Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11114CVEs tracked
26004PoC repositories
17New in 24h
360PoC updated in 7 days
filters
Reset
All New Fresh PoC Hot Multi PoC Critical High

360 results

CVE-2026-5430
FRESH PoC
PoCs 4 ★ 1 Last push 2026-10-08 (1 day, 9 hours ago)

Fetching description from NVD…

Show 4 repositories
abraxas/CVE-2026-5430

CVE-2026-5430 - WSO2 API Manager - Critical 10.0 - Unauthenticated Account Takeover - WSO2 API Control Plane, WSO2 API Manager, WSO2 Traffic Manager, WSO2 Univ…

★ 1 · 2026-10-07
HORKimhab/CVE-2026-5430

CVE-2026-5430 - Draft or TODO

★ 0 · 2026-09-16
davidvrns/CVE-2026-5430-WSO2

Detection PoC for CVE-2026-5430 — unauthenticated JWT algorithm bypass (CVSS 10.0) affecting WSO2 API Manager 4.1.0–4.6.0. Read-only assessment tool with patch…

★ 0 · 2026-10-08
getdrive/wso2_cve-2026-5430_lab

Уязвимая лаборатория WSO2 API Manager 4.5.0 в Docker, сканер и эксплойт для CVE-2026-5430 (обход аутентификации через поддельный HS256 JWT)

★ 0 · 2026-10-08
CVE-2026-49881
FRESH PoCHOT
PoCs 3 ★ 453 Last push 2026-10-08 (1 day, 11 hours ago)

Fetching description from NVD…

Show 3 repositories
LSPosed/LSPromise

Android complete exploit chain that enables privilege escalation from a local untrusted app to root/kernel, combination of CVE-2026-49881 and CVE-2026-43284

★ 453 · 2026-09-09
Supersonic/TLPE

CVE-2026-49881, using insecure context creation in Android 17's Telecom service to execute arbitrary code as UID 1000 system_server from an unprivileged app

★ 104 · 2026-09-09
Lewason/mhl-off-hook-writeup

a challenge for a CVE-2026-49881

★ 0 · 2026-10-08
CVE-2026-67279
FRESH PoC
PoCs 3 ★ 4 Last push 2026-10-08 (1 day, 11 hours ago)

Fetching description from NVD…

Show 3 repositories
HackSpeak/CVE-2026-67279

MikroTrick (MikroTik RouterOS SSH takeover chain) PoC mirror - CVE-2026-67279 + CVE-2026-86060 (+67276); for authorized lab testing

★ 4 · 2026-09-26
tc4dy/CVE-2026-67279-86060-Toolkit

CVE-2026-67279 + CVE-2026-86060 – MikroTrick MikroTik RouterOS SSH Pre-Auth Takeover (CVSS 9.2) | Red/Blue Team suite. 2 tools: Full Exploit (rekey bypass, fd-…

★ 3 · 2026-09-27
shmaki4/CVE-2026-67279-Mikrotik-6.42-POC

Laboratory proof of concept and research notes for CVE-2026-67279 on MikroTik RouterOS 6.42.

★ 0 · 2026-10-08
CVE-2004-2687
FRESH PoCMULTI PoC
PoCs 7 ★ 2 Last push 2026-10-08 (1 day, 11 hours ago)

Fetching description from NVD…

Show 7 repositories
k4miyo/CVE-2004-2687

CVE-2004-2687 DistCC Daemon Command Execution

★ 1 · 2021-08-28
germarr93/CyberSecurity-Pentest-Lab

CVE-2004-2687 (Distcc 3.2.1) exploitation, methodology & remediation — Metasploitable2 lab

★ 1 · 2026-10-08
nulltrace1336/Metasploitable-2-Distcc-Exploit-via-Kali-Linux-CVE-2004-2687

Ushbu videoda Metasploitable 2 tizimidagi distccd servisidagi zaiflikdan foydalanib, Kali Linux orqali remote shell olish ko‘rsatib beriladi.

★ 0 · 2025-12-24
aish19siddiqua-commits/mtechweek_04

Metasploit-based penetration test on an isolated Metasploitable2 lab VM — remote exploitation via DistCC (CVE-2004-2687), privilege escalation via udev netlink…

★ 0 · 2026-08-22
ocfagb/hacktivity-vulns-exploits-lab

Writeup + CVE analysis + countermeasures for the Hacktivity 'Vulnerabilities, Exploits, and Remote Access Payloads' lab (netcat shells, Metasploit, CVE-2010-12…

★ 0 · 2026-08-27
CVE-2023-54391
FRESH PoC
PoCs 2 ★ 2 Last push 2026-10-08 (1 day, 11 hours ago)

Fetching description from NVD…

Show 2 repositories
alexand0www/CVE-2023-54391-RCE

CVE-2023-54391: Proxmox VE Authentication Bypass RCE Exploit

★ 2 · 2026-10-08
disqualifier/psa-2026-00043-recovery

Recovery notes for proxmox advisory ID: PSA-2026-00043-1 (CVE-2023-54391)

★ 0 · 2026-09-03
CVE-2026-91940
HIGHFRESH PoC
CVSS 8.7 HIGH CWE-22 Published 2026-09-15 PoCs 1 ★ 0 Last push 2026-10-08 (1 day, 11 hours ago) Discovered 2026-10-09 03:16

crawl4ai before 0.9.3 contains an arbitrary file write vulnerability in PDFContentScrapingStrategy where the _filter_untrusted_fields function fails to validate untrusted configuration fields. Attackers can submit crafted config bodies with malicious image_save_dir paths to write attacker-controlled bytes into any directory accessible to the service account.

Show 1 repositories
BiiTts/CVE-2026-91940-crawl4ai-Arbitrary-File-Write

CVE-2026-91940: arbitrary file write in crawl4ai <=0.9.2 via the untrusted-config gate (PDFContentScrapingStrategy image_save_dir). Analysis, reproduction harn…

★ 0 · 2026-10-08
CVE-2026-60206
FRESH PoC
PoCs 4 ★ 35 Last push 2026-10-08 (1 day, 12 hours ago)

Fetching description from NVD…

Show 4 repositories
imbas007/POC-CVE-2026-60206

cve cve-2026-60206 weblogic saml exploit poc vulnerability oracle scanner security

★ 35 · 2026-07-24
tc4dy/CVE-2026-60206-PoC-Exploit

CVE-2026-60206 - Oracle WebLogic SAML Auth Bypass Exploit Framework | Bash & Python versions. Features: --detect safe check, --exploit combo/unsigned/xsw/namei…

★ 4 · 2026-10-08
0xBlackash/CVE-2026-60206

CVE-2026-60206

★ 2 · 2026-07-24
Debajyoti0-0/CVE-2026-60206

Technical analysis and Proof-of-Concept for CVE-2026-60206, a critical Oracle WebLogic Server SAML authentication bypass vulnerability.

★ 1 · 2026-07-25
CVE-2026-64638
FRESH PoCMULTI PoC
PoCs 26 ★ 56 Last push 2026-10-08 (1 day, 12 hours ago)

Fetching description from NVD…

Show 8 of 26 repositories
Boreas37/CVE-2026-64638-PoC-XSS2Shell-

XSS2Shell (CVE-2026-64638) WordPress pre-auth XSS to RCE chain — PoC exploit + defensive audit tool + nuclei template

★ 56 · 2026-08-21
imbas007/CVE-2026-64638-POC

CVE-2026-64638: WordPress Pre-auth XSS → RCE (XSS2Shell) PoC

★ 11 · 2026-08-08
wordsec/XSS2Shell

Wordpress Pre-auth XSS to RCE exploit PoC (xss2shell & CVE-2026-64638)

★ 7 · 2026-08-07
renzi25031469/CVE-2026-64638-WordPress-Core-XSS2Shell

Template Nuclei para detecção não-intrusiva do XSS2Shell, um parser differential pré-autenticado no WordPress Core que permite injeção de elementos DOM na pági…

★ 3 · 2026-08-07
0xlipon/xss2shell

🔥 XSS2Shell — CVE-2026-64638 Scanner & PoC Toolkit

★ 3 · 2026-08-09
5yu4n/CVE-2026-64638

CVE-2026-64638

★ 2 · 2026-08-07
HackSpeak/CVE-2026-64638

XSS2Shell (CVE-2026-64638) WordPress pre-auth XSS to RCE PoC mirror — WordSec, MIT; for authorized security testing

★ 2 · 2026-08-08
CVE-2026-58048
FRESH PoC
PoCs 2 ★ 5 Last push 2026-10-08 (1 day, 12 hours ago)

Fetching description from NVD…

Show 2 repositories
tc4dy/CVE-2026-58048-PoC-Exploit

CVE-2026-58048 – cPanel Root SQL Execution Toolkit (CVSS 9.4) | Full Red/Blue Team Toolkit suite for unpatched cPanel & WHM 11.x. 2 tools: Safe Checker (audit/…

★ 5 · 2026-10-08
imbas007/POC-CVE-2026-58048

Security research project

★ 2 · 2026-08-04
CVE-2026-85706
FRESH PoCMULTI PoC
PoCs 14 ★ 43 Last push 2026-10-08 (1 day, 12 hours ago)

Fetching description from NVD…

Show 8 of 14 repositories
guneykabel/cve-2026-85706

Exploit poc for CVE-2026-85706 an unauthenticated arbitrary file read on Gitlab CE-EE affecting versions: 18.7–19.1.7; 19.2.0–19.2.5; 19.3.0–19.3.1

★ 43 · 2026-09-11
EQSTLab/CVE-2026-85706

GitLab Unauthenticated Arbitrary File Read

★ 26 · 2026-09-28
mhtsec/CVE-2026-85706

GitLab CE/EE unauthenticated path traversal (CVE-2026-85706) - PoC

★ 12 · 2026-09-11
ynsmroztas/GitLabSniper

CVE-2026-85706 Unauthenticated File Read

★ 9 · 2026-09-11
0xlyvio/cve-2026-85706-poc-exploit-gitlab

cve-2026-85706-poc-exploit-gitlab

★ 4 · 2026-09-12
FlowerWitch/CVE-2026-85706_docker_exp

CVE-2026-85706_docker_exp

★ 2 · 2026-09-11
jithinkrishnanrs/gitlab-cve-2026-85706-ioc

CVE-2026-85706 — GitLab Path Traversal IOC Scanner & Detection Toolkit. Detect and hunt for exploitation of the critical unauthenticated GitLab CE/EE path trav…

★ 2 · 2026-09-13
plur1bu5/gitread

CVE-2026-85706 · GitLab CE/EE unauthenticated file read · research PoC with oracle mode, fd enumeration, and tiered loot targeting

★ 1 · 2026-09-13
CVE-2026-92555
CRITICALFRESH PoC
CVSS 9.8 CRITICAL CWE-201 Published 2026-10-08 PoCs 1 ★ 0 Last push 2026-10-08 (1 day, 12 hours ago) Discovered 2026-10-09 03:16

Insertion of sensitive information into sent data vulnerability in AKIN Software Computer Import-Export Industry and Trade Co. Ltd. AKINSOFT WOLVOX Control Panel allows Pull Data from System Resources. This issue affects AKINSOFT WOLVOX Control Panel: from 26.02.25 before 26.02.26.

Show 1 repositories
Enay-Project/CVE-2026-92555

CVE-2026-92555 Exploit

★ 0 · 2026-10-08
CVE-2026-65643
FRESH PoC
PoCs 2 ★ 13 Last push 2026-10-08 (1 day, 12 hours ago)

Fetching description from NVD…

Show 2 repositories
tc4dy/CVE-2026-65643-PoC-Toolkit

CVE-2026-65643 – cPanel Domain Parking RCE Toolkit (CVSS 8.7) | Red/Blue Team suite for unpatched cPanel & WHM 11.x (110,134,136,138). 2 tools: Full Exploit (r…

★ 13 · 2026-10-08
HORKimhab/CVE-2026-65643

CVE-2026-65643 - Draft or TODO

★ 0 · 2026-08-28
CVE-2026-82329
FRESH PoCMULTI PoC
PoCs 8 ★ 12 Last push 2026-10-08 (1 day, 12 hours ago)

Fetching description from NVD…

Show 8 repositories
dinosn/cve-2026-82329-jfrog-artifactory

CVE-2026-82329 JFrog Artifactory unauthenticated auth-bypass: reproducible Docker lab + URL-parameter validator PoC + patch-diff analysis

★ 12 · 2026-09-01
ynsmroztas/CVE-2026-82329-JFrog-Artifactory-Auth-Bypass

CVE-2026-82329 — JFrog Artifactory (self-hosted) Auth Bypass

★ 6 · 2026-09-02
tc4dy/CVE-2026-82329-PoC-Exploit

CVE-2026-82329 – JFrog Artifactory Auth Bypass Toolkit (CVSS 9.8) | Red/Blue Team suite for self-hosted Artifactory 7.x (111-161). 2 tools: Full Exploit (JWTfo…

★ 3 · 2026-10-08
0xTerror/CVE-2026-82329-JFrog-Artifactory-

CVE-2026-82329 — JFrog Artifactory Auth Bypass

★ 2 · 2026-09-07
realalexandergeorgiev/artifactory-CVE-2026-82329-poc.py

CVE-2026-82329 — JFrog Artifactory unauthenticated authentication bypass ("phantom join key" -> forged service admin token)

★ 1 · 2026-09-02
HORKimhab/CVE-2026-82329

CVE-2026-82329 - Draft or TODO

★ 0 · 2026-09-01
0xCyp1337/CVE-2026-82329

CVE‑2026‑82329 is a critical authentication bypass in JFrog Artifactory (CVSS 9.8) allowing unauthenticated attackers to obtain full administrative privileges.…

★ 0 · 2026-09-03
gagaltotal/CVE-2026-82329-poc

CVE-2026-82329 Poc

★ 0 · 2026-09-04
CVE-2026-106610
FRESH PoC
PoCs 1 ★ 0 Last push 2026-10-08 (1 day, 13 hours ago) Discovered 2026-10-09 03:16

Fetching description from NVD…

Show 1 repositories
KevineCharles/CVE-2026-106610-miniorange-otp-ato

PoC: miniOrange OTP Verification <=5.5.7 unauthenticated Account Takeover via OTP re-routing (CVSS 9.8)

★ 0 · 2026-10-08
CVE-2026-7228
FRESH PoC
PoCs 1 ★ 0 Last push 2026-10-08 (1 day, 16 hours ago)

Fetching description from NVD…

Show 1 repositories
mikecostanzi/ricerca-tesi

risorse di ricerca per cve-2026-7228

★ 0 · 2026-10-08
CVE-2026-81642
FRESH PoC
PoCs 1 ★ 0 Last push 2026-10-08 (1 day, 16 hours ago)

Fetching description from NVD…

Show 1 repositories
suominen/CVE-2026-81642

Tracking the Unbound CVE-2026-81642 DNSKEY digest heap overflow

★ 0 · 2026-10-08
CVE-2022-22077
FRESH PoC
PoCs 1 ★ 6 Last push 2026-10-08 (1 day, 17 hours ago)

Fetching description from NVD…

Show 1 repositories
grisuno/CVE-2022-22077

CVE-2022-22077 is a high-severity vulnerability (CVSS score 7.8) affecting the RTCore64.sys driver distributed with MSI Center

★ 6 · 2026-10-08
CVE-2026-42945
FRESH PoCMULTI PoC
PoCs 45 ★ 64 Last push 2026-10-08 (1 day, 17 hours ago)

Fetching description from NVD…

Show 8 of 45 repositories
cipherspy/CVE-2026-42945-POC

exploit for CVE-2026-42945

★ 64 · 2026-05-14
friparia/NGINX_RIFT_SCAN_CVE_2026_42945

Nginx Rewrite CVE Scan(CVE-2026-42945 nginx-rift CVE-2026-9256)

★ 34 · 2026-05-27
MateusVerass/nGixshell

nginx CVE scanner + RCE exploit framework (CVE-2026-42945 + 16 others)

★ 26 · 2026-09-26
rheodev/CVE-2026-42945

NGINX Rift 漏洞分析与复现

★ 23 · 2026-05-14
oseasfr/Scanner_CVE_2026-42945

Script Python para detecção de instâncias Nginx vulneráveis ao CVE-2026-42945 em IPs, CIDRs e ASNs.

★ 19 · 2026-05-20
p3Nt3st3r-sTAr/CVE-2026-42945-POC
★ 15 · 2026-05-14
nu0l/NGINX-Rift

CVE-2026-42945 NGINX 堆溢出漏洞扫描与验证工具

★ 5 · 2026-05-26
iammerrida-source/nginx-rift-detect

Behavioral detection script for CVE-2026-42945 (NGINX Rift) — heap overflow in ngx_http_rewrite_module. No RCE, crash-based detection only.

★ 4 · 2026-05-15
CVE-2025-57819
FRESH PoCMULTI PoC
PoCs 25 ★ 30 Last push 2026-10-08 (1 day, 18 hours ago)

Fetching description from NVD…

Show 8 of 25 repositories
0xEhab/FreePBX-CVE-2025-57819-RCE
★ 17 · 2026-06-06
MuhammadWaseem29/SQL-Injection-and-RCE_CVE-2025-57819

FreePBX versions 15, 16, and 17 contain a Remote Code Execution (RCE) vulnerability caused by insufficient sanitization of user-supplied data in endpoints.

★ 8 · 2025-09-12
blueisbeautiful/CVE-2025-57819

FreePBX SQL Injection Exploit

★ 7 · 2025-09-01
b4sh2/CVE-2025-57819-poc

CVE-2025-57819 -> rce

★ 7 · 2026-06-07
cybertechajju/cve-2025-57819

Detects vulnerable FreePBX versions affected by CVE-2025-57819.

★ 6 · 2025-08-30
orange0Mint/CVE-2025-57819_FreePBX

This repository includes two PoC scripts for CVE-2025-57819 in FreePBX: one to create a new admin user (poc_admin.py), and another to extract credentials using…

★ 2 · 2025-09-18
Jeanback1/CVE-2025-57819-exploit

FreePBX Pre-Auth SQLi to RCE (CVE-2025-57819) — All-in-One Exploit

★ 2 · 2026-06-07
CVE-2026-46242
FRESH PoCMULTI PoC
PoCs 5 ★ 20 Last push 2026-10-08 (1 day, 18 hours ago)

Fetching description from NVD…

Show 5 repositories
0xBlackash/CVE-2026-46242

CVE-2026-46242

★ 20 · 2026-07-04
Baba01hacker666/CVE-2026-46242

CVE-2026-46242

★ 2 · 2026-07-11
SaithFranklinB/ScannerBadEpoll

Verificador de Vulnerabilidad: Bad Epoll (CVE-2026-46242)

★ 1 · 2026-07-08
BinaryMasc/CVE-2026-46242

aarch64 race condition checker

★ 0 · 2026-08-20
CVE-2026-86060
FRESH PoC
PoCs 3 ★ 55 Last push 2026-10-08 (1 day, 18 hours ago)

Fetching description from NVD…

Show 3 repositories
digiprosec/MicroTrick

cve-2026-86060 PoC

★ 55 · 2026-09-23
gagaltotal/CVE-2026-mikrotik-poc

MikroTik RouterOS PoC Collection - CVE-2026-86060 - CVE-2026-67279 - CVE-2026-67276 RouterOS SSH

★ 3 · 2026-10-08
bahirul/cve-2026-86060

Mikrotik CVE-2026-86060 Score 9.2 Critical

★ 1 · 2026-09-10
CVE-2025-21479
FRESH PoCHOTMULTI PoC
PoCs 15 ★ 278 Last push 2026-10-08 (1 day, 18 hours ago)

Fetching description from NVD…

Show 8 of 15 repositories
zhuowei/cheese

CVE-2025-21479 proof-of-concept, I think

★ 278 · 2025-08-16
sarabpal-dev/cheese-cake

A proof-of-concept for CVE-2025-21479, chained with a Dirty Pagetable technique.

★ 35 · 2025-12-31
ma4the/omae-wa-cheese-da

CVE-2025-21479 PoC for ZFlip5 with Knox in the way!(˶˃ ᵕ ˂˶)

★ 18 · 2026-06-30
CamsShaft/SELinux-Permissive-Only-CVE-2025-21479

This is an SELinux permissive version of the Cheese exploit also known as CVE-2025-21479 which affected the adreno kgsl on many devices including Samsung snapd…

★ 8 · 2026-08-14
Qingizi7/cve-2025-21479_iqooneo8

Local root exploit for CVE-2025-21479 (Adreno KGSL) on iQOO Neo8 (SM8475) - physical memory r/w, disables SELinux, spawns root shell

★ 7 · 2026-09-06
linux-tools/VIVO-IQOO-Neo9-Root-Tools

Support OriginOS 4~ OriginOS 6(Some firmware requires manual, individual adaptation), using CVE-2025-21479,CVE-2026-43499

★ 5 · 2026-10-08
RamenFast/zenfone9-root

Temporary root (uid 0) on a bootloader-locked ASUS Zenfone 9 via CVE-2025-21479 + a perf-based physical-address leak. GPLv3.

★ 4 · 2026-09-18
CVE-2025-62215
FRESH PoCMULTI PoC
PoCs 7 ★ 21 Last push 2026-10-08 (1 day, 19 hours ago)

Fetching description from NVD…

Show 7 repositories
abrewer251/CVE-2025-62215_Windows_Kernel_PE

This PoC demonstrates a race condition in the Windows kernel leading to a double-free vulnerability, allowing local privilege escalation to SYSTEM. The exploit…

★ 21 · 2025-11-18
gowonisgood/CVE-2025-62215-POC
★ 11 · 2026-05-21
mrk336/Kernel-Chaos-Weaponizing-CVE-2025-62215-for-SYSTEM-Privilege-Escalation

Hands‑on analysis of CVE‑2025‑62215, a Windows Kernel race condition exploited in the wild. Demonstrates privilege escalation to SYSTEM, detection scripts, and…

★ 3 · 2025-11-18
theman001/CVE-2025-62215

CVE-2025-62215: Windows Kernel Race Condition + Double-Free EoP

★ 2 · 2025-12-23
nullxall/cve-2025-62215-exploit-poc

CVE-2025-62215 is an Elevation of Privilege (EoP) vulnerability in the Windows Kernel, disclosed in November 2025 and confirmed to be actively exploited as a z…

★ 1 · 2025-11-14
uky007/CVE-2025-62215_analysis

CVE-2025-62215 exploit development using Claude Code Agent Team

★ 0 · 2026-02-11
Hu2ie/CVE-2025-62215-Windows-Kernel---Elevation-of-Privilege

Windows Kernel - Elevation of Privilege

★ 0 · 2026-10-08
CVE-2007-6750
FRESH PoC
PoCs 3 ★ 0 Last push 2026-10-08 (1 day, 19 hours ago)

Fetching description from NVD…

Show 3 repositories
sarjanpatel22/siem-threat-detection-lab

Blue-team SIEM lab: Wazuh 4.7.5 detecting 7 simulated attacks (SSH brute force, Slowloris DoS / CVE-2007-6750, web attacks) with real-time MITRE ATT&CK mapping…

★ 0 · 2026-07-02
RoflSecurity/nodeloris

While the name of this tool sounds like a spell straight out of the Harry Potter universe, it is actually a DoS tool based on SlowLoris (CVE-2007-6750).

★ 0 · 2026-10-05
michou79/noc21220-cybersecurity-assessment

Description: Vulnerability Assessment Lab - NOC 21220 | Kali Linux | Nmap | CVE-2007-6750 | Quebec IT Profile

★ 0 · 2026-10-08
CVE-2026-48908
FRESH PoCMULTI PoC
PoCs 12 ★ 18 Last push 2026-10-08 (1 day, 20 hours ago)

Fetching description from NVD…

Show 8 of 12 repositories
papageo75/CVE-2026-48908-PoC

Unauthenticated RCE PoC for CVE-2026-48908 — SP Page Builder for Joomla (≤ 6.6.1): arbitrary file upload via asset.uploadCustomIcon. Self-cleaning, token-guard…

★ 18 · 2026-06-23
Jenderal92/CVE-2026-48908

CVE-2026-48908 — PoC exploit for unauthenticated RCE in SP Page Builder (Joomla) via arbitrary file upload. Multi‑threaded, case‑bypass, shell verification. Fo…

★ 3 · 2026-07-08
0xBlackash/CVE-2026-48908

CVE-2026-48908

★ 2 · 2026-06-24
imXur/CVE-2026-48908-Joomla-SP-Page-Builder-RCE

Technical analysis and advisory for CVE-2026-48908: Unauthenticated Arbitrary File Upload to RCE in JoomShaper SP Page Builder.

★ 2 · 2026-07-25
yora1928/CVE-2026-48908-by-yora

Passive security checker for CVE-2026-48908 affecting SP Page Builder.

★ 2 · 2026-08-20
gagaltotal/CVE-2026-48908-SP-Page-Builder-Joomla

CVE-2026-48908 - SP Page Builder Joomla Unauthenticated RCE

★ 0 · 2026-06-24
ayiezola/CVE-2026-48908

Unauthenticated RCE PoC for CVE-2026-48908 SP Page Builder (Joomla) arbitrary file upload and remote code execution exploit with mass scaning support.

★ 0 · 2026-06-25
bayu06802/CVE-2026-48908
★ 0 · 2026-07-05
< Prev Page 7 / 15 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.