Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11117CVEs tracked
26011PoC repositories
12New in 24h
357PoC updated in 7 days
filters
Reset
All New Fresh PoC Hot Multi PoC Critical High

504 results

CVE-2023-33733
HOTMULTI PoC
PoCs 5 ★ 119 Last push 2024-07-27 (2 years, 2 months ago)

Fetching description from NVD…

Show 5 repositories
c53elyas/CVE-2023-33733

CVE-2023-33733 reportlab RCE

★ 119 · 2023-09-05
L41KAA/CVE-2023-33733-Exploit-PoC
★ 3 · 2024-07-27
onion2203/Lab_Reportlab

This lab was set up to test CVE-2023-33733

★ 1 · 2024-04-24
buiduchoang24/CVE-2023-33733

This project aims at re-analyzing and PoC about CVE-2023-33733. Reportlab up to v3.6.12 allows attackers to execute arbitrary code via supplying a crafted PDF …

★ 1 · 2024-04-24
hoangbui24/CVE-2023-33733

Reportlab Library - Remote Code Execution

★ 0 · 2024-03-15
CVE-2023-28252
HOTMULTI PoC
PoCs 7 ★ 184 Last push 2024-07-09 (2 years, 3 months ago)

Fetching description from NVD…

Show 7 repositories
fortra/CVE-2023-28252
★ 184 · 2023-07-10
duck-sec/CVE-2023-28252-Compiled-exe

A modification to fortra's CVE-2023-28252 exploit, compiled to exe

★ 57 · 2024-01-24
byt3n33dl3/CLFS

it's a CVE-2023-28252 (Patched), but feel free to use it for check any outdated software or reseach

★ 6 · 2024-07-09
bkstephen/Compiled-PoC-Binary-For-CVE-2023-28252

The repo contains a precompiled binary which can be run on a Windows machine vulnerable to CVE-2023-28252

★ 5 · 2024-01-01
726232111/CVE-2023-28252
★ 0 · 2023-08-02
Danasuley/CVE-2023-28252-

Обнаружение эксплойта CVE-2023-28252

★ 0 · 2023-11-13
Vulmatch/CVE-2023-28252

The TL;DR for the learnings of Windows Vulnerability CVE-2023-28252

★ 0 · 2024-06-16
PoCs 2 ★ 135 Last push 2024-07-08 (2 years, 3 months ago)

Fetching description from NVD…

Show 2 repositories
Y3A/CVE-2023-28229
★ 135 · 2024-01-08
byt3n33dl3/CrackKeyIso

it's a CVE-2023-28229 (Patched), but feel free to use it for check any outdated software or reseach

★ 5 · 2024-07-08
CVE-2019-2618
HOTMULTI PoC
PoCs 7 ★ 2076 Last push 2024-06-16 (2 years, 3 months ago)

Fetching description from NVD…

Show 7 repositories
0xn0ne/weblogicScanner

weblogic 漏洞扫描工具。目前包含对以下漏洞的检测能力:CVE-2014-4210、CVE-2016-0638、CVE-2016-3510、CVE-2017-3248、CVE-2017-3506、CVE-2017-10271、CVE-2018-2628、CVE-2018-2893、CVE-2018-2894、C…

★ 2076 · 2023-11-24
dr0op/WeblogicScan

增强版WeblogicScan、检测结果更精确、插件化、添加CVE-2019-2618,CVE-2019-2729检测,Python3支持

★ 962 · 2024-06-16
jas502n/cve-2019-2618

Weblogic Upload Vuln(Need username password)-CVE-2019-2618

★ 173 · 2019-04-17
pyn3rd/CVE-2019-2618

Weblogic Unrestricted File Upload

★ 54 · 2019-04-17
wsfengfan/CVE-2019-2618-

CVE-2019-2618-自己编写

★ 1 · 2019-07-17
he1dan/cve-2019-2618

自用验证

★ 1 · 2019-11-05
ianxtianxt/cve-2019-2618

cve-2019-2618 需要用户名密码

★ 0 · 2019-11-19
CVE-2020-0668
HOTMULTI PoC
PoCs 6 ★ 238 Last push 2024-06-05 (2 years, 4 months ago)

Fetching description from NVD…

Show 6 repositories
RedCursorSecurityConsulting/CVE-2020-0668

Use CVE-2020-0668 to perform an arbitrary privileged file move operation.

★ 238 · 2020-02-20
ycdxsb/CVE-2020-0668

Make CVE-2020-0668 exploit work for version < win10 v1903 and version >= win10 v1903

★ 14 · 2021-12-07
Nan3r/CVE-2020-0668

CVE-2020-0668

★ 6 · 2020-06-02
modulexcite/SysTracingPoc

CVE-2020-0668 - Microsoft Windows Service Tracing Arbitrary File Move Local Privilege Escalation Vulnerability

★ 2 · 2020-02-26
bypazs/CVE-2020-0668.exe
★ 2 · 2021-10-30
0xSs0rZ/Windows_Exploit

CVE-2021-1675/CVE-2021-34527 PrintNightmare & CVE-2020-0668

★ 0 · 2024-06-05
PoCs 3 ★ 216 Last push 2024-06-04 (2 years, 4 months ago)

Fetching description from NVD…

Show 3 repositories
mansk1es/CVE-2024-21111

Oracle VirtualBox Elevation of Privilege (Local Privilege Escalation) Vulnerability

★ 216 · 2024-05-09
x0rsys/CVE-2024-21111

Precompiled binaries for Privilege Escalation in Oracle VM Virtual box prior to 7.0.16

★ 2 · 2024-06-04
10cks/CVE-2024-21111-del
★ 0 · 2024-05-17
CVE-2022-29072
HOTMULTI PoC
PoCs 5 ★ 672 Last push 2024-05-10 (2 years, 4 months ago)

Fetching description from NVD…

Show 5 repositories
kagancapar/CVE-2022-29072

7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the Help>Contents area.

★ 672 · 2022-04-22
sentinelblue/CVE-2022-29072

** DISPUTED ** 7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the Help>Conte…

★ 8 · 2022-04-20
tiktb8/CVE-2022-29072

Powershell to mitigate CVE-2022-29072

★ 6 · 2022-04-18
Phantomiman/7-Zip.chm-Mitigation

7-Zip CVE-2022-29072 Mitigation - CHM file - This script detects if the .chm file exists and removes it.

★ 3 · 2022-12-20
rasan2001/CVE-2022-29072
★ 0 · 2024-05-10
CVE-2018-20250
HOTMULTI PoC
PoCs 19 ★ 493 Last push 2024-04-26 (2 years, 5 months ago)

Fetching description from NVD…

Show 8 of 19 repositories
WyAtu/CVE-2018-20250

exp for https://research.checkpoint.com/extracting-code-execution-from-winrar

★ 493 · 2019-08-05
QAX-A-Team/CVE-2018-20250

010 Editor template for ACE archive format & CVE-2018-2025[0-3]

★ 26 · 2019-02-22
easis/CVE-2018-20250-WinRAR-ACE

Proof of concept code in C# to exploit the WinRAR ACE file extraction path (CVE-2018-20250).

★ 21 · 2019-03-01
arkangel-dev/CVE-2018-20250-WINRAR-ACE-GUI

CVE-2018-20250-WINRAR-ACE Exploit with a UI

★ 7 · 2019-05-10
STP5940/CVE-2018-20250
★ 2 · 2019-02-28
Ektoplasma/ezwinrar

Python tool exploiting CVE-2018-20250 found by CheckPoint folks

★ 2 · 2019-03-05
technicaldada/hack-winrar

WinRar is a very widely known software for windows. Previous version of WinRaR was a vulnerability which has been patched in Feb-2019. Most of the people didn'…

★ 1 · 2019-03-04
eastmountyxz/CVE-2018-20250-WinRAR

这资源是作者复现微软签字证书漏洞CVE-2020-0601,结合相关资源及文章实现。推荐大家结合作者博客,复现了该漏洞和理解恶意软件自启动劫持原理。作为网络安全初学者,自己确实很菜,但希望坚持下去,一起加油!

★ 1 · 2020-05-19
PoCs 4 ★ 131 Last push 2024-04-12 (2 years, 5 months ago)

Fetching description from NVD…

Show 4 repositories
jakabakos/CVE-2023-36664-Ghostscript-command-injection

Ghostscript command injection vulnerability PoC (CVE-2023-36664)

★ 131 · 2023-09-07
winkler-winsen/Scan_GhostScript

Scan for GhostScript files affected to CVE-2023-36664

★ 0 · 2023-08-29
jeanchpt/CVE-2023-36664

Proof of concept developed for the CVE-2023-36664

★ 0 · 2023-12-12
CVE-2019-11358
HOTMULTI PoC
PoCs 6 ★ 315 Last push 2024-04-12 (2 years, 5 months ago)

Fetching description from NVD…

Show 6 repositories
chrisneagu/FTC-Skystone-Dark-Angels-Romania-2020

NOTICE This repository contains the public FTC SDK for the SKYSTONE (2019-2020) competition season. If you are looking for the current season's FTC SDK softwar…

★ 315 · 2024-04-12
DanielRuf/snyk-js-jquery-174006

patches for SNYK-JS-JQUERY-174006, CVE-2019-11358, CVE-2019-5428

★ 28 · 2022-08-22
DanielRuf/snyk-js-jquery-565129

patches for SNYK-JS-JQUERY-565129, SNYK-JS-JQUERY-567880, CVE-2020-1102, CVE-2020-11023, includes the patches for SNYK-JS-JQUERY-174006, CVE-2019-11358, CVE-20…

★ 27 · 2022-08-22
bitnesswise/jquery-prototype-pollution-fix

A fix for CVE-2019-11358 (prototype pollution in jquery)

★ 6 · 2019-07-18
isacaya/CVE-2019-11358
★ 1 · 2023-08-05
Snorlyd/https-nj.gov---CVE-2019-11358

Vulnearability Report of the New Jersey official site

★ 0 · 2022-05-23
PoCs 2 ★ 102 Last push 2024-03-30 (2 years, 6 months ago)

Fetching description from NVD…

Show 2 repositories
jeffssh/CVE-2021-30860

Collection of materials relating to FORCEDENTRY

★ 102 · 2024-03-30
Levilutz/CVE-2021-30860

Scan for evidence of CVE-2021-30860 (FORCEDENTRY) exploit

★ 12 · 2021-09-21
PoCs 1 ★ 129 Last push 2024-03-22 (2 years, 6 months ago)

Fetching description from NVD…

Show 1 repositories
zerozenxlabs/CVE-2023-36424

Windows Kernel Pool (clfs.sys) Corruption Privilege Escalation

★ 129 · 2024-03-22
PoCs 2 ★ 172 Last push 2024-03-15 (2 years, 6 months ago)

Fetching description from NVD…

Show 2 repositories
Impalabs/CVE-2023-27326

VM Escape for Parallels Desktop <18.1.1

★ 172 · 2024-03-15
Malwareman007/CVE-2023-27326

VM Escape for Parallels Desktop <18.1.1

★ 37 · 2023-05-07
CVE-2021-38647
HOTMULTI PoC
PoCs 12 ★ 233 Last push 2024-03-13 (2 years, 6 months ago)

Fetching description from NVD…

Show 8 of 12 repositories
horizon3ai/CVE-2021-38647

Proof on Concept Exploit for CVE-2021-38647 (OMIGOD)

★ 233 · 2021-09-16
AlteredSecurity/CVE-2021-38647

CVE-2021-38647 - POC to exploit unauthenticated RCE #OMIGOD

★ 67 · 2021-09-26
marcosimioni/omigood

OMIGOD! OM I GOOD? A free scanner to detect VMs vulnerable to one of the "OMIGOD" vulnerabilities discovered by Wiz's threat research team, specifically CVE-20…

★ 20 · 2021-09-22
midoxnet/CVE-2021-38647

CVE-2021-38647 POC for RCE

★ 8 · 2021-09-15
corelight/CVE-2021-38647

CVE-2021-38647 AKA "OMIGOD" vulnerability in Windows OMI

★ 5 · 2022-02-11
SimenBai/CVE-2021-38647-POC-and-Demo-environment

OMIGod / CVE-2021-38647 POC and Demo environment

★ 3 · 2021-09-22
Immersive-Labs-Sec/cve-2021-38647

A PoC exploit for CVE-2021-38647 RCE in OMI

★ 2 · 2021-09-16
craig-m-unsw/omigod-lab

A Vagrant VM test lab to learn about CVE-2021-38647 in the Open Management Infrastructure agent (aka "omigod").

★ 1 · 2021-09-27
CVE-2022-44877
HOTMULTI PoC
PoCs 8 ★ 103 Last push 2024-02-28 (2 years, 7 months ago)

Fetching description from NVD…

Show 8 repositories
numanturle/CVE-2022-44877
★ 103 · 2023-01-05
komomon/CVE-2022-44877-RCE

CVE-2022-44877 Centos Web Panel 7 Unauthenticated Remote Code Execution

★ 10 · 2023-01-06
hotpotcookie/CVE-2022-44877-white-box

Red Team utilities for setting up CWP CentOS 7 payload & reverse shell (Red Team 9 - CW2023)

★ 6 · 2023-09-06
Chocapikk/CVE-2022-44877

Bash Script for Checking Command Injection Vulnerability on CentOS Web Panel [CWP] (CVE-2022-44877)

★ 4 · 2023-02-11
ColdFusionX/CVE-2022-44877-CWP7

Control Web Panel 7 (CWP7) Remote Code Execution (RCE) (CVE-2022-44877) (Unauthenticated)

★ 1 · 2023-02-02
dkstar11q/CVE-2022-44877

Bash Script for Checking Command Injection Vulnerability on CentOS Web Panel [CWP] (CVE-2022-44877)

★ 0 · 2023-02-11
rhymsc/CVE-2022-44877-RCE
★ 0 · 2023-11-18
G01d3nW01f/CVE-2022-44877
★ 0 · 2024-02-28
PoCs 4 ★ 205 Last push 2024-02-15 (2 years, 7 months ago)

Fetching description from NVD…

Show 4 repositories
yassineaboukir/CVE-2018-0296

Script to test for Cisco ASA path traversal vulnerability (CVE-2018-0296) and extract system information.

★ 205 · 2024-02-15
milo2012/CVE-2018-0296

Test CVE-2018-0296 and extract usernames

★ 105 · 2018-12-09
bhenner1/CVE-2018-0296

Cisco ASA - CVE-2018-0296 | Exploit

★ 1 · 2018-06-26
qiantu88/CVE-2018-0296

https://github.com/milo2012/CVE-2018-0296.git

★ 0 · 2018-12-19
PoCs 1 ★ 178 Last push 2024-02-07 (2 years, 8 months ago)

Fetching description from NVD…

Show 1 repositories
saelo/cve-2018-4233

Exploit for CVE-2018-4233, a WebKit JIT optimization bug used during Pwn2Own 2018

★ 178 · 2024-02-07
CVE-2017-7525
HOTMULTI PoC
PoCs 5 ★ 106 Last push 2024-02-05 (2 years, 8 months ago)

Fetching description from NVD…

Show 5 repositories
SecureSkyTechnology/study-struts2-s2-054_055-jackson-cve-2017-7525_cve-2017-15095

Struts2の脆弱性S2-045, S2-055 および Jackson の脆弱性 CVE-2017-7525, CVE-2017-15095 の調査報告

★ 106 · 2017-12-13
JavanXD/Demo-Exploit-Jackson-RCE

Exploiting CVE-2017-7525 demo project with Angular7 frontend and Spring.

★ 18 · 2019-02-21
Ingenuity-Fainting-Goats/CVE-2017-7525-Jackson-Deserialization-Lab

Insecure Java Deserialization Lab

★ 6 · 2024-02-05
Dannners/jackson-deserialization-2017-7525

Jackson Deserialization CVE-2017-7525 PoC

★ 1 · 2023-03-28
Nazicc/S2-055

CVE-2017-7525 S2-055 Exploit

★ 0 · 2017-12-18
PoCs 1 ★ 110 Last push 2024-01-31 (2 years, 8 months ago)

Fetching description from NVD…

Show 1 repositories
metaredteam/rtx-cve-2023-45779

Proof-of-concept code for Android APEX key reuse vulnerability

★ 110 · 2024-01-31
PoCs 3 ★ 169 Last push 2024-01-18 (2 years, 8 months ago)

Fetching description from NVD…

Show 3 repositories
synacktiv/CVE-2023-35001

Pwn2Own Vancouver 2023 Ubuntu LPE exploit

★ 169 · 2023-11-12
syedhafiz1234/nftables-oob-read-write-exploit-CVE-2023-35001-

nftables oob read/write exploit (CVE-2023-35001)

★ 7 · 2023-09-04
mrbrelax/Exploit_CVE-2023-35001

Exploit CVE-2023-35001

★ 0 · 2024-01-18
PoCs 1 ★ 136 Last push 2024-01-14 (2 years, 8 months ago)

Fetching description from NVD…

Show 1 repositories
Wh04m1001/CVE-2024-20656
★ 136 · 2024-01-14
PoCs 4 ★ 171 Last push 2023-12-15 (2 years, 9 months ago)

Fetching description from NVD…

Show 4 repositories
sailay1996/cve-2020-1337-poc

poc for CVE-2020-1337 (Windows Print Spooler Elevation of Privilege)

★ 171 · 2020-08-13
math1as/CVE-2020-1337-exploit

CVE-2020-1337 Windows Print Spooler Privilege Escalation

★ 150 · 2023-12-15
neofito/CVE-2020-1337

CVE-2020-1048 bypass: binary planting PoC

★ 32 · 2020-08-20
VoidSec/CVE-2020-1337

CVE-2020-1337 a bypass of (PrintDemon) CVE-2020-1048’s patch

★ 16 · 2020-08-11
PoCs 3 ★ 341 Last push 2023-12-12 (2 years, 9 months ago)

Fetching description from NVD…

Show 3 repositories
Puliczek/CVE-2022-0337-PoC-Google-Chrome-Microsoft-Edge-Opera

🎩 🤟🏻 [P1-$10,000] Google Chrome, Microsoft Edge and Opera - vulnerability reported by Maciej Pulikowski - System environment variables leak - CVE-2022-0337

★ 341 · 2022-09-04
maldev866/ChExp-CVE-2022-0337-
★ 0 · 2023-03-01
zer0ne1/CVE-2022-0337-RePoC
★ 0 · 2023-12-12
PoCs 4 ★ 222 Last push 2023-12-11 (2 years, 9 months ago)

Fetching description from NVD…

Show 4 repositories
maxpl0it/CVE-2020-0674-Exploit

This is an exploit for CVE-2020-0674 that runs on the x64 version of IE 8, 9, 10, and 11 on Windows 7.

★ 222 · 2020-05-15
Neko-chanQwQ/CVE-2020-0674-PoC

随便放点自己弄的小东西

★ 1 · 2021-07-03
Ken-Abruzzi/CVE-2020-0674
★ 0 · 2020-09-30
Micky-Thongam/Internet-Explorer-UAF

Porting the CVE-2020-0674 exploit for Windows8.1 and Windows10

★ 0 · 2023-12-11
PoCs 3 ★ 109 Last push 2023-12-10 (2 years, 9 months ago)

Fetching description from NVD…

Show 3 repositories
Cr4ckC4t/cve-2022-41352-zimbra-rce

Zimbra <9.0.0.p27 RCE

★ 109 · 2022-11-24
segfault-it/cve-2022-41352

cve-2022-41352 poc

★ 8 · 2022-10-10
dafrax/cve-2022-41352-zimbra-rce
★ 0 · 2023-12-10
< Prev Page 14 / 21 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.