Exploit Search

PoC Search Engine

AI Enriched

Search specific CVE exploits enriched with AI vulnerability analysis.

Found 31908 Vulnerabilities with Exploits

Linux Kernel: IPv6 Heap Corruption via Paged Allocation Path

Severity HIGH
7.8

AI Intelligence Analysis

Target Stack Linux / Kernel
Impact Vector Heap Corruption
Authentication Authenticated

Verified Exploits (1)

Blocksy Companion Pro Unauthenticated File Upload

Severity CRITICAL
9.2

AI Intelligence Analysis

Target Stack Blocksy Companion Pro / Blocksy Companion Pro plugin for WordPress
<2.1.47
Impact Vector File Upload, RCE
Authentication PRE-AUTH

Verified Exploits (1)

Arbitrary File Upload and RCE in Blocksy Companion plugin for WordPress

Severity CRITICAL
9.8

AI Intelligence Analysis

Target Stack Blocksy Companion / Blocksy Companion plugin
<=2.1.46
Impact Vector RCE
Authentication PRE-AUTH

Verified Exploits (1)

Ruflo Unauthenticated RCE via Exposed MCP Endpoints

Severity CRITICAL
10.0

AI Intelligence Analysis

Target Stack Ruflo / Ruflo
<3.16.3
Impact Vector RCE
Authentication PRE-AUTH

Verified Exploits (1)

Unauthenticated Arbitrary File Upload to RCE in Joomla RSFiles

Severity CRITICAL
10.0

AI Intelligence Analysis

Target Stack Joomla / RSFiles
Impact Vector RCE
Authentication PRE-AUTH

Realtyna Organic IDX Remote Code Inclusion

Severity CRITICAL
10.0

AI Intelligence Analysis

Target Stack Realtyna / Realtyna Organic IDX plugin
<=5.2.0
Impact Vector RCE
Authentication PRE-AUTH

WordPress SAML SSO Login Auth Bypass (Admin Takeover)

Severity CRITICAL
9.8

AI Intelligence Analysis

Target Stack SAML Single Sign On – SSO Login / SAML Single Sign On – SSO Login plugin for WordPress
<=5.4.3
Impact Vector Auth Bypass
Authentication PRE-AUTH

Verified Exploits (1)

Linux Kernel IPv4 Memory Accounting Issue

Severity HIGH
7.8

AI Intelligence Analysis

Target Stack Linux / Kernel
Impact Vector Memory Corruption
Authentication PRE-AUTH

Verified Exploits (1)

Unauthenticated Stored XSS

Severity HIGH
7.1

AI Intelligence Analysis

Target Stack WordPress / Tag Groups (The Advanced Way to Display Your Taxonomy Terms)
<2.2.0
Impact Vector XSS
Authentication PRE-AUTH

Verified Exploits (1)

Unauthenticated File Upload in DJ-Classifieds

Severity CRITICAL
10.0

AI Intelligence Analysis

Target Stack Joomla / DJ-Classifieds
Impact Vector RCE
Authentication PRE-AUTH

Verified Exploits (1)

Linux Kernel Open vSwitch Oversized Nested Action Attribute Vulnerability

Severity HIGH
7.8

AI Intelligence Analysis

Target Stack Linux / Kernel (Open vSwitch)
Impact Vector Memory Corruption
Authentication PRE-AUTH

Everest Toolkit WordPress plugin Arbitrary File Upload

Severity HIGH
7.2

AI Intelligence Analysis

Target Stack Everest Toolkit / Everest Toolkit WordPress plugin
<=1.2.3
Impact Vector RCE
Authentication PRE-AUTH

Verified Exploits (1)

Demo Import WordPress plugin Arbitrary File Upload

Severity HIGH
7.2

AI Intelligence Analysis

Target Stack Demo Import / Demo Import WordPress plugin
<=1.1.3
Impact Vector RCE
Authentication PRE-AUTH

Verified Exploits (1)

RCE via SQL Injection and transaction bypass in pgAdmin 4 AI Assistant

Severity CRITICAL
9.4

AI Intelligence Analysis

Target Stack pgAdmin / pgAdmin 4
>=9.13 <9.17
Impact Vector RCE
Authentication PRE-AUTH

Privilege Escalation in macOS via Malicious App

Severity HIGH
7.8

AI Intelligence Analysis

Target Stack Apple / macOS Tahoe
<26.6
Impact Vector Privilege Escalation
Authentication Authenticated

Joomla Aimy Captcha-Less Form Guard PHP Object Injection RCE

Severity CRITICAL
10.0

AI Intelligence Analysis

Target Stack aimy-extensions.com / Aimy Captcha-Less Form Guard
>=18.0 <=20.0
Impact Vector RCE
Authentication PRE-AUTH

Verified Exploits (1)

Code signing bypass via validation issue

Severity HIGH
7.1

AI Intelligence Analysis

Target Stack Apple / watchOS
<26.6
Impact Vector Security Bypass
Authentication PRE-AUTH

ClickHouse Server SQL Injection RCE

Severity UNKNOWN
0.0

AI Intelligence Analysis

Target Stack ClickHouse / ClickHouse Server
<=26.3.9.8
Impact Vector RCE/SQLi
Authentication PRE-AUTH

Verified Exploits (1)

7-Zip XZ Decompression Heap Buffer Overflow RCE

Severity HIGH
7.8

AI Intelligence Analysis

Target Stack 7-Zip / 7-Zip
Impact Vector RCE
Authentication PRE-AUTH

vBulletin Unauthenticated eval Injection RCE

Severity CRITICAL
9.3

AI Intelligence Analysis

Target Stack vBulletin / vBulletin
>=5.0.0 <=5.7.5 >=6.0.0 <=6.2.1
Impact Vector RCE
Authentication Authenticated