Critical Vulnerabilities with Public Exploits

Updated 4h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

346,468 CVEs tracked 53,663 with exploits 4,859 exploited in wild 1,583 CISA KEV 4,077 Nuclei templates 52,324 vendors 43,878 researchers
4,103 results Clear all
CVE-2024-25153 9.8 CRITICAL 2 PoCs Analysis EPSS 0.82
FileCatalyst Workflow Web Portal - Path Traversal
A directory traversal within the ‘ftpservlet’ of the FileCatalyst Workflow Web Portal allows files to be uploaded outside of the intended ‘uploadtemp’ directory with a specially crafted POST request. In situations where a file is successfully uploaded to web portal’s DocumentRoot, specially crafted JSP files could be used to execute code, including web shells.
CWE-472 Mar 13, 2024
CVE-2024-58309 9.8 CRITICAL 1 PoC Analysis EPSS 0.00
Xbtitfm - SQL Injection
xbtitFM 4.1.18 contains an unauthenticated SQL injection vulnerability that allows remote attackers to manipulate database queries by injecting malicious SQL code through the msgid parameter. Attackers can send crafted requests to /shoutedit.php with EXTRACTVALUE functions to extract database names, user credentials, and password hashes from the underlying database.
CWE-89 Dec 11, 2025
CVE-2024-58308 9.8 CRITICAL 1 PoC Analysis EPSS 0.00
Opensolution Quick Cms - SQL Injection
Quick.CMS 6.7 contains a SQL injection vulnerability that allows unauthenticated attackers to bypass login authentication by manipulating the login form. Attackers can inject specific SQL payloads like ' or '1'='1 to gain unauthorized administrative access to the system.
CWE-89 Dec 11, 2025
CVE-2024-26503 9.1 CRITICAL 1 PoC Analysis EPSS 0.02
Openeclass < 3.15 - Unrestricted File Upload
Unrestricted File Upload vulnerability in Greek Universities Network Open eClass v.3.15 and earlier allows attackers to run arbitrary code via upload of crafted file to certbadge.php endpoint.
CWE-434 Mar 14, 2024
CVE-2024-22836 9.8 CRITICAL 1 PoC Analysis EPSS 0.38
Akaunting <3.1.3 - Command Injection
An OS command injection vulnerability exists in Akaunting v3.1.3 and earlier. An attacker can manipulate the company locale when installing an app to execute system commands on the hosting server.
CWE-78 Feb 08, 2024
CVE-2024-1403 10.0 CRITICAL 1 PoC Analysis EPSS 0.16
Progress Openedge < 11.7.19 - Authentication Bypass
In OpenEdge Authentication Gateway and AdminServer prior to 11.7.19, 12.2.14, 12.8.1 on all platforms supported by the OpenEdge product, an authentication bypass vulnerability has been identified.  The vulnerability is a bypass to authentication based on a failure to properly handle username and password. Certain unexpected content passed into the credentials can lead to unauthorized access without proper authentication.  
CWE-305 Feb 27, 2024
CVE-2024-1512 9.8 CRITICAL 1 PoC Analysis NUCLEI EPSS 0.93
Stylemixthemes Masterstudy Lms < 3.2.5 - SQL Injection
The MasterStudy LMS WordPress Plugin – for Online Courses and Education plugin for WordPress is vulnerable to union based SQL Injection via the 'user' parameter of the /lms/stm-lms/order/items REST route in all versions up to, and including, 3.2.5 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.
CWE-89 Feb 17, 2024
CVE-2024-23652 10.0 CRITICAL 1 PoC Analysis EPSS 0.06
Mobyproject Buildkit < 0.12.5 - Path Traversal
BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. A malicious BuildKit frontend or Dockerfile using RUN --mount could trick the feature that removes empty files created for the mountpoints into removing a file outside the container, from the host system. The issue has been fixed in v0.12.5. Workarounds include avoiding using BuildKit frontends from an untrusted source or building an untrusted Dockerfile containing RUN --mount feature.
CWE-22 Jan 31, 2024
CVE-2024-58311 9.8 CRITICAL 1 PoC Analysis EPSS 0.00
Dormakaba Saflok System 6000 - Info Disclosure
Dormakaba Saflok System 6000 contains a predictable key generation algorithm that allows attackers to derive card access keys from a 32-bit unique identifier. Attackers can exploit the deterministic key generation process by calculating valid access keys using a simple mathematical transformation of the card's unique identifier.
CWE-1245 Dec 12, 2025
CVE-2024-25735 9.1 CRITICAL EXPLOITED 1 PoC Analysis NUCLEI EPSS 0.91
WyreStorm Apollo VX20 - Information Disclosure
An issue was discovered on WyreStorm Apollo VX20 devices before 1.3.58. Remote attackers can discover cleartext passwords via a SoftAP /device/config GET request.
CWE-319 Mar 27, 2024
CVE-2024-25169 9.8 CRITICAL 1 PoC Analysis EPSS 0.01
Mezzanine v6.0.0 - Auth Bypass
An issue in Mezzanine v6.0.0 allows attackers to bypass access control mechanisms in the admin panel via a crafted request.
CWE-284 Feb 28, 2024
CVE-2024-25170 9.1 CRITICAL 1 PoC Analysis EPSS 0.02
Mezzanine v6.0.0 - CSRF
An issue in Mezzanine v6.0.0 allows attackers to bypass access controls via manipulating the Host header.
CWE-863 Feb 28, 2024
CVE-2024-24402 9.8 CRITICAL 1 PoC Analysis EPSS 0.28
Nagios XI - Improper Privilege Management
An issue in Nagios XI 2024R1.01 allows a remote attacker to escalate privileges via a crafted script to the /usr/local/nagios/bin/npcd component.
CWE-269 Feb 26, 2024
CVE-2024-1301 9.8 CRITICAL 1 PoC Analysis EPSS 0.33
Badgermeter Monitool < 4.7 - SQL Injection
SQL injection vulnerability in Badger Meter Monitool affecting versions 4.6.3 and earlier. A remote attacker could send a specially crafted SQL query to the server via the j_username parameter and retrieve the information stored in the database.
CWE-89 Mar 12, 2024
CVE-2024-24398 9.8 CRITICAL 1 PoC Analysis EPSS 0.31
Stimulsoft Dashboards.php < 2024.1.2 - Path Traversal
Directory Traversal vulnerability in Stimulsoft GmbH Stimulsoft Dashboard.JS before v.2024.1.2 allows a remote attacker to execute arbitrary code via a crafted payload to the fileName parameter of the Save function.
CWE-22 Feb 06, 2024
CVE-2024-25422 9.8 CRITICAL 1 PoC Analysis EPSS 0.01
SEMCMS <4.8 - SQL Injection
SQL Injection vulnerability in SEMCMS v.4.8 allows a remote attacker to execute arbitrary code and obtain sensitive information via the SEMCMS_Menu.php component.
CWE-89 Feb 28, 2024
CVE-2024-58299 9.8 CRITICAL 1 PoC Analysis EPSS 0.00
PCMan FTP Server 2.0 - RCE
PCMan FTP Server 2.0 contains a buffer overflow vulnerability in the 'pwd' command that allows remote attackers to execute arbitrary code. Attackers can send a specially crafted payload during the FTP login process to overwrite memory and potentially gain system access.
CWE-121 Dec 12, 2025
CVE-2024-24142 9.8 CRITICAL 1 PoC Analysis EPSS 0.10
Rems School Task Manager - SQL Injection
Sourcecodester School Task Manager 1.0 allows SQL Injection via the 'subject' parameter.
CWE-89 Feb 13, 2024
CVE-2024-24141 9.8 CRITICAL 1 PoC Analysis EPSS 0.13
Remyandrade School Task Manager - SQL Injection
Sourcecodester School Task Manager App 1.0 allows SQL Injection via the 'task' parameter.
CWE-89 Jan 29, 2024
CVE-2024-14010 9.8 CRITICAL 1 PoC Analysis EPSS 0.01
Typora 1.7.4 - Command Injection
Typora 1.7.4 contains a command injection vulnerability in the PDF export preferences that allows attackers to execute arbitrary system commands. Attackers can inject malicious commands into the 'run command' input field during PDF export to achieve remote code execution.
CWE-78 Dec 12, 2025