Critical Vulnerabilities with Public Exploits
Updated 4h agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
4,103 results
Clear all
CVE-2024-25153
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.82
FileCatalyst Workflow Web Portal - Path Traversal
A directory traversal within the ‘ftpservlet’ of the FileCatalyst Workflow Web Portal allows files to be uploaded outside of the intended ‘uploadtemp’ directory with a specially crafted POST request. In situations where a file is successfully uploaded to web portal’s DocumentRoot, specially crafted JSP files could be used to execute code, including web shells.
CWE-472
Mar 13, 2024
CVE-2024-58309
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Xbtitfm - SQL Injection
xbtitFM 4.1.18 contains an unauthenticated SQL injection vulnerability that allows remote attackers to manipulate database queries by injecting malicious SQL code through the msgid parameter. Attackers can send crafted requests to /shoutedit.php with EXTRACTVALUE functions to extract database names, user credentials, and password hashes from the underlying database.
CWE-89
Dec 11, 2025
CVE-2024-58308
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Opensolution Quick Cms - SQL Injection
Quick.CMS 6.7 contains a SQL injection vulnerability that allows unauthenticated attackers to bypass login authentication by manipulating the login form. Attackers can inject specific SQL payloads like ' or '1'='1 to gain unauthorized administrative access to the system.
CWE-89
Dec 11, 2025
CVE-2024-26503
9.1
CRITICAL
1 PoC
Analysis
EPSS 0.02
Openeclass < 3.15 - Unrestricted File Upload
Unrestricted File Upload vulnerability in Greek Universities Network Open eClass v.3.15 and earlier allows attackers to run arbitrary code via upload of crafted file to certbadge.php endpoint.
CWE-434
Mar 14, 2024
CVE-2024-22836
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.38
Akaunting <3.1.3 - Command Injection
An OS command injection vulnerability exists in Akaunting v3.1.3 and earlier. An attacker can manipulate the company locale when installing an app to execute system commands on the hosting server.
CWE-78
Feb 08, 2024
CVE-2024-1403
10.0
CRITICAL
1 PoC
Analysis
EPSS 0.16
Progress Openedge < 11.7.19 - Authentication Bypass
In OpenEdge Authentication Gateway and AdminServer prior to 11.7.19, 12.2.14, 12.8.1 on all platforms supported by the OpenEdge product, an authentication bypass vulnerability has been identified. The
vulnerability is a bypass to authentication based on a failure to properly
handle username and password. Certain unexpected
content passed into the credentials can lead to unauthorized access without proper
authentication.
CWE-305
Feb 27, 2024
CVE-2024-1512
9.8
CRITICAL
1 PoC
Analysis
NUCLEI
EPSS 0.93
Stylemixthemes Masterstudy Lms < 3.2.5 - SQL Injection
The MasterStudy LMS WordPress Plugin – for Online Courses and Education plugin for WordPress is vulnerable to union based SQL Injection via the 'user' parameter of the /lms/stm-lms/order/items REST route in all versions up to, and including, 3.2.5 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.
CWE-89
Feb 17, 2024
CVE-2024-23652
10.0
CRITICAL
1 PoC
Analysis
EPSS 0.06
Mobyproject Buildkit < 0.12.5 - Path Traversal
BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. A malicious BuildKit frontend or Dockerfile using RUN --mount could trick the feature that removes empty files created for the mountpoints into removing a file outside the container, from the host system. The issue has been fixed in v0.12.5. Workarounds include avoiding using BuildKit frontends from an untrusted source or building an untrusted Dockerfile containing RUN --mount feature.
CWE-22
Jan 31, 2024
CVE-2024-58311
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Dormakaba Saflok System 6000 - Info Disclosure
Dormakaba Saflok System 6000 contains a predictable key generation algorithm that allows attackers to derive card access keys from a 32-bit unique identifier. Attackers can exploit the deterministic key generation process by calculating valid access keys using a simple mathematical transformation of the card's unique identifier.
CWE-1245
Dec 12, 2025
CVE-2024-25735
9.1
CRITICAL
EXPLOITED
1 PoC
Analysis
NUCLEI
EPSS 0.91
WyreStorm Apollo VX20 - Information Disclosure
An issue was discovered on WyreStorm Apollo VX20 devices before 1.3.58. Remote attackers can discover cleartext passwords via a SoftAP /device/config GET request.
CWE-319
Mar 27, 2024
CVE-2024-25169
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.01
Mezzanine v6.0.0 - Auth Bypass
An issue in Mezzanine v6.0.0 allows attackers to bypass access control mechanisms in the admin panel via a crafted request.
CWE-284
Feb 28, 2024
CVE-2024-25170
9.1
CRITICAL
1 PoC
Analysis
EPSS 0.02
Mezzanine v6.0.0 - CSRF
An issue in Mezzanine v6.0.0 allows attackers to bypass access controls via manipulating the Host header.
CWE-863
Feb 28, 2024
CVE-2024-24402
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.28
Nagios XI - Improper Privilege Management
An issue in Nagios XI 2024R1.01 allows a remote attacker to escalate privileges via a crafted script to the /usr/local/nagios/bin/npcd component.
CWE-269
Feb 26, 2024
CVE-2024-1301
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.33
Badgermeter Monitool < 4.7 - SQL Injection
SQL injection vulnerability in Badger Meter Monitool affecting versions 4.6.3 and earlier. A remote attacker could send a specially crafted SQL query to the server via the j_username parameter and retrieve the information stored in the database.
CWE-89
Mar 12, 2024
CVE-2024-24398
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.31
Stimulsoft Dashboards.php < 2024.1.2 - Path Traversal
Directory Traversal vulnerability in Stimulsoft GmbH Stimulsoft Dashboard.JS before v.2024.1.2 allows a remote attacker to execute arbitrary code via a crafted payload to the fileName parameter of the Save function.
CWE-22
Feb 06, 2024
CVE-2024-25422
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.01
SEMCMS <4.8 - SQL Injection
SQL Injection vulnerability in SEMCMS v.4.8 allows a remote attacker to execute arbitrary code and obtain sensitive information via the SEMCMS_Menu.php component.
CWE-89
Feb 28, 2024
CVE-2024-58299
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
PCMan FTP Server 2.0 - RCE
PCMan FTP Server 2.0 contains a buffer overflow vulnerability in the 'pwd' command that allows remote attackers to execute arbitrary code. Attackers can send a specially crafted payload during the FTP login process to overwrite memory and potentially gain system access.
CWE-121
Dec 12, 2025
CVE-2024-24142
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.10
Rems School Task Manager - SQL Injection
Sourcecodester School Task Manager 1.0 allows SQL Injection via the 'subject' parameter.
CWE-89
Feb 13, 2024
CVE-2024-24141
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.13
Remyandrade School Task Manager - SQL Injection
Sourcecodester School Task Manager App 1.0 allows SQL Injection via the 'task' parameter.
CWE-89
Jan 29, 2024
CVE-2024-14010
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.01
Typora 1.7.4 - Command Injection
Typora 1.7.4 contains a command injection vulnerability in the PDF export preferences that allows attackers to execute arbitrary system commands. Attackers can inject malicious commands into the 'run command' input field during PDF export to achieve remote code execution.
CWE-78
Dec 12, 2025