Critical Vulnerabilities with Public Exploits
Updated 1h agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
4,103 results
Clear all
CVE-2023-43481
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.01
Shenzhen TCL Browser TV Web BrowseHere <6.65.022 - XSS
An issue in Shenzhen TCL Browser TV Web BrowseHere (aka com.tcl.browser) 6.65.022_dab24cc6_231221_gp allows a remote attacker to execute arbitrary JavaScript code via the com.tcl.browser.portal.browse.activity.BrowsePageActivity component.
CWE-94
Dec 27, 2023
CVE-2023-51951
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.03
Stock Management System 1.0 - RCE
SQL Injection vulnerability in Stock Management System 1.0 allows a remote attacker to execute arbitrary code via the id parameter in the manage_bo.php file.
CWE-89
Feb 05, 2024
CVE-2023-31714
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.01
Chitor-CMS <1.1.2 - SQL Injection
Chitor-CMS before v1.1.2 was discovered to contain multiple SQL injection vulnerabilities.
CWE-89
Aug 30, 2023
CVE-2023-32314
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.70
Vm2 < 3.9.18 - Injection
vm2 is a sandbox that can run untrusted code with Node's built-in modules. A sandbox escape vulnerability exists in vm2 for versions up to and including 3.9.17. It abuses an unexpected creation of a host object based on the specification of `Proxy`. As a result a threat actor can bypass the sandbox protections to gain remote code execution rights on the host running the sandbox. This vulnerability was patched in the release of version `3.9.18` of `vm2`. Users are advised to upgrade. There are no known workarounds for this vulnerability.
CWE-74
May 15, 2023
CVE-2023-48974
9.6
CRITICAL
2 PoCs
Analysis
EPSS 0.07
Axigen WebMail <10.3.3.61 - XSS
Cross Site Scripting vulnerability in Axigen WebMail prior to 10.3.3.61 allows a remote attacker to escalate privileges via a crafted script to the serverName_input parameter.
CWE-79
Feb 08, 2024
CVE-2023-36645
9.1
CRITICAL
1 PoC
Analysis
EPSS 0.00
ITB-GmbH TradePro <9.5 - SQL Injection
SQL injection vulnerability in ITB-GmbH TradePro v9.5, allows remote attackers to run SQL queries via oordershow component in customer function.
CWE-94
Apr 04, 2024
CVE-2023-48084
9.8
CRITICAL
EXPLOITED
2 PoCs
Analysis
NUCLEI
EPSS 0.82
Nagios XI < 5.11.3 - SQL Injection
Nagios XI before version 5.11.3 was discovered to contain a SQL injection vulnerability via the bulk modification tool.
CWE-89
Dec 14, 2023
CVE-2023-29478
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.17
Bibliocraft < 2.4.6 - Path Traversal
BiblioCraft before 2.4.6 does not sanitize path-traversal characters in filenames, allowing restricted write access to almost anywhere on the filesystem. This includes the Minecraft mods folder, which results in code execution.
CWE-22
Apr 07, 2023
CVE-2023-3047
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.09
TMT Lockcell <15 - SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TMT Lockcell allows SQL Injection.This issue affects Lockcell: before 15.
CWE-89
Jun 13, 2023
CVE-2023-46456
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.14
GL.iNET GL-AR300M <3.216 - Command Injection
In GL.iNET GL-AR300M routers with firmware 3.216 it is possible to inject arbitrary shell commands through the OpenVPN client file upload functionality.
CWE-74
Dec 12, 2023
CVE-2023-46454
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.16
GL.iNET GL-AR300M <4.3.7 - Command Injection
In GL.iNET GL-AR300M routers with firmware v4.3.7, it is possible to inject arbitrary shell commands through a crafted package name in the package information functionality.
CWE-78
Dec 12, 2023
CVE-2023-2437
9.8
CRITICAL
EXPLOITED
1 PoC
Analysis
NUCLEI
EPSS 0.75
Userpro < 5.1.1 - Authentication Bypass
The UserPro plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 5.1.1. This is due to insufficient verification on the user being supplied during a Facebook login through the plugin. This makes it possible for unauthenticated attackers to log in as any existing user on the site, such as an administrator, if they have access to the email. An attacker can leverage CVE-2023-2448 and CVE-2023-2446 to get the user's email address to successfully exploit this vulnerability.
CWE-287
Nov 22, 2023
CVE-2023-51801
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.07
Simple Student Attendance System <1.0 - RCE
SQL Injection vulnerability in the Simple Student Attendance System v.1.0 allows a remote attacker to execute arbitrary code via a crafted payload to the id parameter in the student_form.php and the class_form.php pages.
CWE-94
Feb 29, 2024
CVE-2023-39320
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.01
GO < 1.21.1 - Code Injection
The go.mod toolchain directive, introduced in Go 1.21, can be leveraged to execute scripts and binaries relative to the root of the module when the "go" command was executed within the module. This applies to modules downloaded using the "go" command from the module proxy, as well as modules downloaded directly using VCS software.
CWE-94
Sep 08, 2023
CVE-2023-5204
9.8
CRITICAL
1 PoC
Analysis
NUCLEI
EPSS 0.87
Quantumcloud Wpbot < 4.9.1 - SQL Injection
The ChatBot plugin for WordPress is vulnerable to SQL Injection via the $strid parameter in versions up to, and including, 4.8.9 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.
CWE-89
Oct 19, 2023
CVE-2023-48777
9.9
CRITICAL
EXPLOITED
1 PoC
Analysis
NUCLEI
EPSS 0.91
Elementor Website Builder <3.18.1 - Unrestricted Upload
Unrestricted Upload of File with Dangerous Type vulnerability in Elementor.Com Elementor Website Builder.This issue affects Elementor Website Builder: from 3.3.0 through 3.18.1.
CWE-434
Mar 26, 2024
CVE-2023-38965
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Lost and Found Information System 1.0 - Privilege Escalation
Lost and Found Information System 1.0 allows account takeover via username and password to a /classes/Users.php?f=save URI.
CWE-639
Nov 03, 2023
CVE-2023-27746
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.10
Blackvue Dr750-2ch Lte Firmware - Brute Force
BlackVue DR750-2CH LTE v.1.012_2022.10.26 was discovered to contain a weak default passphrase which can be easily cracked via a brute force attack if the WPA2 handshake is intercepted.
CWE-307
Apr 13, 2023
CVE-2023-6036
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.56
Web3 WordPress <3.0.0 - Auth Bypass
The Web3 WordPress plugin before 3.0.0 is vulnerable to an authentication bypass due to incorrect authentication checking in the login flow in functions 'handle_auth_request' and 'hadle_login_request'. This makes it possible for non authenticated attackers to log in as any existing user on the site, such as an administrator, if they have access to the username.
CWE-863
Feb 12, 2024
CVE-2023-47883
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.01
Vladymix TV Browser < 4.5.1 - Code Injection
The com.altamirano.fabricio.tvbrowser TV browser application through 4.5.1 for Android is vulnerable to JavaScript code execution via an explicit intent due to an exposed MainActivity.
CWE-94
Dec 27, 2023