Critical Vulnerabilities with Public Exploits
Updated 1h agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
4,103 results
Clear all
CVE-2023-25158
9.8
CRITICAL
EXPLOITED
1 PoC
1 Writeup
Analysis
EPSS 0.04
Geotools < 24.7 - SQL Injection
GeoTools is an open source Java library that provides tools for geospatial data. GeoTools includes support for OGC Filter expression language parsing, encoding and execution against a range of datastore. SQL Injection Vulnerabilities have been found when executing OGC Filters with JDBCDataStore implementations. Users are advised to upgrade to either version 27.4 or to 28.2 to resolve this issue. Users unable to upgrade may disable `encode functions` for PostGIS DataStores or enable `prepared statements` for JDBCDataStores as a partial mitigation.
CWE-89
Feb 21, 2023
CVE-2023-25135
9.8
CRITICAL
EXPLOITED
1 PoC
Analysis
NUCLEI
EPSS 0.93
Vbulletin - Insecure Deserialization
vBulletin before 5.6.9 PL1 allows an unauthenticated remote attacker to execute arbitrary code via a crafted HTTP request that triggers deserialization. This occurs because verify_serialized checks that a value is serialized by calling unserialize and then checking for errors. The fixed versions are 5.6.7 PL1, 5.6.8 PL1, and 5.6.9 PL1.
CWE-502
Feb 03, 2023
CVE-2023-23488
9.8
CRITICAL
EXPLOITED
6 PoCs
Analysis
NUCLEI
EPSS 0.84
Strangerstudios Paid Memberships Pro < 2.9.8 - SQL Injection
The Paid Memberships Pro WordPress Plugin, version < 2.9.8, is affected by an unauthenticated SQL injection vulnerability in the 'code' parameter of the '/pmpro/v1/order' REST route.
CWE-89
Jan 20, 2023
CVE-2023-38389
9.8
CRITICAL
EXPLOITED
1 PoC
EPSS 0.12
Artbees JupiterX Core <3.3.8 - Privilege Escalation
Incorrect Authorization vulnerability in Artbees JupiterX Core allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects JupiterX Core: from n/a through 3.3.8.
CWE-863
Jun 21, 2024
CVE-2023-38388
9.0
CRITICAL
1 PoC
EPSS 0.23
Artbees JupiterX Core <3.3.5 - Unrestricted Upload
Unrestricted Upload of File with Dangerous Type vulnerability in Artbees JupiterX Core.This issue affects JupiterX Core: from n/a through 3.3.5.
CWE-434
Mar 26, 2024
CVE-2023-48788
9.8
CRITICAL
KEV
RANSOMWARE
4 PoCs
Analysis
NUCLEI
EPSS 0.94
Fortinet Forticlient Endpoint Management Server - SQL Injection
A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiClientEMS version 7.2.0 through 7.2.2, FortiClientEMS 7.0.1 through 7.0.10 allows attacker to execute unauthorized code or commands via specially crafted packets.
CWE-89
Mar 12, 2024
CVE-2023-42789
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.30
Fortinet Fortiproxy < 2.0.13 - Out-of-Bounds Write
A out-of-bounds write in Fortinet FortiOS 7.4.0 through 7.4.1, 7.2.0 through 7.2.5, 7.0.0 through 7.0.12, 6.4.0 through 6.4.14, 6.2.0 through 6.2.15, FortiProxy 7.4.0, 7.2.0 through 7.2.6, 7.0.0 through 7.0.12, 2.0.0 through 2.0.13 allows attacker to execute unauthorized code or commands via specially crafted HTTP requests.
CWE-787
Mar 12, 2024
CVE-2023-45603
9.0
CRITICAL
1 PoC
EPSS 0.02
Plugin-planet User Submitted Posts - Unrestricted File Upload
Unrestricted Upload of File with Dangerous Type vulnerability in Jeff Starr User Submitted Posts – Enable Users to Submit Posts from the Front End.This issue affects User Submitted Posts – Enable Users to Submit Posts from the Front End: from n/a through 20230902.
CWE-434
Dec 20, 2023
CVE-2023-5074
9.8
CRITICAL
EXPLOITED
1 PoC
NUCLEI
EPSS 0.93
D-Link D-View 8 <v2.0.1.28 - Auth Bypass
Use of a static key to protect a JWT token used in user authentication can allow an for an authentication bypass in D-Link D-View 8 v2.0.1.28
CWE-798
Sep 20, 2023
CVE-2023-37847
9.8
CRITICAL
1 PoC
EPSS 0.00
Xxyopen Novel-plus - SQL Injection
novel-plus v3.6.2 was discovered to contain a SQL injection vulnerability.
CWE-89
Aug 14, 2023
CVE-2023-3824
9.4
CRITICAL
EXPLOITED
RANSOMWARE
4 PoCs
Analysis
EPSS 0.32
PHP <8.0.30-8.2.8 - Buffer Overflow
In PHP version 8.0.* before 8.0.30, 8.1.* before 8.1.22, and 8.2.* before 8.2.8, when loading phar file, while reading PHAR directory entries, insufficient length checking may lead to a stack buffer overflow, leading potentially to memory corruption or RCE.
CWE-119
Aug 11, 2023
CVE-2023-1698
9.8
CRITICAL
EXPLOITED
6 PoCs
Analysis
NUCLEI
EPSS 0.94
WAGO - Privilege Escalation
In multiple products of WAGO a vulnerability allows an unauthenticated, remote attacker to create new users and change the device configuration which can result in unintended behaviour, Denial of Service and full system compromise.
CWE-78
May 15, 2023
CVE-2023-28771
9.8
CRITICAL
KEV
7 PoCs
Analysis
EPSS 0.94
Zyxel ZyWALL/USG <4.73 - RCE
Improper error message handling in Zyxel ZyWALL/USG series firmware versions 4.60 through 4.73, VPN series firmware versions 4.60 through 5.35, USG FLEX series firmware versions 4.60 through 5.35, and ATP series firmware versions 4.60 through 5.35, which could allow an unauthenticated attacker to execute some OS commands remotely by sending crafted packets to an affected device.
CWE-78
Apr 25, 2023
CVE-2023-29017
10.0
CRITICAL
4 PoCs
Analysis
EPSS 0.75
vm2 <3.9.15 - RCE
vm2 is a sandbox that can run untrusted code with whitelisted Node's built-in modules. Prior to version 3.9.15, vm2 was not properly handling host objects passed to `Error.prepareStackTrace` in case of unhandled async errors. A threat actor could bypass the sandbox protections to gain remote code execution rights on the host running the sandbox. This vulnerability was patched in the release of version 3.9.15 of vm2. There are no known workarounds.
CWE-913
Apr 06, 2023
CVE-2023-27034
9.8
CRITICAL
EXPLOITED
1 PoC
NUCLEI
EPSS 0.90
PrestaShop jmsblog 2.5.5 - SQL Injection
PrestaShop jmsblog 2.5.5 was discovered to contain a SQL injection vulnerability.
CWE-89
Mar 23, 2023
CVE-2023-23415
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.04
Microsoft Windows 10 1507 < 10.0.10240.19805 - Heap Buffer Overflow
Internet Control Message Protocol (ICMP) Remote Code Execution Vulnerability
CWE-122
Mar 14, 2023
CVE-2023-50643
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.27
Evernote for MacOS <10.68.2 - RCE
An issue in Evernote Evernote for MacOS v.10.68.2 allows a remote attacker to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments components.
Jan 09, 2024
CVE-2023-45158
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.15
Web2py < 2.24.1 - OS Command Injection
An OS command injection vulnerability exists in web2py 2.24.1 and earlier. When the product is configured to use notifySendHandler for logging (not the default configuration), a crafted web request may execute an arbitrary OS command on the web server using the product.
CWE-78
Oct 16, 2023
CVE-2023-31753
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.04
eNdonesia 8.7 - SQL Injection
SQL injection vulnerability in diskusi.php in eNdonesia 8.7, allows an attacker to execute arbitrary SQL commands via the "rid=" parameter.
CWE-89
Jul 20, 2023
CVE-2023-2732
9.8
CRITICAL
EXPLOITED
4 PoCs
Analysis
NUCLEI
EPSS 0.90
Inspireui Mstore API < 3.9.2 - Authentication Bypass
The MStore API plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.9.2. This is due to insufficient verification on the user being supplied during the add listing REST API request through the plugin. This makes it possible for unauthenticated attackers to log in as any existing user on the site, such as an administrator, if they have access to the user id.
CWE-288
May 25, 2023