Exploit Search

PoC Search Engine

AI Enriched

Search specific CVE exploits enriched with AI vulnerability analysis.

Found 31342 Vulnerabilities with Exploits

SQL Injection in Visitor Management System

Severity LOW
2.1

AI Intelligence Analysis

Target Stack code-projects / Visitor Management System
=1.0
Impact Vector SQLi
Authentication PRE-AUTH

Local Privilege Escalation in Android PickActivity

Severity HIGH
8.4

AI Intelligence Analysis

Target Stack N/A / Android PickActivity
Impact Vector Privilege Escalation
Authentication PRE-AUTH

Accessing Functionality Not Properly Constrained by ACLs in BoldGrid W3 Total Cache

Severity CRITICAL
9.0

AI Intelligence Analysis

Target Stack BoldGrid / W3 Total Cache
<=2.9.1
Impact Vector Auth Bypass
Authentication PRE-AUTH

Verified Exploits (1)

Integer overflow or wraparound

Severity HIGH
8.0

AI Intelligence Analysis

Target Stack Microsoft / Windows Routing and Remote Access Service (RRAS)
Impact Vector RCE
Authentication PRE-AUTH

Integer overflow or wraparound

Severity HIGH
8.0

AI Intelligence Analysis

Target Stack Microsoft / Windows Routing and Remote Access Service (RRAS)
Impact Vector RCE
Authentication Authenticated

PHP Object Injection in Everest Forms plugin for WordPress

Severity CRITICAL
9.8

AI Intelligence Analysis

Target Stack Everest Forms / Everest Forms plugin
<=3.4.3
Impact Vector PHP Object Injection
Authentication Authenticated

Verified Exploits (1)

Arbitrary File Upload in ProSolution WP Client plugin

Severity CRITICAL
9.8

AI Intelligence Analysis

Target Stack ProSolution / ProSolution WP Client plugin
<=1.9.9
Impact Vector Arbitrary File Upload
Authentication PRE-AUTH

Verified Exploits (1)

OS Command Injection via Session Variable

Severity HIGH
8.8

AI Intelligence Analysis

Target Stack Chamilo / Chamilo LMS
< 2.0.0-RC.3
Impact Vector RCE
Authentication Authenticated

Verified Exploits (1)

RCE via Hard-coded machineKey in Digital Knowledge KnowledgeDeliver

Severity CRITICAL
9.1

AI Intelligence Analysis

Target Stack Digital Knowledge / KnowledgeDeliver
<2026.02.24
Impact Vector RCE
Authentication PRE-AUTH

Verified Exploits (1)

Arbitrary File Upload in Drag and Drop File Upload for Contact Form 7

Severity HIGH
8.1

AI Intelligence Analysis

Target Stack WordPress / Drag and Drop File Upload for Contact Form 7 plugin
<=1.1.3
Impact Vector RCE
Authentication PRE-AUTH

Verified Exploits (1)

Privilege Escalation in LatePoint Calendar Booking Plugin for WordPress

Severity HIGH
8.8

AI Intelligence Analysis

Target Stack LatePoint / Calendar Booking Plugin for Appointments and Events
<=5.4.1
Impact Vector Privilege Escalation
Authentication Authenticated

Verified Exploits (1)

Amazon WorkSpaces for Windows local privilege escalation

Severity HIGH
8.5

AI Intelligence Analysis

Target Stack Amazon / WorkSpaces for Windows
<2.6.2034.0
Impact Vector LPE
Authentication Authenticated

Verified Exploits (1)

Sensitive Data Exposure in Argo CD

Severity CRITICAL
9.6

AI Intelligence Analysis

Target Stack Argo CD / Argo CD
>=3.2.0,<3.2.11 >=3.3.0,<3.3.9
Impact Vector Data Exfiltration
Authentication Authenticated

Buffer Overflow (Heap Out-of-Bounds Read) in dnsmasq

Severity HIGH
7.3

AI Intelligence Analysis

Target Stack dnsmasq / dnsmasq
Impact Vector Denial of Service
Authentication PRE-AUTH
CVE-2026-0257 CISA KEV ACTIVE

Palo Alto Networks PAN-OS GlobalProtect Authentication Bypass

Severity HIGH
7.8

AI Intelligence Analysis

Target Stack Palo Alto Networks / PAN-OS GlobalProtect portal and gateway
Impact Vector Authentication Bypass
Authentication PRE-AUTH

Arbitrary File Upload leading to RCE in Career Section plugin

Severity CRITICAL
9.8

AI Intelligence Analysis

Target Stack / Career Section plugin
<=1.7
Impact Vector RCE
Authentication Authenticated

Verified Exploits (1)

Unauthenticated OS Command Execution via ExifTool Argument Injection

Severity CRITICAL
9.8

AI Intelligence Analysis

Target Stack Gotenberg / Gotenberg
<8.31.0
Impact Vector RCE
Authentication Authenticated

WordPress Form Notify Authentication Bypass

Severity CRITICAL
9.8

AI Intelligence Analysis

Target Stack Form Notify / Form Notify plugin
<=1.1.10
Impact Vector Authentication Bypass
Authentication PRE-AUTH

Verified Exploits (1)

SSRF via HTTP 3xx redirects

Severity HIGH
8.5

AI Intelligence Analysis

Target Stack Open WebUI / Open WebUI
<0.9.5
Impact Vector SSRF, Information Disclosure
Authentication PRE-AUTH

Code Injection in Apache OFBiz

Severity HIGH
8.8

AI Intelligence Analysis

Target Stack Apache / OFBiz
<24.09.06
Impact Vector RCE
Authentication Authenticated

Verified Exploits (1)