Every new exploit,
on the radar.
Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.
monitoring live
CVE-2026-88776
CVE-2026-84520
CVE-2026-51994
CVE-2026-107181
CVE-2026-104587
CVE-2026-104586
CVE-2026-104585
CVE-2026-104584
CVE-2025-34071
CVE-2026-95149
CVE-2026-94597
CVE-2026-28775
CVE-2026-24046
CVE-2026-107406
14 contacts in last 24h
11114CVEs tracked
26004PoC repositories
17New in 24h
357PoC updated in 7 days
filters
357 results
PoCs 44
★ 61
Last push 2026-10-08 (1 day, 22 hours ago)
Fetching description from NVD…
Show 8 of 44 repositories
Unix13/metasploitable2
PHP-CGI-REMOTE_CVE-2012-1823, UnrealIRCd, MySQL, PostgreSQL and SSH bruteforce, VSFTPD2.3.4, samba CVE-2007-2447, JAVA RMI Server, distcc daemon, misconfigured…
★ 4 · 2018-07-11
JoseBarrios/CVE-2007-2447
Remote Command Injection Vulnerability (CVE-2007-2447), allows remote attackers to execute arbitrary commands by specifying a Samba username containing shell m…
★ 1 · 2020-01-20
PoCs 17
★ 114
Last push 2026-10-08 (2 days ago)
Fetching description from NVD…
Show 8 of 17 repositories
ynsmroztas/KeySniper
**CVE-2026-18963** — unauthenticated Keycloak account takeover via the reset-credentials flow.
★ 114 · 2026-09-06
PoCs 1
★ 2
Last push 2026-10-08 (2 days ago)
Fetching description from NVD…
Show 1 repositories
PoCs 2
★ 0
Last push 2026-10-08 (2 days ago)
Fetching description from NVD…
Show 2 repositories
PoCs 4
★ 3
Last push 2026-10-08 (2 days ago)
Fetching description from NVD…
Show 4 repositories
PoCs 5
★ 1
Last push 2026-10-08 (2 days ago)
Fetching description from NVD…
Show 5 repositories
kaizoku73/CVE-2026-31857-PoC
Proof of Concept for CVE-2026-31857, an authenticated Remote Code Execution vulnerability in Craft CMS caused by unsafe processing of user-controlled Twig expr…
★ 0 · 2026-10-08
PoCs 23
★ 725
Last push 2026-10-08 (2 days ago)
Fetching description from NVD…
Show 8 of 23 repositories
bhdresh/CVE-2017-0199
Exploit toolkit CVE-2017-0199 - v4.0 is a handy python script which provides pentesters and security researchers a quick and effective way to test Microsoft Of…
★ 725 · 2017-11-19
Exploit-install/CVE-2017-0199
Exploit toolkit CVE-2017-0199 - v2.0 is a handy python script which provides a quick and effective way to exploit Microsoft RTF RCE. It could generate a malici…
★ 7 · 2017-04-22
jacobsoo/RTF-Cleaner
RTF Cleaner, tries to extract URL from malicious RTF samples using CVE-2017-0199 & CVE-2017-8759
★ 3 · 2017-12-08
n1shant-sinha/CVE-2017-0199
Exploit toolkit CVE-2017-0199 - v2.0 is a handy python script which provides a quick and effective way to exploit Microsoft RTF RCE. It could generate a malici…
★ 2 · 2017-04-23
PoCs 5
★ 68
Last push 2026-10-08 (2 days, 2 hours ago)
Fetching description from NVD…
Show 5 repositories
SyntaxMethod/CVE-2026-42978-PoC-Research
CVE-2026-42978 Windows Push Notifications (WpnService) Use-After-Free & Race Condition PoC research, diagnostic scanner, and security audit module for AI Secur…
★ 68 · 2026-09-11
grizzzer/CVE-2026-42978-PoC-Research
CVE-2026-42978 — Use-After-Free race condition in Windows Push Notifications (WpnService). Patch diff, root cause analysis, TOCTOU lab, Sysmon/ETW detection ru…
★ 28 · 2026-06-23
PoCs 2
★ 3
Last push 2026-10-08 (2 days, 3 hours ago)
Fetching description from NVD…
Show 2 repositories
showy-headteacher114/cve-2025-66398
Demonstrate exploitation of Signal K Server CVE-2025-66398 allowing unauthenticated attackers to inject backdoor and enable remote code execution.
★ 1 · 2026-10-08
PoCs 70
★ 208
Last push 2026-10-08 (2 days, 3 hours ago)
Fetching description from NVD…
Show 8 of 70 repositories
PoCs 3
★ 58
Last push 2026-10-08 (2 days, 3 hours ago)
Fetching description from NVD…
Show 3 repositories
hophtien/CVE-2025-54424
CVE-2025-54424: 1Panel TLS client cert bypass enables RCE via forged CN 'panel_client' using a bundled scanning and exploitation tool. Affected: <= v2.0.5. 🔐
★ 3 · 2026-10-08
PoCs 1
★ 0
Last push 2026-10-08 (2 days, 4 hours ago)
Fetching description from NVD…
Show 1 repositories
rxsklife/CVE-2026-105192
CVE-2026-105192 is a critical (CVSS 9.8) vulnerability in LMCache, an open-source distributed key-value cache for LLM inference engines like vLLM.
★ 0 · 2026-10-08
PoCs 2
★ 1
Last push 2026-10-08 (2 days, 5 hours ago)
Fetching description from NVD…
Show 2 repositories
shinthink/CVE-2026-61424
DJ-Classifieds Joomla Component Unauthenticated File Upload RCE. 3-string filter bypass via PHP short tags. CVSS 10.0 | CWE-434 | com_djclassifieds < 3.11.2
★ 1 · 2026-07-30
PoCs 8
★ 4
Last push 2026-10-08 (2 days, 6 hours ago)
Fetching description from NVD…
Show 8 repositories
shinthink/CVE-2026-49049
Read-only vulnerability scanner for CVE-2026-49049 — Helix3 Joomla plugin unauthenticated AJAX handler
★ 4 · 2026-07-04
Jenderal92/CVE-2026-49049
Mass vulnerability scanner for CVE-2026-49049 – Unauthenticated Remote Code Execution in Joomla Helix3 plugin. Multi‑threaded, detects both executed and raw PH…
★ 0 · 2026-08-02
PoCs 5
★ 2
Last push 2026-10-08 (2 days, 6 hours ago)
Fetching description from NVD…
Show 5 repositories
shinthink/CVE-2026-56291
Balbooa Forms (com_baforms) < 2.4.1 — Unauthenticated File Upload to RCE via form.uploadAttachmentFile | CVSS 9.8 | CISA KEV
★ 2 · 2026-07-11
ChiefYoru/CVE-2026-56291_PoC
The Joomla extension Balbooa Forms is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to full RCE.
★ 0 · 2026-07-18
PoCs 20
★ 64
Last push 2026-10-08 (2 days, 6 hours ago)
Fetching description from NVD…
Show 8 of 20 repositories
PoCs 1
★ 0
Last push 2026-10-08 (2 days, 6 hours ago)
Fetching description from NVD…
Show 1 repositories
PoCs 9
★ 8
Last push 2026-10-08 (2 days, 8 hours ago)
Fetching description from NVD…
Show 8 of 9 repositories
AlonNavon/npm-demo
Browser demo: EJS template injection (CVE-2022-29078) with Seal Security remediation
★ 0 · 2026-02-15
PoCs 1
★ 0
Last push 2026-10-07 (2 days, 9 hours ago)
Fetching description from NVD…
Show 1 repositories
QASIM1401/CVE-2025-58226-PoC
CVE-2025-58226 — 3D FlipBook <= 1.16.16 unauthenticated sensitive data exposure: two-stage PoC (enumerate -> leak file URLs -> download) + nuclei template
★ 0 · 2026-10-07
CVSS 5.3 MEDIUM
CWE-284
Published 2026-10-04
PoCs 1
★ 4
Last push 2026-10-07 (2 days, 12 hours ago)
The User Private Files WordPress plugin before 2.2.0 does not properly protect its stored private files on multisite installations, where the rewrite rule it relies on to route file requests through its access check is never reached, allowing unauthenticated users to retrieve other users' private files directly.
Show 1 repositories
Kolya080808/CVE-2026-97332-PoC
Independent PoC and reproducible lab for CVE-2026-97332 — User Private Files < 2.2.0 unauthenticated private file disclosure on WordPress Multisite.
★ 4 · 2026-10-07
PoCs 3
★ 0
Last push 2026-10-07 (2 days, 13 hours ago)
Fetching description from NVD…
Show 3 repositories
xcoy0te/CVE-2026-83548-checker
Non-intrusive detector for SonicWall SMA 1000 exposure to CVE-2026-83548/-83549 (version/patch-state check; no exploitation)
★ 0 · 2026-10-07
PoCs 1
★ 0
Last push 2026-10-07 (2 days, 13 hours ago)
Fetching description from NVD…
Show 1 repositories
PoCs 1
★ 2
Last push 2026-10-07 (2 days, 13 hours ago)
Fetching description from NVD…
Show 1 repositories
murrez/CVE-2026-105844
CVE-2026-105844 — Payload CMS @payloadcms/plugin-import-export <3.88.0 unauth prototype pollution (CWE-1321, CVSS 4.0 9.3). PoCbit PoC: POST /api/exports/expor…
★ 2 · 2026-10-07
PoCs 1
★ 1
Last push 2026-10-07 (2 days, 13 hours ago)
Fetching description from NVD…
Show 1 repositories
murrez/CVE-2026-102782
CVE-2026-102782 — OrdaSoft Joomla Simple Membership <7.4.0 unauth SQLi (CWE-89, CVSS 4.0 9.3). PoCbit PoC: checkLoginPass + login param extractvalue error leak…
★ 1 · 2026-10-07
PoCs 40
★ 31
Last push 2026-10-07 (2 days, 15 hours ago)
Fetching description from NVD…
Show 8 of 40 repositories
linnemanlabs/dirtyfrag-arm64
arm64/aarch64 port of V4bel/dirtyfrag (CVE-2026-43284). ESP-only - rxrpc path kernel-oopses on arm64 due to flush_dcache_page
★ 31 · 2026-05-13
Percivalll/Dirty-Frag-Kubernetes-PoC
A proof-of-concept demonstrating how a default, unprivileged Kubernetes Pod can achieve node-level code execution on Amazon EKS by exploiting the Dirty Frag (C…
★ 16 · 2026-05-08
a2333c/DFRoot
三星 Galaxy S25 Ultra(SM-S938B)适配版 DFRoot:开机自动获取 root(DirtyFrag CVE-2026-43284 + CVE-2026-43499 双链路),全中文界面,fork 自 diabl0w/DFRoot
★ 5 · 2026-09-28
Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.