Every new exploit,
on the radar.
Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.
monitoring live
CVE-2026-88776
CVE-2026-84520
CVE-2026-51994
CVE-2026-107181
CVE-2026-104587
CVE-2026-104586
CVE-2026-104585
CVE-2026-104584
CVE-2025-34071
CVE-2026-95149
CVE-2026-94597
CVE-2026-28775
CVE-2026-24046
CVE-2026-107406
14 contacts in last 24h
11114CVEs tracked
26004PoC repositories
17New in 24h
354PoC updated in 7 days
filters
504 results
PoCs 11
★ 107
Last push 2025-11-18 (10 months, 3 weeks ago)
Fetching description from NVD…
Show 8 of 11 repositories
PoCs 19
★ 334
Last push 2025-11-17 (10 months, 3 weeks ago)
Fetching description from NVD…
Show 8 of 19 repositories
Tharana/vulnerability-exploitation
Local Root vulnerability- CVE-2019-13272 / Security Bypass Vulnerability – CVE-2019-14287/Google Android - 'Stagefright' Remote Code Execution - CVE-2015-1538
★ 3 · 2020-05-12
PoCs 1
★ 145
Last push 2025-11-03 (11 months, 1 week ago)
Fetching description from NVD…
Show 1 repositories
PoCs 3
★ 354
Last push 2025-11-01 (11 months, 1 week ago)
Fetching description from NVD…
Show 3 repositories
PoCs 44
★ 574
Last push 2025-10-21 (11 months, 2 weeks ago)
Fetching description from NVD…
Show 8 of 44 repositories
trustedsec/cve-2019-19781
This is a tool published for the Citrix ADC (NetScaler) vulnerability. We are only disclosing this due to others publishing the exploit code first.
★ 574 · 2020-01-22
PoCs 4
★ 114
Last push 2025-10-17 (11 months, 3 weeks ago)
Fetching description from NVD…
Show 4 repositories
pucerpocok/sudo_exploit
own implementation of the CVE-2017-1000367 sudo privilege escalation vulnerability in python
★ 6 · 2017-06-08
PoCs 3
★ 385
Last push 2025-10-15 (11 months, 3 weeks ago)
Fetching description from NVD…
Show 3 repositories
PoCs 3
★ 152
Last push 2025-10-12 (11 months, 4 weeks ago)
Fetching description from NVD…
Show 3 repositories
PoCs 2
★ 101
Last push 2025-10-09 (1 year ago)
Fetching description from NVD…
Show 2 repositories
B-D-APL/silver-succotash
Writeup and exploit for CVE-2023-45777, bypass for Intent validation inside AccountManagerService on Android 13 despite "Lazy Bundle" mitigation
★ 0 · 2025-10-09
PoCs 1
★ 108
Last push 2025-10-08 (1 year ago)
Fetching description from NVD…
Show 1 repositories
michalbednarski/ResourcePoison
Writeup and exploit for CVE-2025-22441: Privilege escalation from installed app to SystemUI process on Android due to pass of untrusted ApplicationInfo to Load…
★ 108 · 2025-10-08
PoCs 2
★ 152
Last push 2025-10-07 (1 year ago)
Fetching description from NVD…
Show 2 repositories
34306/decrypted
FairPlay decryptor (dump iPA) for iOS Application that running on macOS with SIP-enabled, using CVE-2025-24204. Support macOS 15.0-15.2
★ 152 · 2025-09-04
PoCs 5
★ 119
Last push 2025-09-30 (1 year ago)
Fetching description from NVD…
Show 5 repositories
PoCs 22
★ 174
Last push 2025-09-30 (1 year ago)
Fetching description from NVD…
Show 8 of 22 repositories
PoCs 5
★ 414
Last push 2025-09-28 (1 year ago)
Fetching description from NVD…
Show 5 repositories
Bdenneu/CVE-2022-33679
One day based on https://googleprojectzero.blogspot.com/2022/10/rc4-is-still-considered-harmful.html
★ 414 · 2024-11-10
PoCs 2
★ 295
Last push 2025-09-16 (1 year ago)
Fetching description from NVD…
Show 2 repositories
0xkol/badspin
Bad Spin: Android Binder Privilege Escalation Exploit (CVE-2022-20421)
★ 295 · 2023-05-27
PoCs 17
★ 303
Last push 2025-09-09 (1 year, 1 month ago)
Fetching description from NVD…
Show 8 of 17 repositories
649/Apache-Struts-Shodan-Exploit
This tool takes advantage of CVE-2018-11776 and Shodan to perform mass exploitation of verified and vulnerable Apache Struts servers.
★ 56 · 2018-08-30
PoCs 6
★ 153
Last push 2025-09-08 (1 year, 1 month ago)
Fetching description from NVD…
Show 6 repositories
PoCs 9
★ 136
Last push 2025-09-05 (1 year, 1 month ago)
Fetching description from NVD…
Show 8 of 9 repositories
z3usx01/CVE-2021-23017-POC
The issue only affects nginx if the "resolver" directive is used in the configuration file. Further, the attack is only possible if an attacker is able to forg…
★ 1 · 2024-12-08
6lj/EVIL-CVE-2021-23017-Update-2025
vulnerability in NGINX servers (versions 0.6.18–1.20.0). The scripts aim to cause a Denial of Service (DoS) by sending malicious DNS responses, with enhancemen…
★ 1 · 2025-09-05
Cybervixy/Vulnerability-Management
NGINX Security Hardening & Vulnerability Remediation Analysis of critical CVEs (CVE-2021-23017, HTTP/2 DoS flaws) in outdated NGINX versions, with actionable …
★ 0 · 2025-04-17
PoCs 3
★ 266
Last push 2025-08-30 (1 year, 1 month ago)
Fetching description from NVD…
Show 3 repositories
PoCs 1
★ 189
Last push 2025-08-25 (1 year, 1 month ago)
Fetching description from NVD…
Show 1 repositories
PoCs 1
★ 115
Last push 2025-08-22 (1 year, 1 month ago)
Fetching description from NVD…
Show 1 repositories
PoCs 7
★ 115
Last push 2025-08-21 (1 year, 1 month ago)
Fetching description from NVD…
Show 7 repositories
0nsec/CVE-2023-35078
CVE-2023-35078 - Ivanti MobileIron Core Remote Unauthenticated API Access Exploit tool
★ 1 · 2025-08-21
PoCs 13
★ 113
Last push 2025-08-17 (1 year, 1 month ago)
Fetching description from NVD…
Show 8 of 13 repositories
vulncheck-oss/fetch-broker-conf
A go-exploit for fetching the RocketMQ broker configuration in order to discover indicators of compromise for CVE-2023-33246
★ 5 · 2024-10-25
PoCs 3
★ 179
Last push 2025-08-15 (1 year, 1 month ago)
Fetching description from NVD…
Show 3 repositories
bao7uo/RAU_crypto
Telerik UI for ASP.NET AJAX File upload and .NET deserialisation exploit (CVE-2017-11317, CVE-2017-11357, CVE-2019-18935)
★ 179 · 2020-08-22
PoCs 1
★ 288
Last push 2025-08-12 (1 year, 1 month ago)
Fetching description from NVD…
Show 1 repositories
z-bool/Venom-JWT
针对JWT渗透开发的漏洞验证/密钥爆破工具,针对CVE-2015-9235/空白密钥/未验证签名攻击/CVE-2016-10555/CVE-2018-0114/CVE-2020-28042的结果生成用于FUZZ,也可使用字典/字符枚举(包括JJWT)的方式进行爆破(JWT Crack)
★ 288 · 2025-08-12
Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.