Improper access control in the Intel(R) HAXM software before version 7.7.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
Every new exploit,
on the radar.
Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.
monitoring live355 results
Fetching description from NVD…
Show 3 repositories
A tool for retrieving login credentials from Netwave IP cameras using a memory dump vulnerability (CVE-2018-17240)
Bash exploit for the CVE-2018-17240 (Netwave Cameras Memory Leak)
CVE-2018-17240
Fetching description from NVD…
Show 8 of 12 repositories
Netlogon and CLDAP vulnerability research with a proof of concept.
CVE-2026-41089 Netlogon RCE PoC — security research, vulnerability validation & defensive testing.
Technical analysis and Proof-of-Concept (PoC) for CVE-2026-41089, a critical unauthenticated Remote Code Execution (RCE) vulnerability in the Windows Netlogon …
CVE-2026-41089 checker: unauthenticated, non-destructive detection for the Netlogon CLDAP stack buffer overflow (CVSS 9.8). Reports whether a domain controller…
CVE-2026-41089 是 Windows Netlogon 服务中一个关键的远程代码执行漏洞,单包即可崩溃 lsass.exe,导致域控制器在约 30-60 秒内重启。此期间该 DC 的所有域认证将失败。
CVE-2026-41089
🛡️ Official AI Security Tool diagnostic module for CVE-2026-41089 (Windows Netlogon Stack Buffer Overflow RCE). Features technical writeup, attack architecture…
Scan Windows Domain Controllers for CVE-2026-41089 to detect unauthenticated remote code execution vulnerabilities in the Netlogon service.
Fetching description from NVD…
Show 4 repositories
CVE-2026-57827 — RSFiles! Joomla Component Unauthenticated File Upload RCE. Split-controller upload bypass. CVSS 9.8 | CWE-434 | com_rsfiles < 1.17.12
Unauthenticated File Upload → RCE PoC for CVE-2026-57827 (RSFiles! Joomla < 1.17.12). Authorized security research use only.
Joomla RSFiles 未授权文件上传CVE-2026-57827检测&利用脚本
Demonstrate the unauthenticated remote code execution vulnerability in the RSFiles! Joomla component through an arbitrary file upload.
Fetching description from NVD…
Show 8 of 11 repositories
Manage and recover BitLocker encrypted drives with this tool for Windows 11 recovery key management and educational study of CVE-2026-45585.
BitLocker TPM+PIN Hardening Against CVE-2026-45585 (YellowKey)
YellowKey BitLocker recovery audits CVE-2026-45585: yellowkey github, TPM, recovery key backup. Windows 10/11 CLI GUI, portable audit tool for volumes you own.…
Intune Remediation package for the CVE-2026-45585 YellowKey BitLocker/WinRE bypass mitigation described in the provided procedure. This package removes `autof…
CVE-2026-45585
A small script to apply Yellowkey mitigation based on CVE-2026-45585 instructions
YellowKey | BitLocker Bypass Vulnerability (CVE-2026-45585)
YellowKey | BitLocker Bypass CVE-2026-45585 | Detect & Fix Automatically via Microsoft Intune
Fetching description from NVD…
Show 7 repositories
🐱💻 Poc of CVE-2019-7238 - Nexus Repository Manager 3 Remote Code Execution 🐱💻
Nexus Repository Manager 3 Remote Code Execution without authentication < 3.15.0
Some debug notes and exploit(not blind)
CVE-2019-7238 Nexus RCE漏洞图形化一键检测工具。CVE-2019-7238 Nexus RCE Vul POC Tool.
nmap scripts for vuln cve-2020-0796 & cve-2019-7238 & cve2019-11580 & cve2017-6327
Vulhub nexus/CVE-2019-7238: Nexus Repository Manager 3 JEXL Injection RCE (CVE-2019-7238), run with Isoloom
Fetching description from NVD…
Show 8 of 33 repositories
Exploit for CVE-2021-3129
Laravel <= v8.4.2 debug mode: Remote code execution (CVE-2021-3129)
Laravel RCE Exploit PoC - CVE-2021-3129 (user-friendly with automatic log path detection)
Laravel debug rce
Exploit for CVE-2021-3129
Laravel Debug mode RCE漏洞(CVE-2021-3129)poc / exp
Fetching description from NVD…
Show 8 repositories
CVE-2026-10520
CVE-2026-10520 and CVE-2026-10523
Root-Level RCE via OS Command Injection in Ivanti Sentry
Patch: OGNL injection (Apache Struts)
Exploit for CVE-2026-10520 | Ivanti Sentry - OS Command Injection
Fetching description from NVD…
Show 8 of 40 repositories
CVE-2026-23744 - Versions 1.4.2 and earlier of MCPJam inspector are vulnerable to remote code execution (RCE). Because the tool listens on 0.0.0.0 by default, …
MCPJam inspector contains a remote code execution
A proof-of-concept exploit for CVE-2026-23744 - MCPJam Inspector Remote Code Execution (RCE) vulnerability. This tool demonstrates the security flaw in version…
CVE-2026-23744 - MCPJam inspector Remote-Code-Execution: Proof Of Concept (POC
MCPJam Inspector is a local-first development platform for MCP servers. In versions 1.4.2 (and earlier), a RCE flaw lets attackers send crafted HTTP request th…
CVE-2026-23744 is an unauthenticated command injection in MCPJam Inspector ≤1.4.2 via /api/mcp/connect. This POC exploits it by sending a crafted JSON payload …
Exploit to MCPJam Inspector <=1.4.2
PoC for CVE-2026-23744, demonstrating an unauthenticated RCE in MCPJam Inspector (<= 1.4.2).
Fetching description from NVD…
Show 8 of 325 repositories
Copy Fail (CVE-2026-31431): 9-year-old Linux kernel LPE found by Theori's Xint Code
Cross-platform C port of the Copy Fail Linux LPE (CVE-2026-31431). Disclosed 2026-04-29 by Theori / Xint.
A Go implementation of copyfail (CVE-2026-31431)
PoC: fully unprivileged container escape to node-level code execution on Kubernetes via CVE-2026-31431 page-cache corruption + shared image layers. Validated o…
CVE-2026-31431 纯文件利用
Most Linux LPEs need a race window or a kernel-specific offset. Copy Fail is a straight-line logic flaw, it needs neither. The same 732-byte Python script (or …
CVE-2026-31431-killed page-cache exploit — code exec into containers sharing the same image layer
Minimal no-libc Linux x86_64 ELF PoC build for Copy Fail (CVE-2026-31431)
Fetching description from NVD…
Show 3 repositories
PoC and write-up for CVE-2026-31802, a symlink path traversal vulnerability in npm tar enabling arbitrary file overwrite outside the extraction directory.
Demonstrate and analyze the CVE-2026-31802 path traversal vulnerability in npm tar, enabling arbitrary file overwrite via symlink extraction.
Scanner: CVE-2026-31802 npm tar path traversal — Python checker for arbitrary file write via npm pack
SQL injection vulnerability in Zabbix before 2.2.14 and 3.0 before 3.0.4 allows remote attackers to execute arbitrary SQL commands via the toggle_ids array parameter in latest.php.
Show 1 repositories
Vulhub zabbix/CVE-2016-10134: Zabbix latest.php and jsrpc.php SQL Injection (CVE-2016-10134), run with Isoloom
Fetching description from NVD…
Show 8 of 42 repositories
CVE-2019-15107 Webmin RCE (unauthorized)
poc exploit for webmin backdoor (CVE-2019-15107 and CVE-2019-15231)
CVE-2019-15107 exploit
Webmin <=1.920 RCE
CVE-2019-15107 webmin python3
Remote Code Execution Vulnerability in Webmin
CVE-2019–15107 - Unauthenticated RCE Webmin <=1.920
Fetching description from NVD…
Show 8 of 37 repositories
Exphub[漏洞利用脚本库] 包括Webloigc、Struts2、Tomcat、Nexus、Solr、Jboss、Drupal的漏洞利用脚本,最新添加CVE-2020-14882、CVE-2020-11444、CVE-2020-10204、CVE-2020-10199、CVE-2020-1938、CVE-2020…
CVE-2020–14882、CVE-2020–14883
CVE-2020-14882_ALL综合利用工具,支持命令回显检测、批量命令回显、外置xml无回显命令执行等功能。
CVE-2020–14882 by Jang
CVE-2020-14882/14883/14750
CVE-2020-14882 Weblogic-Exp
CodeTest信息收集和漏洞利用工具,可在进行渗透测试之时方便利用相关信息收集脚本进行信息的获取和验证工作,漏洞利用模块可选择需要测试的漏洞模块,或者选择所有模块测试,包含CVE-2020-14882, CVE-2020-2555等,可自己收集脚本后按照模板进行修改。
CVE-2020-14882批量验证工具。
Fetching description from NVD…
Show 8 of 30 repositories
Java反序列化漏洞利用工具V1.0 Java反序列化相关漏洞的检查工具,采用JDK 1.8+NetBeans8.2开发,软件运行必须安装JDK 1.8或者以上版本。 支持:weblogic xml反序列化漏洞 CVE-2017-10271/CNVD-C-2019-48814/CVE-2019-2725检查。
WebLogic Exploit
Oracle WebLogic WLS-WSAT Remote Code Execution Exploit (CVE-2017-10271)
WebLogic CNVD-C-2019_48814 CVE-2017-10271 Scan By 7kbstorm
CVE-2019-2725poc汇总 更新绕过CVE-2017-10271补丁POC
CVE-2017-10271 WEBLOGIC RCE (TESTED)
WebLogic Honeypot is a low interaction honeypot to detect CVE-2017-10271 in the Oracle WebLogic Server component of Oracle Fusion Middleware. This is a Remote …
CVE-2017-10271 POC
Fetching description from NVD…
Show 2 repositories
Vulhub uwsgi/CVE-2018-7490: uWSGI PHP Plugin Path Traversal (CVE-2018-7490), run with Isoloom
Fetching description from NVD…
Show 8 of 9 repositories
CVE-2020-13942 unauthenticated RCE POC through MVEL and OGNL injection
CVE-2020-13942 POC + Automation Script
CVE-2020-13942 Apache Unomi 远程代码执行漏洞脚getshell
Apache Unomi CVE-2020-13942: RCE Vulnerabilities
Fetching description from NVD…
Show 8 of 40 repositories
Ghostcat read file/code execute,CNVD-2020-10487(CVE-2020-1938)
tomcat自动化漏洞扫描利用工具,支持批量弱口令检测、后台部署war包getshell、CVE-2017-12615 文件上传、CVE-2020-1938/CNVD-2020-10487 文件包含
Cnvd-2020-10487 / cve-2020-1938, scanner tool
Tomcat常见漏洞GUI利用工具。CVE-2017-12615 PUT文件上传漏洞、tomcat-pass-getshell 弱认证部署war包、弱口令爆破、CVE-2020-1938 Tomcat AJP文件读取/包含
Tomcat的文件包含及文件读取漏洞利用POC
CVE-2020-1938漏洞复现
Fetching description from NVD…
Show 8 of 18 repositories
tomcat自动化漏洞扫描利用工具,支持批量弱口令检测、后台部署war包getshell、CVE-2017-12615 文件上传、CVE-2020-1938/CNVD-2020-10487 文件包含
Tomcat常见漏洞GUI利用工具。CVE-2017-12615 PUT文件上传漏洞、tomcat-pass-getshell 弱认证部署war包、弱口令爆破、CVE-2020-1938 Tomcat AJP文件读取/包含
POC Exploit for Apache Tomcat 7.0.x CVE-2017-12615 PUT JSP vulnerability.
just a python script for cve-2017-12615
Tomcat PUT方法任意文件写入(CVE-2017-12615)exp
CVE-2017-12617 and CVE-2017-12615 for tomcat server
CVE-2017-12615 Tomcat RCE (TESTED)
tomcat-put-cve-2017-12615
Fetching description from NVD…
Show 4 repositories
Supervisord远程命令执行漏洞脚本
Standalone Python ≥3.6 RCE Unauthenticated exploit for Supervisor 3.0a1 to 3.3.2
Lab 3: Supervisord XML-RPC Remote Code Execution (CVE-2017-11610) - Writeup and Exploit
Vulhub supervisor/CVE-2017-11610: Supervisord XML-RPC RCE (CVE-2017-11610), run with Isoloom
Fetching description from NVD…
Show 8 of 15 repositories
Basic PoC for CVE-2023-27524: Insecure Default Configuration in Apache Superset
Apahce-Superset身份认证绕过漏洞(CVE-2023-27524)检测工具
Apache Superset Auth Bypass (CVE-2023-27524)
Apache Superset Auth Bypass Vulnerability CVE-2023-27524.
Perform With Apache-SuperSet Leaked Token [CSRF]
Apache Superset - Authentication Bypass
Tool for finding CVE-2023-27524 (Apache Superset - Authentication Bypass)
Fetching description from NVD…
Show 8 of 99 repositories
Spring4Shell Proof Of Concept/And vulnerable application CVE-2022-22965
Dockerized Spring4Shell (CVE-2022-22965) PoC application and exploit
burpsuite 的Spring漏洞扫描插件。SpringVulScan:支持检测:路由泄露|CVE-2022-22965|CVE-2022-22963|CVE-2022-22947|CVE-2016-4977
Spring4Shell - Spring Core RCE - CVE-2022-22965
CVE-2022-22965\Spring-Core-RCE核弹级别漏洞的rce图形化GUI一键利用工具,基于JavaFx开发,图形化操作更简单,提高效率。
Spring Framework RCE (CVE-2022-22965) Nmap (NSE) Checker (Non-Intrusive)
SpringFramework 远程代码执行漏洞CVE-2022-22965
CVE-2022-22965写入冰蝎webshell脚本
Fetching description from NVD…
Show 8 of 30 repositories
spring-cloud / spring-cloud-function,spring.cloud.function.routing-expression,RCE,0day,0-day,POC,EXP,CVE-2022-22963
CVE-2022-22963 PoC
CVE-2022-22963 is a vulnerability in the Spring Cloud Function Framework for Java that allows remote code execution. This python script will verify if the vuln…
Spring Cloud Function Vulnerable Application / CVE-2022-22963
CVE-2022-22963 Spring-Cloud-Function-SpEL_RCE_exploit
This includes CVE-2022-22963, a Spring SpEL / Expression Resource Access Vulnerability, as well as CVE-2022-22965, the spring-webmvc/spring-webflux RCE termed …
Fetching description from NVD…
Show 8 of 62 repositories
CVE-2022-22947
CVE-2022-22947 注入Godzilla内存马
Spring Cloud Gateway 远程代码执行漏洞Exp Spring_Cloud_Gateway_RCE_Exp-CVE-2022-22947
CVE-2022-22947批量
Spring Cloud Gateway Actuator API SpEL表达式注入命令执行(CVE-2022-22947) 注入哥斯拉内存马
Spring Cloud Gateway < 3.0.7 & < 3.1.1 Code Injection (RCE)
CVE-2022-22947_EXP,CVE-2022-22947_RCE,CVE-2022-22947反弹shell,CVE-2022-22947 getshell
SpringCloudGatewayRCE - CVE-2022-22947 / Code By:Tas9er
Fetching description from NVD…
Show 7 repositories
Spring Data Commons RCE 远程命令执行漏洞
POC for CVE-2018-1273
Environment for CVE-2018-1273 (Spring Data Commons)
cve-2018-1273
Vulhub spring/CVE-2018-1273: Spring Data Commons SpEL Injection (CVE-2018-1273), run with Isoloom
Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.