovered 15 hours ago

PoC for CVE-2026-5213

D-linkDns-1208.7HIGH
Stack-based Buffer Overflow in D-Link Network Storage Products

A stack-based buffer overflow vulnerability exists in the cgi_adduser_to_session function within the /cgi-bin/account_mgr.cgi file of several D-Link network storage devices. This flaw can be exploited remotely by manipulating the read_list argument, resulting in potential unauthorized access or s...

PoC for CVE-2026-5212

D-linkDns-1208.7HIGH
Stack-Based Buffer Overflow in D-Link Network Storage Devices

A stack-based buffer overflow vulnerability has been identified in several D-Link network storage devices. This issue affects the WebDAV upload functionality in the file /cgi-bin/webdav_mgr.cgi. An attacker can exploit this vulnerability by manipulating the 'f_file' argument, potentially allowing...

PoC for CVE-2026-29000

Pac4jPac4j-jwt9.3CRITICAL
Authentication Bypass in JwtAuthenticator of pac4j-jwt by pac4j

The pac4j-jwt library's JwtAuthenticator prior to versions 4.5.9, 5.7.9, and 6.3.3 is susceptible to an authentication bypass that could allow remote adversaries to create forged authentication tokens. By leveraging the server's RSA public key, attackers are able to craft a JWE-wrapped PlainJWT w...

Discovered 16 hours ago

PoC for CVE-2026-5211

D-linkDns-1208.7HIGH
Stack-based Buffer Overflow in D-Link Network Devices

A buffer overflow vulnerability exists in multiple D-Link network devices, specifically affecting the UPnP_AV_Server_Path_Del functionality within the /cgi-bin/app_mgr.cgi file. By manipulating the f_dir parameter, remote attackers can exploit this flaw, potentially leading to arbitrary code exec...

Discovered 17 hours ago

PoC for CVE-2026-29000

Pac4jPac4j-jwt9.3CRITICAL
Authentication Bypass in JwtAuthenticator of pac4j-jwt by pac4j

The pac4j-jwt library's JwtAuthenticator prior to versions 4.5.9, 5.7.9, and 6.3.3 is susceptible to an authentication bypass that could allow remote adversaries to create forged authentication tokens. By leveraging the server's RSA public key, attackers are able to craft a JWE-wrapped PlainJWT w...

PoC for CVE-2026-33634

AquasecuritySetup-trivy🟣 EPSS 21%9.4CRITICAL
Supply Chain Vulnerability in Aqua Security Trivy and GitHub Actions

On March 19, 2026, a supply chain attack targeted Aqua Security's Trivy when compromised credentials were used to publish a malicious version of Trivy (v0.69.4). The attacker force-pushed numerous version tags to the 'aquasecurity/trivy-action' repository, embedding credential-stealing malware. T...

Discovered 18 hours ago

PoC for CVE-2026-5206

Code-projectsSimple Gym Management ...5.3MEDIUM
SQL Injection Vulnerability in Simple Gym Management System by code...

A security vulnerability has been identified in the Simple Gym Management System 1.0, specifically within the Payment Handler component. The flaw arises from improper handling of user input in the parameters Payment_id, Amount, customer_id, payment_type, and customer_name, which could allow attac...

PoC for CVE-2025-54123

SpectolabsHoverfly🟣 EPSS 63%9.8CRITICAL
Command Injection Vulnerability in Hoverfly API Simulation Tool

Hoverfly, an open source API simulation tool, is susceptible to a command injection vulnerability stemming from insufficient validation and sanitization of user inputs at the '/api/v2/hoverfly/middleware' endpoint. This vulnerability, found in versions 1.11.3 and earlier, allows an adversary to e...

Discovered 19 hours ago

PoC for CVE-2026-5204

TendaCh228.7HIGH
Stack-based Buffer Overflow Vulnerability in Tenda CH22 Router

A buffer overflow vulnerability exists in the parameter handler of the Tenda CH22 router, specifically within the formWebTypeLibrary function accessed via the /goform/webtypelibrary endpoint. An attacker can exploit this vulnerability remotely by manipulating the webSiteId argument, potentially a...

PoC for CVE-2026-5203

CMS Made SimpleCms Made Simple5.1MEDIUM
Path Traversal Vulnerability in CMS Made Simple UserGuide Module

An identified vulnerability in CMS Made Simple versions up to 2.2.22 affects the _copyFilesToFolder function located in the UserGuide Module XML Import component. This vulnerability allows an attacker to exploit path traversal, enabling them to manipulate file paths and potentially access restric...

Discovered 1 day ago

PoC for CVE-2026-5198

Code-projectsStudent Membership System6.9MEDIUM
SQL Injection Vulnerability in Code-Projects Student Membership Sys...

A SQL injection vulnerability exists in the Admin Login component of the Code-Projects Student Membership System 1.0, specifically through an unprotected function in /admin/index.php. By manipulating the username and password arguments, attackers may exploit this vulnerability to execute remote c...

PoC for CVE-2026-5197

Code-projectsStudent Membership System5.3MEDIUM
SQL Injection Vulnerability in Code-Projects Student Membership System

A critical security flaw exists in the Student Membership System version 1.0 from Code-Projects. The vulnerability arises from an unknown function in the /delete_user.php file, where improper handling of the ID argument allows for SQL injection attacks. This could enable remote attackers to manip...

PoC for CVE-2026-5196

Code-projectsStudent Membership System5.3MEDIUM
SQL Injection Flaw in Code-Projects Student Membership System

A significant SQL injection vulnerability exists in the code-projects Student Membership System 1.0, specifically within the /delete_member.php file. When the ID argument is manipulated, it allows an attacker to execute arbitrary SQL queries against the database. This vulnerability can be exploit...

PoC for CVE-2026-5184

TrendnetTew-713re5.3MEDIUM
Command Injection Vulnerability in TRENDnet TEW-713RE Router

A command injection vulnerability exists in the TRENDnet TEW-713RE router, allowing attackers to exploit an unknown function within the /goform/setSysAdm file. Through manipulating the 'admuser' argument, unauthorized command execution can occur, enabling remote exploitation. The vulnerability ha...

PoC for CVE-2026-20698

AppleiOS And iPad OS5.5MEDIUM
Memory Handling Flaw in Apple Operating Systems

An issue has been identified that may allow an application to unexpectedly terminate the system or corrupt kernel memory due to inadequate memory handling protocols. Affected users are advised to update to the latest versions of iOS, iPadOS, macOS, tvOS, visionOS, and watchOS, where these vulnera...

PoC for CVE-2026-3881

WordPressPerformance Monitor5.8MEDIUM
Security Flaw in Performance Monitor Plugin for WordPress

The Performance Monitor plugin for WordPress, up to version 1.0.6, is prone to a security vulnerability where it does not properly validate certain parameters. This oversight could allow unauthorized users to execute Server-Side Request Forgery (SSRF) attacks, compromising the integrity of the se...

PoC for CVE-2026-5183

TrendnetTew-713re5.3MEDIUM
Command Injection Vulnerability in TRENDnet TEW-713RE

A command injection vulnerability exists in the TRENDnet TEW-713RE routers prior to version 1.02. Specifically, this issue pertains to the function sub_421494 located in the /goform/addRouting file. By manipulating the 'dest' argument, an attacker can remotely execute arbitrary commands, posing a...

PoC for CVE-2026-5182

SourcecodesterTeacher Record System6.9MEDIUM
SQL Injection Vulnerability in SourceCodester Teacher Record System...

A vulnerability exists in the SourceCodester Teacher Record System 1.0 that allows attackers to exploit the parameter handler via an SQL injection attack. By manipulating the 'searchteacher' argument, an attacker can execute arbitrary SQL code on the backend database, potentially leading to unaut...

PoC for CVE-2023-46604

ApacheApache ActiveMQ🟣 EPSS 94%10CRITICAL
Remote Code Execution Vulnerability Affects Java OpenWire Protocol ...

The Java OpenWire protocol marshaller in Apache ActiveMQ is susceptible to a remote code execution vulnerability, allowing attackers with network access to execute arbitrary shell commands. By manipulating serialized class types in the OpenWire protocol, an attacker can cause the client or broker...

PoC for CVE-2026-5181

SourcecodesterSimple Doctors Appoint...5.3MEDIUM
Unrestricted File Upload in SourceCodester's Simple Doctors Appoint...

A vulnerability in SourceCodester's Simple Doctors Appointment System allows for unrestricted file uploads through manipulation of the 'img' argument in the /doctors_appointment/admin/ajax.php?action=save_category endpoint. This situation can lead to potential exploitation by remote attackers, wh...

PoC for CVE-2026-5180

SourcecodesterSimple Doctors Appoint...6.9MEDIUM
SQL Injection Vulnerability in SourceCodester Simple Doctors Appoin...

A security flaw exists in the SourceCodester Simple Doctors Appointment System 1.0, specifically in the /admin/ajax.php?action=login2 endpoint. This vulnerability enables attackers to manipulate the email parameter, leading to SQL injection attacks. Consequently, this vulnerability allows unautho...

PoC for CVE-2026-5179

SourcecodesterSimple Doctors Appoint...6.9MEDIUM
SQL Injection Vulnerability in SourceCodester Simple Doctors Appoin...

A SQL injection vulnerability has been identified in the SourceCodester Simple Doctors Appointment System version 1.0. This vulnerability exists within the /admin/login.php file, where improper handling of the Username parameter allows attackers to manipulate SQL queries. The issue can be exploit...

PoC for CVE-2026-5178

TotolinkA3300r5.3MEDIUM
Command Injection Vulnerability in Totolink A3300R Router

The Totolink A3300R router has a command injection vulnerability within the function setIptvCfg of the cstecgi.cgi file. By manipulating the vlanPriLan3 argument, an attacker can execute arbitrary commands on the affected device. This vulnerability allows for remote exploitation, posing a signifi...

PoC for CVE-2020-13654

XwikiXwiki7.5HIGH
Improper Escaping Vulnerability in XWiki Platform by XWiki

The XWiki Platform prior to version 12.8 exhibits a vulnerability in the handling of escape functions within its property display logic. This flaw allows for improperly escaped content, which could lead to security implications such as script injection or other attacks where the application fails...

PoC for CVE-2026-5177

TotolinkA3300r5.3MEDIUM
Command Injection Vulnerability in Totolink A3300R Router

A command injection vulnerability has been identified in the Totolink A3300R router, specifically within the setWiFiBasicCfg function located in /cgi-bin/cstecgi.cgi. This weakness allows an attacker to manipulate the rxRate argument, potentially leading to unauthorized command execution on the d...