Exploit Search

PoC Search Engine

AI Enriched

Search specific CVE exploits enriched with AI vulnerability analysis.

Found 32542 Vulnerabilities with Exploits

Remote Code Inclusion in Crocoblock JetEngine

Severity HIGH
8.5

AI Intelligence Analysis

Target Stack Crocoblock / JetEngine
<= 3.7.2
Impact Vector RCE
Authentication Authenticated

Type confusion in Windows Ancillary Function Driver for WinSock

Severity HIGH
7.8

AI Intelligence Analysis

Target Stack Microsoft / Windows Ancillary Function Driver for WinSock
Impact Vector EoP
Authentication Authenticated

Verified Exploits (1)

CVE-2026-34909 CISA KEV ACTIVE

UniFi OS Path Traversal (Account Access)

Severity CRITICAL
10.0

AI Intelligence Analysis

Target Stack UniFi / UniFi OS devices
Impact Vector Privilege Escalation
Authentication PRE-AUTH

Portainer Privilege Escalation via Docker Plugin Management

Severity CRITICAL
9.4

AI Intelligence Analysis

Target Stack Portainer / Community Edition
>=2.33.0 <2.33.8 <2.39.2 <2.41.0
Impact Vector RCE
Authentication PRE-AUTH

Moby/Docker Container Host RCE

Severity HIGH
7.2

AI Intelligence Analysis

Target Stack Moby / Moby, Docker Engine
<29.5.1 <2.0.0-beta.14
Impact Vector RCE
Authentication Authenticated

Verified Exploits (1)

DoS in ClamAV PESpin File Parser

Severity HIGH
7.5

AI Intelligence Analysis

Target Stack ClamAV / ClamAV
Impact Vector DoS
Authentication Authenticated

Verified Exploits (1)

Unauthenticated OS Command Injection in Dockwatch

Severity CRITICAL
9.2

AI Intelligence Analysis

Target Stack Dockwatch / Dockwatch
<=0.6.567
Impact Vector RCE
Authentication Authenticated

Remote Code Execution via H2 JDBC URL in Apache Gravitino

Severity CRITICAL
9.1

AI Intelligence Analysis

Target Stack Apache / Gravitino
<1.2.1
Impact Vector RCE
Authentication PRE-AUTH

Verified Exploits (1)

Spring Tools for VSCode JMX Remote Code Execution

Severity HIGH
8.0

AI Intelligence Analysis

Target Stack Spring / Spring Tools for VSCode / Cursor / Theia
<=2.2.0
Impact Vector RCE
Authentication PRE-AUTH

Verified Exploits (1)

CVE-2026-59310 CISA KEV ACTIVE

Directory Traversal in Syslog Server

Severity CRITICAL
9.8

AI Intelligence Analysis

Target Stack VMware / vCenter
Impact Vector RCE
Authentication Authenticated

Post-auth command injection in Zyxel WAX650S

Severity HIGH
7.2

AI Intelligence Analysis

Target Stack Zyxel / WAX650S
<=7.10(ABRM.4)C0
Impact Vector RCE
Authentication Authenticated

Shiori JWT token not revoked/session fixation

Severity HIGH
8.3

AI Intelligence Analysis

Target Stack Shiori / Shiori
Impact Vector Privilege Escalation, Auth Bypass
Authentication PRE-AUTH
CVE-2026-65400 CISA KEV ACTIVE

macOS Screen Sharing Authentication Bypass

Severity CRITICAL
9.8

AI Intelligence Analysis

Target Stack Apple / macOS
<15.7.9 <14.8.9 <26.6.1
Impact Vector Authentication Bypass
Authentication Authenticated

Linux kernel: Ksmbd path traversal vulnerability allows share escape

Severity CRITICAL
9.1

AI Intelligence Analysis

Target Stack Linux / Kernel
Impact Vector Path Traversal
Authentication Authenticated

Verified Exploits (1)

Vim spellfile.c heap overflow via crafted spell file

Severity HIGH
8.5

AI Intelligence Analysis

Target Stack Vim / Vim
<9.2.0846
Impact Vector Heap Overflow, Out-of-bounds Write
Authentication PRE-AUTH

Verified Exploits (1)

CVE-2026-73570 CISA KEV ACTIVE

Remote Code Execution (RCE) via SNMP Notifications

Severity HIGH
8.9

AI Intelligence Analysis

Target Stack Zimbra / Collaboration (ZCS)
<10.1.20
Impact Vector RCE
Authentication PRE-AUTH

Verified Exploits (1)

Privilege Escalation in Pods WordPress Plugin

Severity CRITICAL
9.8

AI Intelligence Analysis

Target Stack WordPress / Pods – Custom Content Types and Fields plugin
<=3.3.9
Impact Vector Privilege Escalation
Authentication PRE-AUTH

Authentication Bypass

Severity CRITICAL
9.8

AI Intelligence Analysis

Target Stack SFCB / SFCB (Small Footprint CIM Broker)
*
Impact Vector Authentication Bypass
Authentication Authenticated

CSRF Password Change

Severity HIGH
8.3

AI Intelligence Analysis

Target Stack Semaphore / Semaphore UI
<2.18.21
Impact Vector CSRF
Authentication PRE-AUTH

Verified Exploits (1)

WordPress User Profile Builder Authentication Bypass

Severity CRITICAL
9.8

AI Intelligence Analysis

Target Stack User Profile Builder / User Profile Builder
<=3.16.4
Impact Vector Admin Takeover
Authentication PRE-AUTH