Publicly Disclosed
PoC Exploits

🔴 Alway take caution when working with PoC Exploits 🔴

Discovered 50 minutes ago

PoC for CVE-2026-44011

CraftcmsCms8.6HIGH
Input Handling Flaw in Craft CMS Leads to Potential Command Injection

Craft CMS contains an input-handling flaw that allows authenticated users to manipulate configuration settings and execute arbitrary commands on the server. This vulnerability arises from a flaw in the Yii object creation path, where request-controlled condition fields are incorrectly handled. Du...

Discovered 1 hour ago

PoC for CVE-2026-34990

OpenprintingCups5MEDIUM
Local Privilege Escalation in OpenPrinting CUPS by Unprivileged Users

OpenPrinting's CUPS, an open source printing system for Linux and other Unix-like operating systems, is susceptible to a local privilege escalation vulnerability. An unprivileged user can exploit this flaw to trick the cupsd service into authenticating with an attacker-controlled IPP service on l...

Discovered 2 hours ago

PoC for CVE-2026-28695

CraftcmsCms7.5HIGH
Remote Code Execution Vulnerability in Craft CMS by Craft

Craft CMS suffers from a Remote Code Execution vulnerability due to an authenticated admin exploit via Server-Side Template Injection. This flaw arises from the use of the create() Twig function, which allows attackers to instantiate arbitrary PHP classes, leveraging the Symfony Process component...

PoC for CVE-2026-100901

Athlon1600Youtube-downloader6.9MEDIUM
Server-Side Request Forgery in Athlon1600 YouTube-Downloader

A vulnerability exists in the Athlon1600 YouTube-Downloader, specifically in the `stream` function of `public/stream.php`. This weakness allows an attacker to manipulate the `url` argument, which could lead to unauthorized server-side requests. The issue can be exploited remotely, putting servers...

PoC for CVE-2026-100900

DevaslanPHPProject-management5.1MEDIUM
Server-Side Request Forgery in DevaslanPHP Project-Management Tool

A server-side request forgery (SSRF) vulnerability exists in the DevaslanPHP project-management tool, specifically within the updateJiraProjects function located in the /jira-import component. This flaw allows an attacker to manipulate the host, username, and token parameters, potentially leading...

Discovered 3 hours ago

PoC for CVE-2026-100899

DevaslanPHPProject-management5.3MEDIUM
SQL Injection Vulnerability in DevaslanPHP Project Management Software

A significant vulnerability has been identified in the DevaslanPHP project management platform that could allow remote attackers to execute SQL injection attacks. This flaw specifically affects the 'whereRaw' function within the 'MonthlyReport.php' file of the Timesheet Dashboard component, where...

PoC for CVE-2026-100898

DevaslanPHPProject-management5.3MEDIUM
SQL Injection Flaw in DevaslanPHP Project Management Application

A SQL injection vulnerability exists in the DevaslanPHP project management application's Timesheet Dashboard. Specifically, the issue is located in the app/Filament/Widgets/Timesheet/ActivitiesReport.php file within the whereRaw function. This vulnerability allows attackers to exploit improperly ...

PoC for CVE-2026-100896

TotolinkN150rt9.4CRITICAL
OS Command Injection Vulnerability in TOTOLINK N150RT Router

A vulnerability has been discovered in the TOTOLINK N150RT router that allows for OS command injection via the web management interface. This issue is specifically related to the manipulation of the 'wlanif' argument in the /boafrm/formWlSiteSurvey function. Attackers can remotely exploit this we...

Discovered 4 hours ago

PoC for CVE-2026-76547

WordPressUser Profile Builder6.6MEDIUM
PHP Object Injection Vulnerability in User Profile Builder WordPres...

The User Profile Builder WordPress plugin prior to version 4.0.1 exhibits a flaw in its deserialization process, failing to properly validate the data when importing configuration files. This vulnerability enables high privilege users, such as administrators, to potentially perform PHP Object Inj...

PoC for CVE-2026-100895

Trusted Domain Pr...Openarc6.9MEDIUM
Remote Null Pointer Dereference in Trusted Domain Project OpenARC

A vulnerability in Trusted Domain Project OpenARC has been identified in the arc_parse_canon_t function within the libopenarc/arc-canon.c library, specifically impacting versions up to 1.0.0.Beta1. This security loophole allows for a potential null pointer dereference, enabling attackers to explo...

PoC for CVE-2026-100894

MathurvishalCloudclassroom-PHP-pro...5.3MEDIUM
SQL Injection Vulnerability in mathurvishal CloudClassroom-PHP-Project

A SQL injection vulnerability exists in the mathurvishal CloudClassroom-PHP-Project, particularly affecting the updateguest.php script. By manipulating the 'gname' parameter, an attacker could execute unauthorized SQL commands. This remote exploit poses a risk as attackers might utilize publicly ...

PoC for CVE-2026-100893

PrivoceVocechat Server6.9MEDIUM
Server-Side Request Forgery Vulnerability in Privoce VoceChat Server

A security flaw has been identified in the Privoce VoceChat Server, specifically impacting the open_graph::fetch function within the src/api/resource.rs component. This vulnerability allows an attacker to manipulate the 'url' argument, potentially leading to server-side request forgery. The explo...

Discovered 5 hours ago

PoC for CVE-2026-43284

LinuxLinux8.8HIGH
Vulnerability in Linux Kernel Affects Shared skb Fragments

A vulnerability exists in the Linux kernel that concerns the handling of shared skb fragments during the decryption process in ESP-in-UDP packets. When pages are attached from a pipe directly to an skb using MSG_SPLICE_PAGES, the kernel marked these SKBs with SKBFL_SHARED_FRAG, which plays a cruc...

PoC for CVE-2026-100889

Trusted Domain Pr...Opendkim6.9MEDIUM
Off-by-One Vulnerability in Trusted Domain Project OpenDKIM by Trus...

A vulnerability has been identified in the Trusted Domain Project OpenDKIM, specifically within the dkim_qp_decode function in the util.c file. This flaw can lead to an off-by-one error, which poses a risk of exploitation by remote attackers. The exploit details have been made public, indicating ...

PoC for CVE-2026-100888

Trusted Domain Pr...Opendkim6.9MEDIUM
Out-of-bounds Write Vulnerability in Trusted Domain Project OpenDKIM

A vulnerability has been located in the Trusted Domain Project's OpenDKIM versions up to 2.11.0, specifically in the function dkim_canon_selecthdrs, part of the DKIM Signature Header Selection component. This issue arises from a manipulation of arguments leading to potential out-of-bounds write c...

Discovered 6 hours ago

PoC for CVE-2024-4367

MozillaFirefox🟣 EPSS 71%8.8HIGH
Arbitrary JavaScript Execution Vulnerability in Firefox

A vulnerability has been identified in PDF.js, specifically related to a missing type check when processing fonts. This oversight permits arbitrary JavaScript execution within the PDF.js environment. As a result, users of affected versions of Mozilla Firefox and Thunderbird could be vulnerable to...

PoC for CVE-2026-100887

AmirsanniMini-inventory-and-sal...5.3MEDIUM
SQL Injection Vulnerability in Mini Inventory and Sales Management ...

A security flaw has been located in the Mini Inventory and Sales Management System developed by amirsanni. The vulnerability lies within the 'order_by' function in the DB_query_builder.php file of the Database Query Builder component. By manipulating the 'orderBy' argument, an attacker can potent...

PoC for CVE-2026-100886

SeetongT810810CRITICAL
Improper Authentication Vulnerability in Seetong T8108 and Related ...

A vulnerability has been identified in Seetong’s product line, specifically within the Debug Service component, used in models T8108, T8108P, T8116, and T8232. This flaw allows for improper authentication, making it possible for attackers to exploit the system remotely. The exploit is readily ava...

PoC for CVE-2026-100885

KrayinLaravel-crm6.9MEDIUM
Authorization Bypass in Krayin Laravel-CRM Affected by Remote Manip...

A vulnerability in Krayin Laravel-CRM versions up to 2.2.4 allows for authorization bypass through an unspecified function in the admin-config-setup API endpoint, specifically located in CanInstall.php. This vulnerability can be exploited remotely, posing a significant security risk. Users are st...

PoC for CVE-2026-100884

KrayinLaravel-crm5.3MEDIUM
Improper Resource Control in Krayin Laravel CRM by Webkul

A vulnerability in the Krayin Laravel CRM, specifically in versions up to 2.2.5, has been identified. The flaw lies in the Storage::download function within the acl.php file of the attachment-download endpoint, where inadequate control over resource identifiers allows for potential exploitation. ...

PoC for CVE-2026-63030

WordPressWordPress🟣 EPSS 10%9.8CRITICAL
SQL Injection and Remote Code Execution in WordPress REST API

A confusion issue in the REST API batch endpoint of WordPress versions 6.9.x prior to 6.9.5 and 7.0.x prior to 7.0.2 could facilitate an exploit. This vulnerability, when combined with an existing SQL Injection flaw in the author__not_in WP_Query feature, can allow attackers to execute unauthoriz...

Discovered 7 hours ago

PoC for CVE-2026-100883

KrayinLaravel-crm5.3MEDIUM
Improper Access Control Flaw in Krayin Laravel-CRM by Webkul

A vulnerability exists in versions up to 2.2.5 of Krayin Laravel-CRM, specifically within the acl.php file, where an unknown function can be exploited to manipulate access controls improperly. This issue can be triggered remotely, posing a significant risk to the application. The vulnerability ha...

PoC for CVE-2026-100882

KrayinLaravel-crm4.8MEDIUM
Cross-Site Scripting Vulnerability in Krayin Laravel-CRM by Krayin

A cross-site scripting vulnerability exists in the Krayin Laravel-CRM platform, specifically affecting the Admin Settings Endpoint in versions up to 2.2.5. This vulnerability is due to improper handling of user-supplied input, allowing attackers to manipulate the argument 'general.settings.footer...

Discovered 8 hours ago

PoC for CVE-2026-100881

ZhistareduStartraining2.1LOW
Cross-Site Scripting Vulnerability in zhistaredu StarTraining Product

A vulnerability has been identified in zhistaredu's StarTraining product, specifically affecting versions up to 3.8.1. This flaw involves improper handling of the application.yml file, allowing an attacker to manipulate the xss.enabled argument. As a result, the application is susceptible to cros...

PoC for CVE-2026-100880

ZhistareduStartraining5.1MEDIUM
Cross Site Scripting Vulnerability in zhistaredu StarTraining by zh...

A vulnerability has been discovered in the upload endpoint of zhistaredu StarTraining versions up to 3.8.1. This issue resides within the MimeTypeUtils.java file, where inadequate validation of uploaded files can lead to cross-site scripting (XSS) attacks. Attackers could exploit this vulnerabili...

PoC for CVE-2026-100879

ZhistareduStartraining5.3MEDIUM
Improper Authorization Flaw in zhistaredu StarTraining Affecting Ve...

A security vulnerability exists in zhistaredu StarTraining versions up to 3.8.1, specifically in the dataScope Endpoint's function checkRoleAllowed found in SysRoleServiceImpl.java. This flaw enables attackers to manipulate authorization checks, potentially allowing unauthorized actions without p...

PoC for CVE-2026-100878

ZhistareduStartraining5.3MEDIUM
Authorization Bypass in zhistaredu StarTraining by zhistaredu

An authorization bypass vulnerability exists in the zhistaredu StarTraining application, specifically within the SysUser.isAdmin function in the authRole Endpoint. This issue arises due to inadequate validation of the userId and roleIds parameters, allowing an unauthorized user to gain administra...

PoC for CVE-2026-48842

RoundcubeWebmail8.1HIGH
Pre-authentication SQL Injection Vulnerability in Roundcube Webmail...

The Roundcube Webmail application versions 1.6.x prior to 1.6.16 and 1.7.x prior to 1.7.1 contain a pre-authentication SQL injection vulnerability in the virtuser_query plugin. This issue arises from a bypass of backslash escape sequences in the preg_replace() function, which may allow an attacke...

Discovered 9 hours ago

PoC for CVE-2026-100877

MathurvishalCloudclassroom-PHP-pro...5.3MEDIUM
Cross Site Scripting Vulnerability in CloudClassroom-PHP-Project by...

A vulnerability exists in the CloudClassroom-PHP-Project, specifically in the functionality of registrationform.php. This flaw allows for cross site scripting via manipulation of the FName, LName, and Addrs arguments. Due to this vulnerability, remote attackers could execute malicious scripts, pu...

PoC for CVE-2026-100835

EdgelesssysContrast9.1CRITICAL
Remote Attestation Vulnerability in Contrast by Edgeless Systems

The Contrast software by Edgeless Systems prior to version 1.16.0 is vulnerable to remote attestation relay attacks. This occurs when an attacker can intercept network traffic and manipulate attestation reports. Contrast's system accepted any attestation report that validated correctly, irrespect...

PoC for CVE-2026-100876

MathurvishalCloudclassroom-PHP-pro...5.3MEDIUM
Missing Authentication Vulnerability in CloudClassroom-PHP-Project ...

A vulnerability exists in the mathurvishal CloudClassroom-PHP-Project primarily located in the loginlinkstudent.php file. This flaw arises from the improper handling of the user email argument, allowing unauthorized access due to missing authentication checks. The vulnerability has been exploited...

Discovered 10 hours ago

PoC for CVE-2026-100875

MathurvishalCloudclassroom-PHP-pro...6.9MEDIUM
SQL Injection Vulnerability in mathurvishal CloudClassroom-PHP-Project

A vulnerability exists in mathurvishal's CloudClassroom-PHP-Project that affects the 'updatedetailsfromfaculty.php' file. This issue allows for SQL injection through manipulation of the 'myfid' parameter, potentially enabling remote attackers to execute arbitrary SQL code. As the product follows ...

Discovered 13 hours ago

PoC for CVE-2026-44011

CraftcmsCms8.6HIGH
Input Handling Flaw in Craft CMS Leads to Potential Command Injection

Craft CMS contains an input-handling flaw that allows authenticated users to manipulate configuration settings and execute arbitrary commands on the server. This vulnerability arises from a flaw in the Yii object creation path, where request-controlled condition fields are incorrectly handled. Du...

PoC for CVE-2026-8712

Ohf-voiceWyoming6.9MEDIUM
Server-Side Request Forgery Vulnerability in Wyoming by OHF Voice

The Wyoming application prior to version 1.10.2 is vulnerable to a server-side request forgery attack. This vulnerability allows unauthenticated attackers with network access to manipulate the application's outgoing connections by passing malicious `uri` query parameters to the HTTP API. Specific...

Discovered 18 hours ago

PoC for CVE-2025-11201

MlflowMlflow🟣 EPSS 27%8.1HIGH
Directory Traversal Vulnerability in MLflow Tracking Server

A vulnerability exists in MLflow Tracking Server that allows remote attackers to exploit improper validation in model file paths. This oversight can lead to directory traversal attacks, enabling malicious users to execute arbitrary code within the context of the service account. Importantly, this...

Discovered 21 hours ago

PoC for CVE-2021-44228

ApacheApache Log4j2🟣 EPSS 100%10CRITICAL
Apache Log4j2 JNDI features do not protect against attacker control...

Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect against attacker controlled LDAP and other JNDI related endpoints. An attacker who can control log messages or log messag...

Discovered 23 hours ago

PoC for CVE-2026-82901

WordPressUltra Addons For Conta...9.8CRITICAL
Arbitrary File Upload Vulnerability in Ultra Addons for Contact For...

The Ultra Addons for Contact Form 7 plugin for WordPress contains a vulnerability that allows unauthorized file uploads due to inadequate validation of file types in the 'uacf7_wpcf7_mail_components' function. This weakness affects all versions up to and including 3.5.50. When exploited, particul...

PoC for CVE-2026-97319

WordPressPowerpress Podcasting ...6.8MEDIUM
Stored Cross-Site Scripting Vulnerability in PowerPress Podcasting ...

The PowerPress Podcasting plugin, developed by Blubrry, is susceptible to a stored cross-site scripting vulnerability due to inadequate sanitization and escaping of a block attribute before it is rendered on a webpage. This flaw permits users with contributor privileges and higher to inject malic...

PoC for CVE-2026-96897

WordPressOptima Express Idx5.3MEDIUM
Authentication Bypass Vulnerability in Optima Express IDX Plugin

The Optima Express IDX plugin for WordPress prior to version 8.7.6 has a serious issue where it fails to implement authorization checks for certain AJAX actions accessible to users who are not logged in. This could allow unauthorized attackers to create an account with fixed author-role privilege...

PoC for CVE-2026-96899

WordPressOptima Express Idx6.8MEDIUM
Stored Cross-Site Scripting Vulnerability in Optima Express IDX Wor...

The Optima Express IDX WordPress plugin versions prior to 8.7.6 are vulnerable due to inadequate sanitization of script values submitted via its REST endpoints. This oversight potentially allows users with even minimal permissions, such as authors, to execute Stored Cross-Site Scripting (XSS) att...

PoC for CVE-2026-96896

WordPressMalcure Malware Shield...7.2HIGH
Authorization Bypass in Malcure Malware Shield Plugin for WordPress

The Malcure Malware Shield plugin for WordPress before version 19.9.7 is susceptible to an authorization bypass vulnerability. This flaw allows individuals with a subsite administrator role on a multisite WordPress network to perform AJAX actions without proper authorization checks. As a result, ...

PoC for CVE-2026-97227

WordPressNextscripts: Social Ne...5.9MEDIUM
Vulnerability in NextScripts Plugin Allows Unauthorized Access to S...

The NextScripts: Social Networks Auto-Poster plugin for WordPress, versions before 4.4.8, suffers from improper access control. It fails to implement adequate capability and ownership checks on several AJAX actions, relying solely on a nonce for security. This oversight enables users with adminis...

PoC for CVE-2026-96895

WordPressWP Youtube Lyte6.8MEDIUM
Stored Cross-Site Scripting Vulnerability in WP YouTube Lyte Plugin

The WP YouTube Lyte plugin for WordPress, prior to version 1.7.31, contains a vulnerability that fails to properly escape YouTube embed block attributes. This inadequate escaping can lead to the execution of stored Cross-Site Scripting (XSS) attacks by users with minimal privileges, such as contr...

PoC for CVE-2026-92995

WordPressVerge3d Publishing And...5.3MEDIUM
File Access Vulnerability in Verge3D Publishing and E-Commerce Word...

The Verge3D Publishing and E-Commerce WordPress plugin prior to version 4.13.0 exhibits improper access control, which allows unauthenticated users to access sensitive file-download handlers. As a result, attackers may exploit this vulnerability to gain unauthorized access to digital goods files ...

PoC for CVE-2026-89006

WordPressWPematico Rss Feed Fet...6.8MEDIUM
Stored Cross-Site Scripting Vulnerability in WPeMatico RSS Feed Fet...

The WPeMatico RSS Feed Fetcher plugin for WordPress prior to version 2.8.27 has a serious oversight in its handling of imported feed content. It fails to properly sanitize this content before it is saved as post content. This flaw permits users with Contributor roles and higher to exploit the vul...

PoC for CVE-2026-89001

WordPressWPematico Rss Feed Fet...4.9MEDIUM
Improper Access Control in WPeMatico RSS Feed Fetcher WordPress Plugin

The WPeMatico RSS Feed Fetcher plugin for WordPress prior to version 2.8.27 suffers from improper access control. This vulnerability allows users with contributor-level access and above to publish posts without adequate permissions. Users can attribute published content to any registered user, in...

PoC for CVE-2026-92436

WordPressMailchimp For WooCommerce5.3MEDIUM
Authentication Bypass in Mailchimp for WooCommerce Plugin by WordPress

The Mailchimp for WooCommerce plugin prior to version 6.3 is susceptible to an authentication bypass vulnerability. This issue arises from the plugin's failure to require proper authentication or verify ownership when loading a saved cart using a request-supplied identifier linked to a customer's...

PoC for CVE-2026-89003

WordPressWPematico Rss Feed Fet...4.1MEDIUM
Remote Code Execution in WPeMatico RSS Feed Fetcher Plugin by WPMU DEV

The WPeMatico RSS Feed Fetcher plugin for WordPress is vulnerable due to inadequate capability checks when processing user-supplied URLs. This flaw allows users with contributor-level access and higher permissions to manipulate the plugin into making unauthorized requests to internal servers, the...

PoC for CVE-2026-86839

WordPressOnline Scheduling And ...3.8LOW
Improper Access Control in Online Scheduling and Appointment Bookin...

The Online Scheduling and Appointment Booking System plugin for WordPress fails to adequately verify the ownership of appointment and payment records during AJAX requests made by staff members. This flaw allows authenticated users with staff-level accounts to access, alter, and delete appointment...

PoC for CVE-2026-89000

WordPressWPematico Rss Feed Fet...4.1MEDIUM
Insufficient Validation in WPeMatico RSS Feed Fetcher Plugin by Wor...

The WPeMatico RSS Feed Fetcher plugin, prior to version 2.8.27, lacks proper capability checks and does not validate the destination of user-supplied feed URLs. This oversight permits users with contributor-level access or higher to generate server-side requests to internal-only resources, potent...