Skip to content

exploit family

Model: ExploitBulletin — extends Bulletin; bulletinFamily: exploit.

Family fields

Present in every exploit document, beyond the common base.

No fields beyond the layers above.

Collections

0daydb · ~71 documents → C0daydbBulletin

0daydb is a vulnerability database focused on zero-day exploits, providing advisories and detailed information on vulnerabilities across various software and platforms.

field type description example
affectedSoftware Any Affected software products (name/version/operator).
appercut Any AppercutScanner tool provenance (report pages).
attachments Any Binary/media attachments associated with the document.
exploitpack Any ExploitPack tool provenance (platform, type).
hackapp Any HackApp mobile-app scan provenance.
sourceData str | None Raw, unparsed source body as delivered by the origin. "# Exploit Title: PHP-Fusion 9.03.60 - PHP Ob…
toolHref Any Link to the associated tool/exploit.
w3af Any w3af scanner provenance (plugin type).

canvas · ~620 documents → CanvasBulletin

Canvas is a vulnerability database focused on educational software, providing advisories, CVEs, and security updates for the Canvas LMS platform.

field type description example
affectedSoftware Any Affected software products (name/version/operator).
appercut Any AppercutScanner tool provenance (report pages).
attachments Any Binary/media attachments associated with the document.
exploitpack Any ExploitPack tool provenance (platform, type).
hackapp Any HackApp mobile-app scan provenance.
sourceData Any Raw, unparsed source body as delivered by the origin.
toolHref Any Link to the associated tool/exploit.
w3af Any w3af scanner provenance (plugin type).

d2 · ~180 documents → D2Bulletin

The d2 collection contains vendor-specific advisories and CVEs related to security vulnerabilities in various software products.

field type description example
affectedSoftware Any Affected software products (name/version/operator).
appercut Any AppercutScanner tool provenance (report pages).
attachments Any Binary/media attachments associated with the document.
exploitpack Any ExploitPack tool provenance (platform, type).
hackapp Any HackApp mobile-app scan provenance.
sourceData Any Raw, unparsed source body as delivered by the origin.
toolHref Any Link to the associated tool/exploit.
w3af Any w3af scanner provenance (plugin type).

dsquare · ~740 documents → DsquareBulletin

Dsquare provides vulnerability advisories and CVEs focused on various software products and services from multiple vendors.

field type description example
sourceData str | None Raw, unparsed source body as delivered by the origin. "For the exploit source code contact DSquare …

exploitdb · ~48k documents → ExploitdbBulletin

ExploitDB is a database of exploits and vulnerable software, primarily focusing on various applications and operating systems, providing detailed advisories and proof-of-concept code.

field type description example
attachments Any Binary/media attachments associated with the document.
exploitType str | None Type of exploit (remote, local, webapps, …). "webapps"
osvdbidlist Any Legacy OSVDB identifiers.
sourceData str | None Raw, unparsed source body as delivered by the origin. "# Exploit Title: Langflow 1.9.0 - RCE\r\n# …
sourceHref str | None URL of the raw source object, when it differs from href. "https://www.exploit-db.com/raw/52627"
verified bool | None Whether the exploit/finding was verified. false

exploitpack · ~41k documents → ExploitpackBulletin

ExploitPack is a data source focused on exploits and vulnerabilities, primarily targeting various software products and operating systems.

field type description example
affectedSoftware Any Affected software products (name/version/operator).
appercut Any AppercutScanner tool provenance (report pages).
exploitpack Any ExploitPack tool provenance (platform, type). {"type": "dos", "platform": "windows"}
hackapp Any HackApp mobile-app scan provenance.
sourceData str | None Raw, unparsed source body as delivered by the origin. "# Exploit Title: FlashFXP 4.2.0 Build 1730 -…
toolHref Any Link to the associated tool/exploit.
w3af Any w3af scanner provenance (plugin type).

gitee · ~1.9k documents → GiteeBulletin

Gitee provides vulnerability advisories and CVEs related to open-source projects hosted on its platform, primarily focusing on software security.

field type description example
attachments list | None Binary/media attachments associated with the document. [{"id": "a44c9336-9f5b-3ae9-beef-be217cbaf847…
exploitProbabilityScoring Any Model-based exploit-probability scoring. {"url": "https://gitee.com/hackingboos/webdig…

githubexploit · ~16k documents → GithubexploitBulletin

GitHub Exploit collection includes exploits and proof-of-concept code sourced from GitHub, focusing on various software vulnerabilities across multiple platforms.

field type description example
attachments list | None Binary/media attachments associated with the document. [{"id": "d85da1fe-90b3-3f4c-9823-46598ce6e0a8…
exploitProbabilityScoring Any Model-based exploit-probability scoring. {"url": "https://github.com/danielissaq/Explo…

metasploit · ~7.3k documents → MetasploitBulletin

Metasploit collection includes exploit modules and payloads for various vulnerabilities, primarily targeting software and systems across multiple platforms.

field type description example
attachments Any Binary/media attachments associated with the document.
metasploitHistory Any Metasploit module history.
metasploitReliability Any Reliability rating of the Metasploit module.
sourceData str | None Raw, unparsed source body as delivered by the origin. "# frozen_string_literal: true\n\n##\n# This …
sourceHref str | None URL of the raw source object, when it differs from href. "https://github.com/rapid7/metasploit-framewo…

packetstorm · ~51k documents → PacketstormBulletin

Packet Storm is a security database that provides advisories, exploits, and tools primarily focused on various software and operating systems.

field type description example
attachments Any Binary/media attachments associated with the document.
sourceData str | None Raw, unparsed source body as delivered by the origin. "# Exploit Title: EZ Game Booster v1.0.0 - Cl…
sourceHref str | None URL of the raw source object, when it differs from href. "https://packetstorm.news/download/226151"

pwnmalw · ~46 documents → PwnmalwBulletin

Pwnmalw is a collection from various security sources focused on malware advisories and exploits targeting multiple vendors and products.

field type description example
affectedSoftware Any Affected software products (name/version/operator).
appercut Any AppercutScanner tool provenance (report pages).
attachments Any Binary/media attachments associated with the document.
exploitpack Any ExploitPack tool provenance (platform, type).
hackapp Any HackApp mobile-app scan provenance.
sourceData str | None Raw, unparsed source body as delivered by the origin. "<code>#!/usr/bin/perl\n# VertexNet v1.1.1 Fl…
toolHref Any Link to the associated tool/exploit.
w3af Any w3af scanner provenance (plugin type).

saint · ~4.3k documents → SaintBulletin

SAINT provides vulnerability advisories and CVEs focused on various software products and operating systems, sourced from multiple security vendors.

field type description example
attachments Any Binary/media attachments associated with the document.

seebug · ~57k documents → SeebugBulletin

Seebug is a vulnerability database focused on security advisories and exploits for various software products and systems, primarily sourced from community contributions.

field type description example
attachments Any Binary/media attachments associated with the document.
category Any Category assigned by the source.
has_poc bool | None Whether a proof-of-concept is available. true
sourceData Any Raw, unparsed source body as delivered by the origin.
sourceHref Any URL of the raw source object, when it differs from href.
status str | None Workflow status of the record. "cve"

srcincite · ~290 documents → SrcinciteBulletin

SrcIncite provides vulnerability advisories and CVEs focused on various software products and services, sourced from multiple security vendors.

field type description example
attachments Any Binary/media attachments associated with the document.
sourceData str | None Raw, unparsed source body as delivered by the origin. "#!/usr/bin/env python3\n\"\"\"\nSamsung Magi…
sourceHref str | None URL of the raw source object, when it differs from href. "https://srcincite.io/pocs/src-2025-0006.py.txt"

vulnerlab · ~3.4k documents → VulnerlabBulletin

VulnerLab provides advisories and CVEs focused on various software products and vulnerabilities, sourced from community contributions and research.

field type description example
category str | None Category assigned by the source. "Website Vulnerabilities"
price Any Exploit price (for commercial exploit feeds). {"EUR": "1000-2000"}
sourceData str | None Raw, unparsed source body as delivered by the origin. "Document Title:\r\n===============\r\nETSI W…

wpexploit · ~4.4k documents → WpexploitBulletin

Wpexploit is a vulnerability database focusing on WordPress plugins and themes, providing advisories, CVEs, and exploit details.

field type description example
attachments Any Binary/media attachments associated with the document.
generation int | None Internal generation/version counter of the record. 0
sourceData str | None Raw, unparsed source body as delivered by the origin. "https://example.com/wp-content/plugins/8-deg…

zdt · ~39k documents → ZdtBulletin

ZDT collection from the NVD includes vendor-specific advisories and CVEs focusing on zero-day vulnerabilities across various products.

field type description example
attachments Any Binary/media attachments associated with the document.
category str | None Category assigned by the source. "web applications"
price Any Exploit price (for commercial exploit feeds).
sourceData str | None Raw, unparsed source body as delivered by the origin. "import argparse\nimport requests\nfrom reque…
sourceHref str | None URL of the raw source object, when it differs from href. "https://0day.today/exploit/39945"
verified bool | None Whether the exploit/finding was verified. true

zeroscience · ~1.1k documents → ZeroscienceBulletin

ZeroScience provides detailed advisories and CVEs focused on vulnerabilities in various software products and operating systems.

field type description example
attachments Any Binary/media attachments associated with the document.
exploitType Any Type of exploit (remote, local, webapps, …).
impact Any Impact description/classification.
sourceData str | None Raw, unparsed source body as delivered by the origin. "<html><body><p>SIP Sustainable Irrigation Pl…
sourceHref str | None URL of the raw source object, when it differs from href. "https://www.zeroscience.mk/codes/sip_xss.txt"