Every new exploit,
on the radar.
Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.
monitoring live
CVE-2026-88776
CVE-2026-84520
CVE-2026-51994
CVE-2026-107181
CVE-2026-104587
CVE-2026-104586
CVE-2026-104585
CVE-2026-104584
CVE-2025-34071
CVE-2026-95149
CVE-2026-94597
CVE-2026-28775
CVE-2026-24046
CVE-2026-107406
14 contacts in last 24h
11114CVEs tracked
26004PoC repositories
17New in 24h
360PoC updated in 7 days
filters
360 results
PoCs 51
★ 76
Last push 2026-10-09 (13 hours, 14 minutes ago)
Fetching description from NVD…
Show 8 of 51 repositories
ClickCyber/cve-2022-42889
cve-2022-42889 Text4Shell CVE-2022-42889 affects Apache Commons Text versions 1.5 through 1.9. It has been patched as of Commons Text version 1.10.
★ 40 · 2022-10-18
PoCs 1
★ 0
Last push 2026-10-09 (14 hours, 54 minutes ago)
Discovered 2026-10-10 05:42
Fetching description from NVD…
Show 1 repositories
PoCs 1
★ 0
Last push 2026-10-09 (14 hours, 54 minutes ago)
Discovered 2026-10-10 05:42
Fetching description from NVD…
Show 1 repositories
PoCs 1
★ 0
Last push 2026-10-09 (14 hours, 55 minutes ago)
Discovered 2026-10-10 05:42
Fetching description from NVD…
Show 1 repositories
PoCs 1
★ 0
Last push 2026-10-09 (14 hours, 57 minutes ago)
Discovered 2026-10-10 05:42
Fetching description from NVD…
Show 1 repositories
PoCs 79
★ 788
Last push 2026-10-09 (15 hours, 5 minutes ago)
Fetching description from NVD…
Show 8 of 79 repositories
0xsha/wp2shell
CVE-2026-63030 + CVE-2026-60137 - “wp2shell”: unauthenticated RCE in WordPress core
★ 115 · 2026-07-18
dinosn/wp2shell-lab
Non-destructive detector + Docker lab for wp2shell (CVE-2026-63030 REST /batch/v1 route confusion + CVE-2026-60137 author__not_in SQLi) in WordPress core 6.9.0…
★ 63 · 2026-07-22
NULL200OK/WP2Shell
WP2Shell - CVE-2026-63030 / CVE-2026-60137 This tool exploits a critical SQL injection vulnerability in the WordPress REST API `/wp-json/batch/v1` endpoint, al…
★ 17 · 2026-07-18
47Cid/wp2shell-lab
Educational PoC + lab for CVE-2026-63030 + CVE-2026-60137: pre-auth SQLi in WordPress core via REST batch-route confusion
★ 15 · 2026-07-18
CVSS 8.8 HIGH
CWE-416
Published 2026-09-25
PoCs 1
★ 2
Last push 2026-10-09 (15 hours, 27 minutes ago)
A use-after-free vulnerability was found in QEMU's 9pfs subsystem. A race condition between the main thread and a worker thread when processing concurrent Tlcreate and Twalk requests allows a malicious guest user to craft a fid path containing stale heap data, bypassing directory traversal restrictions and escaping the shared directory boundary. This can lead to arbitrary host file read/write and code execution (VM escape) as the QEMU process user.
Show 1 repositories
PoCs 14
★ 16
Last push 2026-10-09 (15 hours, 37 minutes ago)
Fetching description from NVD…
Show 8 of 14 repositories
azilRababe/CVE-2026-46300
Technical analysis of CVE-2026-46300 (Fragnesia), a Linux kernel page-cache write vulnerability that enables local privilege escalation through SKBFL_SHARED_FR…
★ 2 · 2026-06-22
PoCs 3
★ 7
Last push 2026-10-09 (15 hours, 44 minutes ago)
Fetching description from NVD…
Show 3 repositories
Xewdy444/Netgrave
A tool for retrieving login credentials from Netwave IP cameras using a memory dump vulnerability (CVE-2018-17240)
★ 7 · 2026-10-09
PoCs 68
★ 15
Last push 2026-10-09 (15 hours, 51 minutes ago)
Fetching description from NVD…
Show 8 of 68 repositories
CVSS 8.8 HIGH
CWE-119
Published 2026-09-27
PoCs 1
★ 2
Last push 2026-10-09 (15 hours, 57 minutes ago)
Discovered 2026-10-10 05:42
Memory overflow vulnerability vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway.
This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading to unpredictable or erroneous behavior or Denial of Service
Show 1 repositories
PoCs 13
★ 150
Last push 2026-10-09 (16 hours, 28 minutes ago)
Fetching description from NVD…
Show 8 of 13 repositories
d0rb/CVE-2024-21762
The PoC demonstrates the potential for remote code execution by exploiting the identified security flaw.
★ 12 · 2024-03-17
deFr0ggy/CVE-2024-21762-Checker
This script performs vulnerability scanning for CVE-2024-21762, a Fortinet SSL VPN remote code execution vulnerability. It checks whether a given server is vul…
★ 0 · 2024-03-25
PoCs 12
★ 134
Last push 2026-10-09 (16 hours, 28 minutes ago)
Fetching description from NVD…
Show 8 of 12 repositories
PoCs 31
★ 358
Last push 2026-10-09 (16 hours, 28 minutes ago)
Fetching description from NVD…
Show 8 of 31 repositories
horizon3ai/CVE-2022-40684
A proof of concept exploit for CVE-2022-40684 affecting Fortinet FortiOS, FortiProxy, and FortiSwitchManager
★ 358 · 2022-10-13
PoCs 14
★ 253
Last push 2026-10-09 (16 hours, 28 minutes ago)
Fetching description from NVD…
Show 8 of 14 repositories
jpiechowka/at-doom-fortigate
Fortigate CVE-2018-13379 - Tool to search for vulnerable Fortigate hosts in Rapid7 Project Sonar data anonymously through The Tor network.
★ 5 · 2024-01-23
PoCs 1
★ 0
Last push 2026-10-09 (16 hours, 41 minutes ago)
Discovered 2026-10-10 05:42
Fetching description from NVD…
Show 1 repositories
PoCs 10
★ 73
Last push 2026-10-09 (16 hours, 57 minutes ago)
Fetching description from NVD…
Show 8 of 10 repositories
CVSS 7.1 HIGH
CWE-22, CWE-59
Published 2026-01-21
PoCs 1
★ 0
Last push 2026-10-09 (17 hours, 36 minutes ago)
Discovered 2026-10-09 14:08
Backstage is an open framework for building developer portals. Multiple Scaffolder actions and archive extraction utilities were vulnerable to symlink-based path traversal attacks. An attacker with access to create and execute Scaffolder templates could exploit symlinks to read arbitrary files via the `debug:log` action by creating a symlink pointing to sensitive files (e.g., `/etc/passwd`, configuration files, secrets); delete arbitrary files via the `fs:delete` action by creating symlinks pointing outside the workspace, and write files outside the workspace via archive extraction (tar/zip) containing malicious symlinks. This affects any Backstage deployment where users can create or execute Scaffolder templates. This vulnerability is fixed in `@backstage/backend-defaults` versions 0.12.2, 0.13.2, 0.14.1, and 0.15.0; `@backstage/plugin-scaffolder-backend` versions 2.2.2, 3.0.2, and 3.1.1; and `@backstage/plugin-scaffolder-node` versions 0.11.2 and 0.12.3. Users should upgrade to these versions or later. Some workarounds are available. Follow the recommendation in the Backstage Threat Model to limit access to creating and updating templates, restrict who can create and execute Scaffolder templates using the permissions framework, audit existing templates for symlink usage, and/or run Backstage in a containerized environment with limited filesystem access.
Show 1 repositories
CVSS 7.2 HIGH
CWE-434
Published 2024-06-06
PoCs 1
★ 0
Last push 2026-10-09 (18 hours, 37 minutes ago)
Discovered 2026-10-09 14:08
An arbitrary file upload vulnerability in Monstra CMS v3.0.4 allows attackers to execute arbitrary code via uploading a crafted PHP file.
Show 1 repositories
PoCs 1
★ 3
Last push 2026-10-09 (18 hours, 43 minutes ago)
Fetching description from NVD…
Show 1 repositories
aniketlab/POCO-M7-Plus-Jailbreak
Temporary Root Research on Poco M7 Plus (SM6375) via Qualcomm GBL Exploit (CVE-2026-24088) + GhostLock Kernel Analysis (CVE-2026-43499)
★ 3 · 2026-10-09
CVSS 10.0 CRITICAL
CWE-1188
Published 2026-03-04
PoCs 1
★ 0
Last push 2026-10-09 (19 hours, 13 minutes ago)
Discovered 2026-10-09 14:08
An unauthenticated Remote Code Execution (RCE) vulnerability exists in the SNMP service of International Datacasting Corporation (IDC) SFX Series SuperFlex SatelliteReceiver. The deployment insecurely provisions the `private` SNMP community string with read/write access by default. Because the SNMP agent runs as root, an unauthenticated remote attacker can utilize `NET-SNMP-EXTEND-MIB` directives, abusing the fact that the system runs a vulnerable version of net-snmp pre 5.8, to execute arbitrary operating system commands with root privileges.
Show 1 repositories
PoCs 3
★ 0
Last push 2026-10-09 (20 hours, 37 minutes ago)
Fetching description from NVD…
Show 3 repositories
CVSS 9.5 CRITICAL
CWE-20
Published 2026-09-27
PoCs 12
★ 23
Last push 2026-10-09 (21 hours, 16 minutes ago)
Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway.
This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading to an unauthenticated attacker to execute arbitrary commands.
Show 8 of 12 repositories
CVSS 9.5 CRITICAL
CWE-119
Published 2026-10-08
PoCs 2
★ 0
Last push 2026-10-09 (21 hours, 33 minutes ago)
Discovered 2026-10-09 14:08
Memory overflow vulnerability leading to Remote Code Execution or Denial of Service Vulnerability in NetScaler ADC.
NetScaler ADC or NetScaler Gateway must be configured as a SAML SP or SAML IdP, subject to the following version-specific requirements:
* For the following versions: Applicable only when configured as a SAML IdP:
* NetScaler ADC and NetScaler Gateway between 14.1-73.37 and 14.1-73.41, inclusive
* NetScaler ADC 14.1-FIPS between 14.1-73.37 FIPS and 14.1-73.41 FIPS, inclusive
* NetScaler ADC and NetScaler Gateway between 13.1-64.23 and 13.1-64.28, inclusive
* NetScaler ADC 13.1-FIPS between 13.1-NDcPP 13.1-37.279 and 13.1- 37.282, inclusive
For the following versions: Applicable only when configured as a SAML SP or SAML IdP:
* NetScaler ADC and NetScaler Gateway before 14.1-73.37
* NetScaler ADC 14.1-FIPS before 14.1-73.37 FIPS
* NetScaler ADC and NetScaler Gateway before 13.1-64.23
* NetScaler ADC 13.1-FIPS before13.1-NDcPP 13.1-37.279
Show 2 repositories
CVSS 7.8 HIGH
Published 2022-08-18
PoCs 1
★ 0
Last push 2026-10-09 (22 hours, 22 minutes ago)
Discovered 2026-10-09 14:08
Improper access control in the Intel(R) HAXM software before version 7.7.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
Show 1 repositories
Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.