Every new exploit,
on the radar.
Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.
monitoring live
CVE-2026-95149
CVE-2026-94597
CVE-2026-28775
CVE-2026-24046
CVE-2026-107406
CVE-2025-41249
CVE-2024-36774
CVE-2022-21812
8 contacts in last 24h
11105CVEs tracked
25995PoC repositories
8New in 24h
355PoC updated in 7 days
filters
355 results
PoCs 10
★ 73
Last push 2026-10-09 (13 hours, 55 minutes ago)
Fetching description from NVD…
Show 8 of 10 repositories
PoCs 4
★ 62
Last push 2026-10-09 (14 hours, 10 minutes ago)
Fetching description from NVD…
Show 4 repositories
kikiuuw/CVE-2025-68921
🔍 Identify and understand the local privilege escalation vulnerability (CVE-2025-68921) in Nahimic audio software, impacting many gaming laptops.
★ 0 · 2026-10-09
kikiuuw/kikiuuw.github.io
🔍 Explore the CVE-2025-68921 vulnerability in Nahimic, enabling local privilege escalation to `NT AUTHORITY\SYSTEM`.
★ 0 · 2026-02-19
PoCs 26
★ 430
Last push 2026-10-09 (14 hours, 15 minutes ago)
Fetching description from NVD…
Show 8 of 26 repositories
abdozkaya/rsc-security-auditor
🛡️ Audit your Next.js & React Server Components stack for critical vulnerabilities (CVE-2025-66478, CVE-2025-55184). Detects risks & generates fix commands. 10…
★ 5 · 2025-12-13
PoCs 19
★ 345
Last push 2026-10-09 (14 hours, 23 minutes ago)
Fetching description from NVD…
Show 8 of 19 repositories
Zain3311/CVE-2025-49844
🚨 Exploit the CVE-2025-49844 Redis Lua interpreter UAF vulnerability to execute arbitrary shellcode and gain persistent backdoor access.
★ 2 · 2026-10-09
ksnnd32/redis_exploit
🔍 Explore and test the CVE-2025-49844 (RediShell) vulnerability in Redis with this practical lab environment for secure education and research.
★ 1 · 2026-10-09
PoCs 69
★ 529
Last push 2026-10-09 (14 hours, 27 minutes ago)
Fetching description from NVD…
Show 8 of 69 repositories
1xPwn/CVE-2025-32463
This CVE addresses a vulnerability in sudo versions 1.9.14 to 1.9.17, enabling unauthorized local privilege escalation to root access.
★ 26 · 2026-08-12
CVSS 7.1 HIGH
CWE-22, CWE-59
Published 2026-01-21
PoCs 1
★ 0
Last push 2026-10-09 (14 hours, 35 minutes ago)
Discovered 2026-10-09 14:08
Backstage is an open framework for building developer portals. Multiple Scaffolder actions and archive extraction utilities were vulnerable to symlink-based path traversal attacks. An attacker with access to create and execute Scaffolder templates could exploit symlinks to read arbitrary files via the `debug:log` action by creating a symlink pointing to sensitive files (e.g., `/etc/passwd`, configuration files, secrets); delete arbitrary files via the `fs:delete` action by creating symlinks pointing outside the workspace, and write files outside the workspace via archive extraction (tar/zip) containing malicious symlinks. This affects any Backstage deployment where users can create or execute Scaffolder templates. This vulnerability is fixed in `@backstage/backend-defaults` versions 0.12.2, 0.13.2, 0.14.1, and 0.15.0; `@backstage/plugin-scaffolder-backend` versions 2.2.2, 3.0.2, and 3.1.1; and `@backstage/plugin-scaffolder-node` versions 0.11.2 and 0.12.3. Users should upgrade to these versions or later. Some workarounds are available. Follow the recommendation in the Backstage Threat Model to limit access to creating and updating templates, restrict who can create and execute Scaffolder templates using the permissions framework, audit existing templates for symlink usage, and/or run Backstage in a containerized environment with limited filesystem access.
Show 1 repositories
PoCs 2
★ 0
Last push 2026-10-09 (15 hours, 28 minutes ago)
Fetching description from NVD…
Show 2 repositories
condeDeveloper/arvore-merkle
Arvore de Merkle do zero em C# e .NET 8: provas de pertencimento, esquemas Bitcoin e RFC 6962, e a CVE-2012-2459 demonstrada
★ 0 · 2026-09-25
CVSS 7.2 HIGH
CWE-434
Published 2024-06-06
PoCs 1
★ 0
Last push 2026-10-09 (15 hours, 35 minutes ago)
Discovered 2026-10-09 14:08
An arbitrary file upload vulnerability in Monstra CMS v3.0.4 allows attackers to execute arbitrary code via uploading a crafted PHP file.
Show 1 repositories
PoCs 1
★ 3
Last push 2026-10-09 (15 hours, 41 minutes ago)
Fetching description from NVD…
Show 1 repositories
aniketlab/POCO-M7-Plus-Jailbreak
Temporary Root Research on Poco M7 Plus (SM6375) via Qualcomm GBL Exploit (CVE-2026-24088) + GhostLock Kernel Analysis (CVE-2026-43499)
★ 3 · 2026-10-09
CVSS 10.0 CRITICAL
CWE-1188
Published 2026-03-04
PoCs 1
★ 0
Last push 2026-10-09 (16 hours, 11 minutes ago)
Discovered 2026-10-09 14:08
An unauthenticated Remote Code Execution (RCE) vulnerability exists in the SNMP service of International Datacasting Corporation (IDC) SFX Series SuperFlex SatelliteReceiver. The deployment insecurely provisions the `private` SNMP community string with read/write access by default. Because the SNMP agent runs as root, an unauthenticated remote attacker can utilize `NET-SNMP-EXTEND-MIB` directives, abusing the fact that the system runs a vulnerable version of net-snmp pre 5.8, to execute arbitrary operating system commands with root privileges.
Show 1 repositories
PoCs 158
★ 1702
Last push 2026-10-09 (16 hours, 28 minutes ago)
Fetching description from NVD…
Show 8 of 158 repositories
hmascs/KSuRoot
KSuRoot 4.0.0 — 基于 CVE-2026-43499(GhostLock) 的一键 KernelSU 提权工具。多内核支持:6.1 / 6.6 / 6.12 三族各有专属基线,另有 50 档上游内核适配;多机型动态库内置:122 条厂商载荷(vivo/iQOO、小米、三星、Pixel 等)离线可用、按机…
★ 235 · 2026-10-02
PoCs 3
★ 0
Last push 2026-10-09 (17 hours, 35 minutes ago)
Fetching description from NVD…
Show 3 repositories
PoCs 456
★ 3426
Last push 2026-10-09 (17 hours, 47 minutes ago)
Fetching description from NVD…
Show 8 of 456 repositories
fullhunt/log4j-scan
A fully automated, accurate, and extensive scanner for finding log4j RCE CVE-2021-44228
★ 3426 · 2022-11-23
f0ng/log4j2burpscanner
CVE-2021-44228 Log4j2 BurpSuite Scanner,Customize ceye.io api or other apis,including internal networks
★ 841 · 2023-06-13
mergebase/log4j-detector
A public open sourced tool. Log4J scanner that detects vulnerable Log4J versions (CVE-2021-44228, CVE-2021-45046, etc) on your file-system within any applicat…
★ 640 · 2022-03-10
PoCs 8
★ 3
Last push 2026-10-09 (18 hours, 12 minutes ago)
Fetching description from NVD…
Show 8 repositories
aarif450/Zapscape
Guest-to-host KVM/x86 escape exploiting CVE-2026-64561, delivering a full PoC chain and analysis for security researchers.
★ 2 · 2026-10-09
HackSpeak/CVE-2026-64561
Zapscape (CVE-2026-64561) KVM/x86 shadow MMU UAF guest-to-host escape PoC mirror — V4bel/@v4bel, MIT; for authorized security testing
★ 2 · 2026-08-08
suominen/zapscape
Tracking Zapscape (CVE-2026-64561), the KVM/x86 shadow-MMU guest-to-host escape
★ 0 · 2026-09-27
aarif450/aarif450.github.io
Exploit KVM/x86 guest-to-host escape CVE-2026-64561 with Zapscape, a proof-of-concept demonstrating hypervisor vulnerability.
★ 0 · 2026-08-09
hitechcloud-vietnam/Zapscape
Guest-to-host KVM/x86 escape exploiting CVE-2026-64561, delivering a full PoC chain and analysis for security researchers.
★ 0 · 2026-10-03
CVSS 9.5 CRITICAL
CWE-20
Published 2026-09-27
PoCs 12
★ 23
Last push 2026-10-09 (18 hours, 15 minutes ago)
Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway.
This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading to an unauthenticated attacker to execute arbitrary commands.
Show 8 of 12 repositories
PoCs 1
★ 0
Last push 2026-10-09 (18 hours, 26 minutes ago)
Fetching description from NVD…
Show 1 repositories
PoCs 5
★ 4
Last push 2026-10-09 (18 hours, 27 minutes ago)
Fetching description from NVD…
Show 5 repositories
tracyliving606/RegPwn
Exploit Windows local privilege escalation on clients and servers using tested code for CVE-2026-24291 across multiple Windows versions
★ 4 · 2026-10-09
PoCs 2
★ 5
Last push 2026-10-09 (18 hours, 31 minutes ago)
Fetching description from NVD…
Show 2 repositories
CVSS 9.5 CRITICAL
CWE-119
Published 2026-10-08
PoCs 2
★ 0
Last push 2026-10-09 (18 hours, 31 minutes ago)
Discovered 2026-10-09 14:08
Memory overflow vulnerability leading to Remote Code Execution or Denial of Service Vulnerability in NetScaler ADC.
NetScaler ADC or NetScaler Gateway must be configured as a SAML SP or SAML IdP, subject to the following version-specific requirements:
* For the following versions: Applicable only when configured as a SAML IdP:
* NetScaler ADC and NetScaler Gateway between 14.1-73.37 and 14.1-73.41, inclusive
* NetScaler ADC 14.1-FIPS between 14.1-73.37 FIPS and 14.1-73.41 FIPS, inclusive
* NetScaler ADC and NetScaler Gateway between 13.1-64.23 and 13.1-64.28, inclusive
* NetScaler ADC 13.1-FIPS between 13.1-NDcPP 13.1-37.279 and 13.1- 37.282, inclusive
For the following versions: Applicable only when configured as a SAML SP or SAML IdP:
* NetScaler ADC and NetScaler Gateway before 14.1-73.37
* NetScaler ADC 14.1-FIPS before 14.1-73.37 FIPS
* NetScaler ADC and NetScaler Gateway before 13.1-64.23
* NetScaler ADC 13.1-FIPS before13.1-NDcPP 13.1-37.279
Show 2 repositories
PoCs 14
★ 141
Last push 2026-10-09 (18 hours, 33 minutes ago)
Fetching description from NVD…
Show 8 of 14 repositories
SecureWithUmer/CVE-2026-20841
PoC for a remote code execution flaw in Windows Notepad's markdown renderer. The markdown engine does not restrict URL protocols, allowing arbitrary protocol h…
★ 1 · 2026-02-12
PoCs 13
★ 150
Last push 2026-10-09 (18 hours, 51 minutes ago)
Fetching description from NVD…
Show 8 of 13 repositories
d0rb/CVE-2024-21762
The PoC demonstrates the potential for remote code execution by exploiting the identified security flaw.
★ 12 · 2024-03-17
deFr0ggy/CVE-2024-21762-Checker
This script performs vulnerability scanning for CVE-2024-21762, a Fortinet SSL VPN remote code execution vulnerability. It checks whether a given server is vul…
★ 0 · 2024-03-25
PoCs 12
★ 134
Last push 2026-10-09 (18 hours, 51 minutes ago)
Fetching description from NVD…
Show 8 of 12 repositories
PoCs 31
★ 358
Last push 2026-10-09 (18 hours, 51 minutes ago)
Fetching description from NVD…
Show 8 of 31 repositories
horizon3ai/CVE-2022-40684
A proof of concept exploit for CVE-2022-40684 affecting Fortinet FortiOS, FortiProxy, and FortiSwitchManager
★ 358 · 2022-10-13
PoCs 14
★ 253
Last push 2026-10-09 (18 hours, 51 minutes ago)
Fetching description from NVD…
Show 8 of 14 repositories
jpiechowka/at-doom-fortigate
Fortigate CVE-2018-13379 - Tool to search for vulnerable Fortigate hosts in Rapid7 Project Sonar data anonymously through The Tor network.
★ 5 · 2024-01-23
PoCs 2
★ 144
Last push 2026-10-09 (18 hours, 57 minutes ago)
Fetching description from NVD…
Show 2 repositories
rkrakesh524/oob_entry
oob_entry tfp0 kernel exploit for armv7 iOS (iOS 3.0–10.3.4), using CVE-2023-32434. We will publish a write-up detailing the methods in the coming weeks. 🐙
★ 0 · 2026-10-09
Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.