Every new exploit,
on the radar.
Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.
monitoring live
CVE-2026-88776
CVE-2026-84520
CVE-2026-51994
CVE-2026-107181
CVE-2026-104587
CVE-2026-104586
CVE-2026-104585
CVE-2026-104584
CVE-2025-34071
CVE-2026-95149
CVE-2026-94597
CVE-2026-28775
CVE-2026-24046
CVE-2026-107406
14 contacts in last 24h
11114CVEs tracked
26004PoC repositories
17New in 24h
361PoC updated in 7 days
filters
504 results
PoCs 24
★ 194
Last push 2026-09-30 (1 week, 2 days ago)
Fetching description from NVD…
Show 8 of 24 repositories
4xura/CVE-2025-30208
A PoC of the exploit script for the Arbitrary File Read vulnerability of Vite /@fs/ Path Traversal in the transformMiddleware (CVE-2025-30208).
★ 12 · 2025-04-09
ThemeHackers/CVE-2025-30208
CVE‑2025‑30208 is a medium-severity arbitrary file read vulnerability in the Vite development server (a popular frontend build tool)
★ 10 · 2025-06-29
PoCs 14
★ 332
Last push 2026-09-29 (1 week, 3 days ago)
Fetching description from NVD…
Show 8 of 14 repositories
tc4dy/CVE-2026-54121-PoC-Exploit
CVE-2026-54121 - CertiGhost AD CS Multi-Exploit Framework | Rogue DC + LDAP spoofing, certificate abuse, PKINIT hash extraction, auto DCSync. Safe Checker + fu…
★ 30 · 2026-09-29
ChPratik/CVE-2026-54121
Improper authorization in Active Directory Certificate Services (AD CS) allows an authorized attacker to elevate privileges over a network.
★ 1 · 2026-07-28
PoCs 32
★ 688
Last push 2026-09-29 (1 week, 3 days ago)
Fetching description from NVD…
Show 8 of 32 repositories
ThemeHackers/CVE-2024-38063
CVE-2024-38063 is a critical security vulnerability in the Windows TCP/IP stack that allows for remote code execution (RCE)
★ 44 · 2025-12-10
PoCs 12
★ 125
Last push 2026-09-28 (1 week, 4 days ago)
Fetching description from NVD…
Show 8 of 12 repositories
dinosn/pack2theroot-lab
CTF-style Docker lab for CVE-2026-41651 (Pack2TheRoot): PackageKit permissive-polkit local privilege escalation
★ 8 · 2026-04-25
PoCs 5
★ 105
Last push 2026-09-28 (1 week, 4 days ago)
Fetching description from NVD…
Show 5 repositories
e4zyy/Project-CVE-2026-75604
A Python-based exploitation framework for CVE-2026-75604 that enables authorized penetration testers to validate Next.js Windows cache traversal vulnerabilitie…
★ 3 · 2026-08-27
HackSpeak/CVE-2026-75604
CVE-2026-75604 (Next.js Windows RCE) PoC - unauthenticated RCE via cache path traversal + forged Server Action; for authorized security testing
★ 2 · 2026-08-26
FORTBRIDGE-UK/cve-2026-75604
Research lab and exploit chain for CVE-2026-75604: path traversal in the Next.js incremental cache, to RCE on Windows.
★ 0 · 2026-09-05
PoCs 3
★ 129
Last push 2026-09-28 (1 week, 4 days ago)
Fetching description from NVD…
Show 3 repositories
oxfemale/CVE-2026-20817
Windows Error Reporting ALPC Elevation of Privilege (CVE-2026-20817) - Proof-of-Concept exploit demonstrating local privilege escalation via WER service.
★ 129 · 2026-02-19
PoCs 7
★ 261
Last push 2026-09-28 (1 week, 4 days ago)
Fetching description from NVD…
Show 7 repositories
orinimron123/CVE-2026-40369-EXPLOIT
Full exploit code for CVE-2026-40369 - A Windows kernel arbitrary write vulnerability that allows browser sandbox escape from all browsers render process sandb…
★ 261 · 2026-05-18
dbgbgtf1/cve-2026-40369-exploit
Exploit inspired by `https://voidsec.com/cve-2026-40369-browser-sandbox-escape/`. Use Feature_RestrictKernelAddressLeak and forge token to Elevate privileges
★ 0 · 2026-09-08
PoCs 2
★ 185
Last push 2026-09-28 (1 week, 4 days ago)
Fetching description from NVD…
Show 2 repositories
PoCs 13
★ 228
Last push 2026-09-28 (1 week, 4 days ago)
Fetching description from NVD…
Show 8 of 13 repositories
securekomodo/citrixInspector
Passively fingerprint Citrix ADC / NetScaler ADC & Gateway builds and detect known CVEs — CVE-2023-3519, CitrixBleed 2/3, CVE-2026-8452, and CVE-2026-88771/887…
★ 96 · 2026-09-28
PoCs 2
★ 142
Last push 2026-09-28 (1 week, 4 days ago)
Fetching description from NVD…
Show 2 repositories
PoCs 14
★ 146
Last push 2026-09-26 (1 week, 6 days ago)
Fetching description from NVD…
Show 8 of 14 repositories
vulnquest58/dirtyclone-exploit
CVE-2026-46331 — Linux Kernel Local Privilege Escalation TC pedit + IPsec TEE Page Cache Corruption · Affected kernels: ≤ 6.12.9
★ 7 · 2026-06-28
PoCs 13
★ 270
Last push 2026-09-26 (1 week, 6 days ago)
Fetching description from NVD…
Show 8 of 13 repositories
PoCs 7
★ 197
Last push 2026-09-26 (1 week, 6 days ago)
Fetching description from NVD…
Show 7 repositories
TheBl4ckPh4nt0m/CVE-2025-21298
A Critical Windows OLE Zero-Click Vulnerability. This is a proof-of-concept for CVE-2025-21298 - Windows OLE Remote Code Execution Vulnerability (CVSS 9.8). Th…
★ 1 · 2025-03-07
PoCs 50
★ 2003
Last push 2026-09-25 (2 weeks ago)
Fetching description from NVD…
Show 8 of 50 repositories
calebstewart/CVE-2021-1675
Pure PowerShell implementation of CVE-2021-1675 Print Spooler Local Privilege Escalation (PrintNightmare)
★ 1109 · 2021-07-05
PoCs 1
★ 210
Last push 2026-09-25 (2 weeks ago)
Fetching description from NVD…
Show 1 repositories
jonaslejon/ad-autopwn
AD AutoPwn v4.13.0 — automated AD attack chain, zero-auth to Domain Admin. Discover/Kerberoast/AS-REP/AD CS ESC1-16/Shadow Creds/RBCD+KCD/Ghost-SPN/TGS-rewrite…
★ 210 · 2026-09-25
PoCs 7
★ 289
Last push 2026-09-25 (2 weeks ago)
Fetching description from NVD…
Show 7 repositories
dhmosfunk/CVE-2023-25690-POC
CVE 2023 25690 Proof of concept - mod_proxy vulnerable configuration on Apache HTTP Server versions 2.4.0 - 2.4.55 leads to HTTP Request Smuggling vulnerabilit…
★ 289 · 2024-08-24
oOCyginXOo/CVE-2023-25690-POC
CVE 2023 25690 Proof of concept - mod_proxy vulnerable configuration on Apache HTTP Server versions 2.4.0 - 2.4.55 leads to HTTP Request Smuggling vulnerabilit…
★ 2 · 2025-06-01
arnavps/CTF-Web-Exploitation
A comprehensive collection of 12 containerized web exploitation challenges covering CVE-2023-25690, WebAuthn bypasses, HTTP/3 smuggling, and advanced XSS/RCE c…
★ 1 · 2026-04-05
roshanrajbanshi/cve-2023-25690-smuggler
Python exploit for CVE-2023-25690 — Apache HTTP Request Smuggling via CRLF injection in mod_rewrite/mod_proxy. Built and tested against TryHackMe's Contrabando…
★ 0 · 2026-09-25
PoCs 23
★ 409
Last push 2026-09-24 (2 weeks, 1 day ago)
Fetching description from NVD…
Show 8 of 23 repositories
ex-cal1bur/SMB_CVE-2025-24071
Exploited CVE-2025-24071 via SMB by hosting a .library-ms file inside a .tar archive. Using tar x from smbclient, the payload is extracted server-side without …
★ 4 · 2025-06-11
PoCs 3
★ 513
Last push 2026-09-23 (2 weeks, 2 days ago)
Fetching description from NVD…
Show 3 repositories
PoCs 34
★ 1835
Last push 2026-09-23 (2 weeks, 2 days ago)
Fetching description from NVD…
Show 8 of 34 repositories
PoCs 1
★ 137
Last push 2026-09-22 (2 weeks, 3 days ago)
Fetching description from NVD…
Show 1 repositories
Skorpion96/unisoc-su
A method for CVE-2025-31710 and to connect to cmd_skt to obtain a root shell on unisoc unpatched models
★ 137 · 2026-09-22
PoCs 10
★ 857
Last push 2026-09-21 (2 weeks, 4 days ago)
Fetching description from NVD…
Show 8 of 10 repositories
zalexdev/wpair-app
WPair is a defensive security research tool that demonstrates the CVE-2025-36911 (eg WhisperPair) vulnerability in Google's Fast Pair protocol. This vulnerabil…
★ 857 · 2026-01-18
SpectrixDev/DIY_WhisperPair
Hijacking Bluetooth Accessories Using Google Fast Pair: WhisperPair CVE-2025-36911 Reference Implementation & Vulnerability Verification Toolkit
★ 107 · 2026-05-28
KULeuven-COSIC/WhisperPair
The official reference implementation & vulnerability verification of our attack WhisperPair (CVE-2025-36911) which affects Google's Fast Pair protocol.
★ 105 · 2026-09-21
Ymsniper/Whisper_Bully
Three-stage Bluetooth BDADDR extraction, DoS & hijack on Fast Pair devices; unpatched primitives outside CVE-2025-36911 scope (no Ubertooth needed)
★ 39 · 2026-07-13
aalex954/whisperpair-poc-tool
A security research tool that identifies and demonstrates the CVE-2025-36911: Fast Pair Pairing Mode Bypass vulnerability
★ 8 · 2026-01-25
PoCs 15
★ 622
Last push 2026-09-20 (2 weeks, 5 days ago)
Fetching description from NVD…
Show 8 of 15 repositories
Phlegmelm/CRACK12
rooting an ATOZEE P12 on Android 14 using CVE-2022-38694 — because fastboot oem unlock said no, so we found another way.
★ 5 · 2026-05-14
mutur4/UnisocBootROMs
This is a collection of Unisoc BootROMs dumped from various Unisoc chipsets via CVE-2022-38694
★ 5 · 2026-08-11
JoshAtticus/ztewaste
Extract a concerning amount of user information from Unisoc ZTE devices using CVE-2022-38694.
★ 3 · 2026-06-03
PoCs 41
★ 142
Last push 2026-09-19 (2 weeks, 6 days ago)
Fetching description from NVD…
Show 8 of 41 repositories
NiteeshPujari/CVE-2025-32433-PoC
CVE-2025-32433 PoC: Unauthenticated Remote Code Execution (RCE) in Erlang/OTP SSH. A proof-of-concept exploit for CVE-2025-32433
★ 7 · 2025-08-14
PoCs 24
★ 353
Last push 2026-09-18 (3 weeks ago)
Fetching description from NVD…
Show 8 of 24 repositories
MrTiz/CVE-2020-0688
Remote Code Execution on Microsoft Exchange Server through fixed cryptographic keys
★ 22 · 2021-06-06
PoCs 88
★ 1026
Last push 2026-09-17 (3 weeks, 1 day ago)
Fetching description from NVD…
Show 8 of 88 repositories
0x4ndy/clif
clif is a command-line interface (CLI) application fuzzer, pretty much what wfuzz or ffuf are for web. It was inspired by sudo vulnerability CVE-2021-3156 and …
★ 100 · 2022-12-22
Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.