Publicly Disclosed
PoC Exploits

đź”´ Alway take caution when working with PoC Exploits đź”´

Discovered 2 hours ago

PoC for CVE-2026-94145

XuxueliXxl-job5.1MEDIUM
xuxueli xxl-job Task Management JobInfoController.java cross site s...

A vulnerability has been found in xuxueli xxl-job up to 3.4.2/3.5.0. This vulnerability affects unknown code of the file xxl-job-admin/src/main/java/com/xxl/job/admin/business/controller/JobInfoController.java of the component Task Management Interface. The manipulation of the argument name/autho...

PoC for CVE-2026-94144

DrogonframeworkDrogon6.9MEDIUM
drogonframework drogon ORM Criteria.cc makeCriteria sql injection

A flaw has been found in drogonframework drogon up to 1.9.13. This affects the function makeCriteria in the library orm_lib/src/Criteria.cc of the component ORM. Executing a manipulation of the argument filter can lead to sql injection. The attack may be performed from remote. The exploit has bee...

PoC for CVE-2026-82187

WordPressWeb To Print Online De...
WooCommerce Online Product Designer 1.7.0 - < 2.15.0 - Unauthentica...

The Web to Print Online Designer WordPress plugin before 2.15.0 does not validate the type or extension of uploaded files, and hands the token protecting those uploads to any visitor who asks for it, allowing unauthenticated attackers to upload arbitrary files, including PHP ones, and run code on...

Discovered 3 hours ago

PoC for CVE-2026-94143

DrogonframeworkDrogon6.9MEDIUM
SQL Injection Vulnerability in DrogonFramework's ORM Mapper Component

A vulnerability in DrogonFramework's ORM Mapper component has been identified, specifically within the `Mapper::orderBy` function located in the Mapper.h library. This flaw allows for SQL injection through manipulation of the 'sort' argument, making it possible for attackers to execute remote exp...

Discovered 4 hours ago

PoC for CVE-2026-94139

Chengdu Feiyuxing...Feiyu Star Router5.3MEDIUM
Command Injection Vulnerability in Feiyu Star Router by Chengdu Fei...

A command injection vulnerability has been discovered in the cookie handler functionality of the Feiyu Star Router B-MB5E202-210322-r11656. Specifically, the issue arises when the session_id parameter within the /send_order.cgi endpoint is manipulated. This flaw allows attackers to execute arbitr...

PoC for CVE-2026-43499

LinuxLinux7.8HIGH
Linux Kernel Vulnerability in rtmutex Component Affecting Multiple ...

A vulnerability exists in the Linux kernel's rtmutex component where the remove_waiter() function incorrectly utilizes current instead of waiter::task during a dequeue operation within various mutex handling paths. This mismanagement leads to multiple issues, including potential use-after-free vu...

PoC for CVE-2026-86552

ZteSmartlife5.4MEDIUM
Dynamic Authentication Vulnerability in SmartLife App from ZTE

The SmartLife app has a significant vulnerability where it dynamically generates authentication parameters at runtime. This flaw allows attackers to obtain valid authentication credentials, enabling them to complete account registrations with any arbitrary email address. Notably, the application ...

Discovered 5 hours ago

PoC for CVE-2026-94138

Chengdu Feiyuxing...Feiyu Star Router5.1MEDIUM
Command Injection Vulnerability in Chengdu Feiyuxing Technology Fei...

A command injection vulnerability exists in the Feiyu Star Router B-MB5E202-210322-r11656, specifically within the /send_order.cgi?parameter=del_expmac endpoint. By manipulating the 'mac' argument, attackers can execute arbitrary commands on the device remotely. This flaw could lead to significan...

Discovered 7 hours ago

PoC for CVE-2026-89274

WordPressWP Recipe Maker9.1CRITICAL
Arbitrary Shortcode Execution in WP Recipe Maker Plugin for WordPress

The WP Recipe Maker plugin for WordPress is vulnerable due to a flaw that allows unauthorized execution of registered shortcodes on recipe pages. This arises from the method 'WPRM_Metadata::sanitize_metadata()' which processes every scalar field of the recipe's metadata, including 'reviewBody', w...

PoC for CVE-2026-94110

QCMSQcms6.9MEDIUM
SQL Injection Vulnerability in QCMS Content Management System

A vulnerability has been detected in QCMS versions up to 6.0.6, affecting the function self_Tmp in Lib/Config/Controllers.php. This vulnerability allows remote attackers to manipulate the argument ID, leading to SQL injection attacks. The exploit is facilitated by the router's handling of raw REQ...

PoC for CVE-2026-94103

RooCMSRoocms5.1MEDIUM
Remote Code Injection Vulnerability in RooCMS Frontend Rendering

A code injection vulnerability has been identified in RooCMS affecting versions up to 1.2.2, 1.3.4, and 1.4RC2. This issue resides in the eval function in the file roocms/site_pagePHP.php, which is part of the Frontend Rendering component. The vulnerability allows attackers to manipulate the cont...

PoC for CVE-2026-94102

WuzhiCMSWuzhicms5.3MEDIUM
Open Redirect Vulnerability in WuzhiCMS Login Component

A vulnerability exists in WuzhiCMS versions up to 4.1.0 within the Login component, specifically located at /index.php?m=member&v=Login. This flaw allows attackers to manipulate the 'forward' argument, potentially redirecting users to malicious sites. The vulnerability can be exploited remotely, ...

Discovered 8 hours ago

PoC for CVE-2026-94101

NetcoreNbr200v29.4CRITICAL
Buffer Overflow Vulnerability in Netcore NBR200V2 Router Software

A buffer overflow vulnerability exists in the Netcore NBR200V2 router's vlan_load_form_uci function located in /usr/bin/routerd. Manipulation of the wan_num argument could allow an attacker to execute a remote exploit, potentially compromising system integrity. This issue has been publicly disclo...

Discovered 9 hours ago

PoC for CVE-2026-94097

NetcoreNbr200v210CRITICAL
Command Injection Vulnerability in Netcore NBR200V2 Routers

A command injection vulnerability exists in the Netcore NBR200V2 router's CGI Diagnostic Endpoint. This flaw allows an attacker to manipulate the parameters, potentially executing unauthorized commands on the system remotely. The issue was found in the file located at /www/cgi-bin/network_tools, ...

PoC for CVE-2026-94096

NetcoreNbr200v29.4CRITICAL
Command Injection Vulnerability in Netcore NBR200V2 LAN IP Configur...

A command injection vulnerability exists in the LAN IP Configuration Handler of the Netcore NBR200V2 product. This vulnerability can be exploited by manipulating the 'ipv4' argument within the /usr/bin/network_tools file. Attackers can launch remote exploits, potentially affecting network integri...

PoC for CVE-2026-94095

NetcoreNbr200v29.4CRITICAL
Command Injection Vulnerability in Netcore NBR200V2 Traceroute Feature

A security flaw exists in the Traceroute Diagnostic Feature of the Netcore NBR200V2 router, specifically within the /usr/bin/network_tools file. An attacker can exploit this vulnerability by manipulating the input argument, leading to unauthorized command execution on the device. This vulnerabili...

PoC for CVE-2026-94094

OpenClawOpenclaw5.3MEDIUM
Denial of Service Vulnerability in OpenClaw's Canvas Host Route by ...

A significant flaw exists in OpenClaw's Canvas Host Route, specifically in the createCanvasHostHandler function. This weakness can be exploited through remote manipulation, leading to a denial of service. The root cause lies in the handling of file reading, where the system buffers the entire fil...

Discovered 10 hours ago

PoC for CVE-2026-71217

Red HatRed Hat Enterprise Lin...7.5HIGH
Denial of Service Vulnerability in iperf3 by Red Hat

A vulnerability exists in iperf3 that allows remote attackers to exploit flawed input validation of control-channel JSON data. By submitting oversized numeric parameters such as 'parallel' and 'len', an attacker can provoke the server into creating excessive streams and threads, leading to large ...

PoC for CVE-2026-94092

DmlcDgl5.1MEDIUM
Deserialization Vulnerability in dmlc's DGL Product

A vulnerability in dmlc's DGL product versions up to 2.1.0 has been identified, particularly in the load_info/_read_torch_data function of the utils.py file. This flaw allows an attacker to manipulate the argument path, leading to potential remote code execution through deserialization. Despite p...

PoC for CVE-2026-94091

PiskvorkyGensim5.1MEDIUM
Deserialization Vulnerability in piskvorky gensim Product

A vulnerability in piskvorky gensim versions up to 4.4.0 has been identified within the Model Loader component, specifically in the Load function of gensim/utils.py. This issue allows an attacker to manipulate the argument fname, leading to deserialization attacks. The exploit can be executed rem...

PoC for CVE-2026-93958

D-linkR959.4CRITICAL
OS Command Injection Vulnerability in D-Link R95 Router

A vulnerability has been identified in the D-Link R95 BE9500 router, specifically in the file /bin/ssi associated with the DHMAPI component. This issue arises from improper handling of the NTPServer argument, allowing for OS command injection. Exploitation of this vulnerability can occur remotely...

Discovered 12 hours ago

PoC for CVE-2026-94089

D-linkDir-868l10CRITICAL
Stack-Based Buffer Overflow in D-Link DIR-868L Authentication Compo...

A stack-based buffer overflow vulnerability exists in the authentication component of the D-Link DIR-868L firmware version 2.01b05. This security issue arises from improper handling of the 'strcpy' function within the '/webfa_authentication.cgi' file. By manipulating the 'id' or 'password' parame...

PoC for CVE-2026-94051

0717376Cowork Bench5.3MEDIUM
Server-Side Request Forgery Vulnerability in cowork_bench PDF Tools...

A vulnerability exists in the pdf-tools-mcp component of cowork_bench, specifically within the ControlFlowNode function of the server.py file. An attacker could manipulate the pdf_file_path argument to perform server-side request forgery, enabling remote execution of malicious commands. This vuln...

Discovered 13 hours ago

PoC for CVE-2026-94049

06ketanSlideshot5.3MEDIUM
Path Traversal Vulnerability in 06ketan Slideshot Product

A vulnerability has been identified in the 06ketan Slideshot product, specifically within the render_slides function located in packages/cli/src/renderer.ts. This issue allows for path traversal via the manipulation of an argument called htmlPath, which can lead to unauthorized file access. The v...

PoC for CVE-2026-94048

CodeastroQr Code Attendance Man...5.1MEDIUM
Improper Privilege Management in CodeAstro QR Code Attendance Manag...

A significant vulnerability has been identified in the CodeAstro QR Code Attendance Management System version 1.0, specifically within the Save function located in app/Controllers/UserController.php. The issue arises from improper handling of the argument role_id, which can lead to unauthorized p...

PoC for CVE-2026-94047

SamanhappyMcphub5.3MEDIUM
Improper Privilege Management in samanhappy MCPHub Template Import ...

A security vulnerability has been identified in the samanhappy MCPHub affecting versions up to 1.0.32. The issue resides in the 'importTemplate' function located in 'src/services/templateService.ts', specifically within the Template Import Endpoint. This vulnerability allows for improper privileg...

PoC for CVE-2026-36213

MicrovirtMEmu Android Emulator7.8HIGH
Privilege Escalation in Microvirt MEmu Android Emulator

A security vulnerability exists in the Microvirt MEmu Android Emulator 9.2.7.0 that enables a local attacker to escalate their privileges using the MemuService.exe component. This allows unauthorized access to system features and can potentially compromise the integrity of the host system.

Discovered 14 hours ago

PoC for CVE-2026-94046

0215andrewfengAce-mcp5.3MEDIUM
Path Traversal Vulnerability in ACE-MCP Tool by 0215AndrewFeng

A path traversal vulnerability has been identified in the ACE-MCP tool up to version 4.10.8. This weakness exists in the `get_file_snippet` function of the `getFileSnippet.ts` file, where improper handling of user-supplied input allows an attacker to manipulate file paths. Specifically, the argum...

PoC for CVE-2026-94045

Newbee-ltdNewbee-mall5.1MEDIUM
Cross Site Scripting Vulnerability in newbee-ltd newbee-mall Product

A significant security flaw has been identified in the newbee-ltd newbee-mall application, specifically within the UploadController.java file responsible for handling goods data. This vulnerability allows for the manipulation of the 'goodsName' parameter, facilitating cross site scripting (XSS) a...

PoC for CVE-2026-94044

03-lovepreetsinghMcp6.9MEDIUM
Path Traversal Vulnerability in 03-lovepreetSingh MCP by 03-lovepre...

A vulnerability exists in the 03-lovepreetSingh MCP, specifically within the create_file function located in the app/api/mcp/route.ts file. This flaw allows an attacker to manipulate file paths through arguments, potentially leading to unauthorized access to system files via path traversal attack...

Discovered 15 hours ago

PoC for CVE-2026-94042

AdithyayellojuRestaurant Management ...5.3MEDIUM
SQL Injection Vulnerability in AdithyaYelloju Restaurant Management...

A significant SQL injection vulnerability exists in the AdithyaYelloju Restaurant Management System, specifically within the mysqli_query function of the admin/add_table.php file. This vulnerability can be exploited by manipulating the arguments of the table/members/price, allowing attackers to e...

PoC for CVE-2026-94041

AdithyayellojuRestaurant-management-...5.3MEDIUM
SQL Injection Vulnerability in AdithyaYelloju Restaurant-Management...

A security vulnerability has been identified in the AdithyaYelloju Restaurant-Management-System located in the admin/add_menu.php file. This issue allows for remote SQL injection attacks through the manipulation of parameters such as item, price, image, and type. If exploited, this flaw could pot...

PoC for CVE-2026-94040

Vas3kTaxhacker6.9MEDIUM
Server-Side Request Forgery Vulnerability in vas3k TaxHacker by vas3k

A security flaw exists in the vas3k TaxHacker application, specifically within the function testLLMProviderAction in the actions.ts file. This vulnerability allows an attacker to manipulate the argument values for provider, apiKey, model, or baseUrl, potentially leading to unauthorized server-sid...

Discovered 16 hours ago

PoC for CVE-2026-94039

Vas3kTaxhacker6.9MEDIUM
Server-Side Request Forgery Vulnerability in vas3k TaxHacker Invoic...

A vulnerability in the Invoice PDF Renderer of vas3k TaxHacker, affecting versions up to 0.8.5, allows attackers to manipulate the `businessLogo` argument in the `generateInvoicePDF` function. This manipulation can lead to server-side request forgery, enabling malicious actors to send unauthorize...

PoC for CVE-2026-94038

NoncegeekDim-sum-app6.9MEDIUM
Server-Side Request Forgery Vulnerability in NonceGeek Dim-Sum-App ...

A vulnerability has been identified in the NonceGeek dim-sum-app, specifically within the Deno Backend component. This issue arises in the textSearchV2Handler function located in the deno/main.tsx file, where manipulation of the argument 'supabase_url' can lead to a server-side request forgery (S...

PoC for CVE-2026-94037

00kisumi00Mcp-file-analyzer5.3MEDIUM
Path Traversal Vulnerability in 00Kisumi00 MCP-File-Analyzer Tool

A vulnerability has been identified in the 00Kisumi00 mcp-file-analyzer tool affecting the analyze_csv_data component. A flaw in the ControlFlowNode function within the main.py file allows for manipulation of the filename argument, leading to path traversal attacks. This vulnerability can be expl...

Discovered 17 hours ago

PoC for CVE-2026-94036

D-linkDir-x18608.7HIGH
Access Control Vulnerability in D-Link DIR-X1860 and DIR-X1860Z Rou...

A security flaw has been identified in the D-Link DIR-X1860 and DIR-X1860Z routers, specifically within an undisclosed function related to the routerd component. The vulnerability arises from the manipulation of the 'passwd_set' argument, leading to improper access controls. An attacker within th...

PoC for CVE-2026-94035

SourcecodesterDrug Recommendation Sy...5.3MEDIUM
Cross Site Scripting Vulnerability in SourceCodester Drug Recommend...

A vulnerability has been identified in the SourceCodester Drug Recommendation System version 1.0, specifically affecting an unnamed function within the index.php file. By manipulating the 'full name' argument, an attacker can exploit this vulnerability to execute cross site scripting (XSS) attack...

PoC for CVE-2026-94034

SourcecodesterDrug Recommendation Sy...5.1MEDIUM
Cross Site Scripting in SourceCodester Drug Recommendation System

A vulnerability has been identified in the SourceCodester Drug Recommendation System 1.0, specifically within the password change functionality. This issue arises from improper handling of input data in the '/drug_recommender/Admin/change_password' file, where an attacker can manipulate the argum...

Discovered 18 hours ago

PoC for CVE-2026-94033

SourcecodesterDrug Recommendation Sy...5.1MEDIUM
Cross-Site Scripting Vulnerability in SourceCodester Drug Recommend...

The SourceCodester Drug Recommendation System version 1.0 has a critical security flaw in the User Management component. This vulnerability occurs in the file /drug_recommender/Admin/add_user, where improper handling of user-supplied input allows for cross-site scripting (XSS). Attackers can expl...

PoC for CVE-2026-94032

ItsourcecodeLeave Management System5.3MEDIUM
SQL Injection Vulnerability in itsourcecode Leave Management System...

A vulnerability has been identified in itsourcecode Leave Management System version 1.0, specifically affecting the /module/department/index.php file. This flaw allows an attacker to manipulate the argument ID, enabling SQL injection attacks that can be executed remotely. The exploit has been mad...

PoC for CVE-2026-94031

0-gaurav-0Nexus-mcp5.3MEDIUM
Command Injection Vulnerability in 0-Gaurav-0 Nexus-MCP Tool

A command injection vulnerability exists in the child_process.exec function of the src/auth/browser.ts file in the nexus_reauth component of the 0-Gaurav-0 nexus-mcp tool. This flaw allows an attacker to manipulate the argument URL to execute arbitrary commands remotely. Given that the product em...

Discovered 19 hours ago

PoC for CVE-2026-94030

SerenityOSSerenityos2.3LOW
Integer Overflow Vulnerability in SerenityOS LibGfx Image Formats H...

A security vulnerability has been identified in the decode_bmp_pixel_data function of the BMPLoader component within SerenityOS's LibGfx library. This issue arises from an integer overflow caused by manipulation of the height argument during image processing. An attacker could exploit this vulner...

PoC for CVE-2026-94028

Mealie-recipesMealie5.3MEDIUM
Server-Side Request Forgery Vulnerability in Mealie Recipes by Mealie

A vulnerability has been identified in the Mealie Recipes software in versions up to 3.25.1. This issue resides in the payload.model_dump function found in the controller_group_recipe_actions.py file. By manipulating the argument URL, an attacker can execute server-side request forgery attacks, w...

Discovered 20 hours ago

PoC for CVE-2026-94016

SourcecodesterDrug Recommendation Sy...4.8MEDIUM
Cross Site Scripting Vulnerability in SourceCodester Drug Recommend...

A security flaw has been identified in the SourceCodester Drug Recommendation System version 1.0, particularly affecting the /drug_recommender/Admin/add_symptom file. The vulnerability arises from improper handling of the 'txtname' argument, allowing attackers to inject malicious scripts, thereby...

PoC for CVE-2026-94015

SourcecodesterDrug Recommendation Sy...6.9MEDIUM
SQL Injection Vulnerability in SourceCodester Drug Recommendation S...

A security flaw exists in the SourceCodester Drug Recommendation System 1.0 which allows an attacker to manipulate the argument ID in the /drug_recommender/Admin/edit_user.php file. This leads to SQL injection attacks that can be executed remotely. The availability of public exploits increases th...

Discovered 21 hours ago

PoC for CVE-2026-94003

ComfastCf-n1-s10CRITICAL
Stack-Based Buffer Overflow in Comfast CF-N1-S Web Management Inter...

A stack-based buffer overflow vulnerability has been identified in the Comfast CF-N1-S 2.6.0.1, specifically within the function get_css_path_from_uri located in the /cgi-bin/mbox-config file of its Web Management Interface. This vulnerability may allow attackers to execute remote exploits, poten...

PoC for CVE-2026-93997

SourcecodesterDrug Recommendation Sy...6.9MEDIUM
SQL Injection Vulnerability in SourceCodester Drug Recommendation S...

A security flaw has been discovered in the SourceCodester Drug Recommendation System version 1.0, specifically in the file /Admin/edit_symptom.php. This vulnerability allows an attacker to manipulate the 'ID' argument, leading to SQL injection attacks. Such an exploit can be executed remotely, th...

PoC for CVE-2026-93980

Code-projectsInternship Management ...6.9MEDIUM
SQL Injection Vulnerability in Code-Projects Internship Management ...

A vulnerability in the Admin Login Form of the Internship Management System 1.0 allows unauthorized users to manipulate the Password argument in the /admin/login.php file. This manipulation can lead to SQL injection attacks, potentially exposing sensitive data or allowing an attacker to control t...

Discovered 22 hours ago

PoC for CVE-2026-93979

Code-projectsInternship Management ...6.9MEDIUM
SQL Injection Vulnerability in Internship Management System by Code...

A security flaw has been identified in the Internship Management System version 1.0 developed by Code-Projects. This vulnerability resides in the login functionality located in the /employer/login.php file. By manipulating the Password parameter during login attempts, an attacker can execute SQL ...