PoC Archive
home
pocs
watchlist
search
773
PoCs
|
119 CISA KEV
GitHub
home
pocs
watchlist
search
tag
Cwe-288
WordPress Simple Link Directory Unauthenticated Password Reset to Admin Takeover (CVE-2025-49901)
new
CVE-2025-49901
web
Patched
CVE-2025-49901
web
CRITICAL
9.8
Patched
2026-07-06
WordPress Mobile Builder Plugin JWT Authentication Bypass to Admin Account Creation (CVE-2025-68860)
new
CVE-2025-68860
web
Unpatched
CVE-2025-68860
web
CRITICAL
9.8
Unpatched
2026-07-06
FortiWeb `cgi-bin/fwbcgi` Path Traversal Authentication Bypass Leading to Rogue Admin Creation (CVE-2025-64446)
new
KEV
EPSS 92%
CVE-2025-64446
network
Unverified
CVE-2025-64446
network
CRITICAL
9.8
Unverified
2026-07-06
NVIDIA Triton Inference Server SageMaker Auth Bypass to Unauthenticated RCE (CVE-2026-24207)
new
CVE-2026-24207 (sibling: CVE-2026-24206, Vertex AI, analysis only)
network
Patched
CVE-2026-24207
network
CRITICAL
9.8
Patched
2026-07-05
Fortinet FortiOS / FortiProxy Authentication Bypass (CVE-2024-55591)
new
KEV
RW
EPSS 98%
CVE-2024-55591 (Fortinet FG-IR-24-535)
web
Unverified
CVE-2024-55591
web
CRITICAL
9.6
Unverified
2026-05-16