Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11117CVEs tracked
26011PoC repositories
12New in 24h
346PoC updated in 7 days
filters
Reset
All New Fresh PoC Hot Multi PoC Critical High

803 results

CVE-2018-6789
MULTI PoC
PoCs 5 ★ 11 Last push 2026-07-15 (2 months, 3 weeks ago)

Fetching description from NVD…

Show 5 repositories
martinclauss/exim-rce-cve-2018-6789

This repository provides a learning environment to understand how an Exim RCE exploit for CVE-2018-6789 works.

★ 11 · 2026-07-15
synacktiv/Exim-CVE-2018-6789

PoC materials to exploit CVE-2018-6789

★ 10 · 2019-10-10
beraphin/CVE-2018-6789
★ 3 · 2020-03-06
thistehneisen/CVE-2018-6789-Python3

Exim < 4.90.1 RCE Vulnerability remake for Python3 with arguments passed from CLI

★ 2 · 2023-08-05
c0llision/exim-vuln-poc

CVE-2018-6789

★ 0 · 2018-05-03
CVE-2025-27591
MULTI PoC
PoCs 18 ★ 32 Last push 2026-07-15 (2 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 18 repositories
BridgerAlderson/CVE-2025-27591-PoC

CVE-2025-27591 is a privilege escalation vulnerability that affected the Below service before version 0.9.0

★ 32 · 2025-07-16
0x00Jeff/CVE-2025-27591

self cleaning CVE-2025-27591 Poc that grants a root reverse shell instead of modifying passwd files

★ 15 · 2026-06-28
obamalaolu/CVE-2025-27591

CVE-2025-27591

★ 13 · 2025-07-12
dollarboysushil/Linux-Privilege-Escalation-CVE-2025-27591

CVE-2025-27591 is a known privilege escalation vulnerability in the Below service (version < v0.9.0)

★ 7 · 2025-07-15
incommatose/CVE-2025-27591-PoC

A Proof of Concept for CVE-2025-27591, a local privilege escalation in Below < v0.9.0

★ 5 · 2025-07-19
rvzsec/CVE-2025-27591

Below v0.8.1 - Local Privilege Escalation (CVE-2025-27591) - PoC Exploit

★ 3 · 2025-11-16
Cythonic1/CVE-2025-27591

a C exploit for CVE-2025-27591, which allow an attacker to escalate privilege to root.

★ 3 · 2025-07-31
00xCanelo/CVE-2025-27591

🔥 Local Privilege Escalation Exploit for CVE-2025-27591 | Abuses world-writable log dir in Below to gain root via /etc/passwd injection

★ 2 · 2025-07-23
CVE-2024-28397
MULTI PoC
PoCs 16 ★ 72 Last push 2026-07-14 (2 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 16 repositories
Marven11/CVE-2024-28397-js2py-Sandbox-Escape

CVE-2024-28397: js2py sandbox escape, bypass pyimport restriction.

★ 72 · 2025-08-28
naclapor/CVE-2024-28397

This repository contains a python exploit code for CVE-2024-28397 intended for use on the "CodePartTwo" machine on Hack The Box (HTB).

★ 12 · 2025-09-09
GhostOverflow/CVE-2024-28397-command-execution-poc

This vulnerability arises from incomplete sandboxing in js2py, where crafted JavaScript can traverse Python’s internal object model and access dangerous classe…

★ 5 · 2025-08-17
L1337Xi/CVE-2024-28397-Exploit-Automation

A Python automation script for exploiting the **js2py Sandbox Escape** vulnerability (CVE-2024-28397). This tool automates the payload generation and delivery …

★ 2 · 2025-12-06
xeloxa/CVE-2024-28397-Js2Py-RCE-Exploit

Professional exploit for CVE-2024-28397: Js2Py Sandbox Escape leading to Remote Code Execution (RCE). Includes modular payload generation.

★ 2 · 2026-02-04
harutomo-jp/CVE-2024-28397-RCE
★ 1 · 2025-08-18
somisec/CVE-2024-28397-Reverse-Shell

Reverse shell for CVE-2024-28397.

★ 1 · 2025-10-12
CVE-2019-18634
HOTMULTI PoC
PoCs 15 ★ 237 Last push 2026-07-14 (2 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 15 repositories
saleemrashid/sudo-cve-2019-18634

Proof of Concept for CVE-2019-18634

★ 237 · 2021-09-12
Plazmaz/CVE-2019-18634

A functional exploit for CVE-2019-18634, a BSS overflow in sudo's pwfeedback feature that allows for for privesc

★ 59 · 2020-02-19
aesophor/CVE-2019-18634

My n-day exploit for CVE-2019-18634 (local privilege escalation)

★ 5 · 2021-08-14
chanbakjsd/CVE-2019-18634

A reproduction of CVE-2019-18634, sudo privilege escalation with buffer overflow.

★ 3 · 2024-04-14
N1et/CVE-2019-18634

An Python Exploit for Sudo vulnerability CVE-2019-18634

★ 2 · 2021-08-11
dukptkey/CVE-2019-18634

exploit for sudo CVE-2019-18634

★ 1 · 2022-11-07
edsonjt81/sudo-cve-2019-18634
★ 0 · 2021-04-25
paras1te-x/CVE-2019-18634

exploit

★ 0 · 2021-05-05
CVE-2023-38646
MULTI PoC
PoCs 39 ★ 52 Last push 2026-07-14 (2 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 39 repositories
Boogipop/MetabaseRceTools

CVE-2023-38646 Metabase RCE

★ 52 · 2023-10-11
robotmikhro/CVE-2023-38646

Automatic Tools For Metabase Exploit Known As CVE-2023-38646

★ 27 · 2023-08-11
securezeron/CVE-2023-38646

POC for CVE-2023-38646

★ 21 · 2023-12-07
0xrobiul/CVE-2023-38646

Metabase Pre-auth RCE (CVE-2023-38646)!!

★ 15 · 2023-07-29
shamo0/CVE-2023-38646-PoC

Metabase Pre-auth RCE

★ 12 · 2023-08-03
Pyr0sec/CVE-2023-38646

Exploit script for Pre-Auth RCE in Metabase (CVE-2023-38646)

★ 11 · 2023-10-15
kh4sh3i/CVE-2023-38646

Metabase Pre-auth RCE (CVE-2023-38646)

★ 9 · 2023-08-19
Pumpkin-Garden/POC_Metabase_CVE-2023-38646

For educational purposes only

★ 6 · 2023-07-28
CVE-2025-33073
HOTMULTI PoC
PoCs 11 ★ 719 Last push 2026-07-13 (2 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 11 repositories
mverschu/CVE-2025-33073

PoC Exploit for the NTLM reflection SMB flaw.

★ 719 · 2026-02-18
uziii2208/CVE-2025-33073

Universal exploitation tool for CVE-2025-33073 targeting Windows Domain Controllers with DNSAdmins privileges and WinRM enabled.

★ 67 · 2025-11-14
obscura-cert/CVE-2025-33073
★ 1 · 2025-06-28
starscow/CVE-2025-33073

PoC Exploit for the NTLM reflection SMB flaw.

★ 0 · 2025-06-15
matejsmycka/CVE-2025-33073-checker

This rough PoC checker script tests targets for CVE-2025-33073 vulnerability by attempting to perform NTLM reflection attacks using NTLM auth coercion via samb…

★ 0 · 2025-07-31
cve-2025-33073/cve-2025-33073
★ 0 · 2025-09-06
CVE-2019-5420
MULTI PoC
PoCs 12 ★ 8 Last push 2026-07-13 (2 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 12 repositories
knqyf263/CVE-2019-5420

CVE-2019-5420 (Ruby on Rails)

★ 8 · 2019-03-21
j4k0m/CVE-2019-5420

A vulnerability can allow an attacker to guess the automatically generated development mode secret token.

★ 5 · 2021-09-07
laffray/ruby-RCE-CVE-2019-5420-

Ruby反序列化命令执行漏洞(CVE-2019-5420)-vulfocus通关版

★ 5 · 2022-07-02
scumdestroy/CVE-2019-5420.rb

POC Exploit written in Ruby

★ 3 · 2022-01-12
WildWestCyberSecurity/cve-2019-5420-POC

cve-2019-5420 POC simple ruby script

★ 1 · 2026-07-13
cved-sources/cve-2019-5420

cve-2019-5420

★ 0 · 2023-01-19
AnasTaoutaou/CVE-2019-5420
★ 0 · 2021-01-11
Eremiel/CVE-2019-5420
★ 0 · 2021-01-20
CVE-2019-0232
HOTMULTI PoC
PoCs 15 ★ 190 Last push 2026-07-12 (2 months, 4 weeks ago)

Fetching description from NVD…

Show 8 of 15 repositories
pyn3rd/CVE-2019-0232

Apache Tomcat Remote Code Execution on Windows

★ 190 · 2019-11-27
jas502n/CVE-2019-0232

Apache Tomcat Remote Code Execution on Windows - CGI-BIN

★ 82 · 2019-04-17
jaiguptanick/CVE-2019-0232

Vulnerability analysis and PoC for the Apache Tomcat - CGIServlet enableCmdLineArguments Remote Code Execution (RCE)

★ 33 · 2021-09-04
setrus/CVE-2019-0232

CVE-2019-0232-Remote Code Execution on Apache Tomcat 7.0.42

★ 20 · 2019-11-21
cyy95/CVE-2019-0232-EXP
★ 3 · 2019-05-23
Dharan10/CVE-2019-0232

Hi this is a revised and enhanced code for CVE-2019-0232

★ 2 · 2024-12-29
CVE-2026-20127
MULTI PoC
PoCs 9 ★ 29 Last push 2026-07-12 (2 months, 4 weeks ago)

Fetching description from NVD…

Show 8 of 9 repositories
sfewer-r7/CVE-2026-20127

An exploit for the Cisco Catalyst SD-WAN Controller authentication bypass vulnerability, CVE-2026-20127

★ 24 · 2026-03-09
BugFor-Pings/CVE-2026-20127_EXP

Cisco Catalyst SD-WAN 身份验证绕过漏洞(CVE-2026-20127)利用EXP

★ 4 · 2026-03-05
gigachadusers/cve-2026-20127
★ 2 · 2026-04-15
randeepajayasekara/CVE-2026-20127

Walkthrough of the CVSS 10.0 authentication bypass in Cisco Catalyst SD-WAN from first malformed peering request to root on the management plane.

★ 0 · 2026-03-04
abrahamsurf/sdwan-scanner-CVE-2026-20127

Cisco SD-WAN Exposure & Potential Vulnerability Scanner (Passive Fingerprinting) 2026

★ 0 · 2026-03-08
0xBlackash/CVE-2026-20127

CVE-2026-20127

★ 0 · 2026-06-14
CVE-2024-47176
MULTI PoC
PoCs 16 ★ 67 Last push 2026-07-10 (3 months ago)

Fetching description from NVD…

Show 8 of 16 repositories
MalwareTech/CVE-2024-47176-Scanner

A simple scanner for identifying vulnerable cups-browsed instances on your network

★ 67 · 2024-10-07
l0n3m4n/CVE-2024-47176

Unauthenticated RCE on cups-browsed (exploit and nuclei template)

★ 17 · 2024-10-03
mr-r3b00t/CVE-2024-47176

Scanner

★ 9 · 2024-09-30
GO0dspeed/spill

POC scanner for CVE-2024-47176

★ 8 · 2024-10-07
lkarlslund/jugular

Ultrafast CUPS-browsed scanner (CVE-2024-47176)

★ 7 · 2024-10-07
aytackalinci/CVE-2024-47176

Vulnerability Scanner for CUPS: CVE-2024-47176

★ 2 · 2026-02-09
gianlu111/CUPS-CVE-2024-47176

A Mass Scanner designed to detect the CVE-2024-47176 vulnerability across systems running the Common Unix Printing System (CUPS).

★ 1 · 2024-10-17
workabhiwin09/CVE-2024-47176

CUPS Browsd Check_CVE-2024-47176

★ 0 · 2024-09-27
CVE-2019-9978
MULTI PoC
PoCs 17 ★ 22 Last push 2026-07-10 (3 months ago)

Fetching description from NVD…

Show 8 of 17 repositories
hash3liZer/CVE-2019-9978

CVE-2019-9978 - (PoC) RCE in Social WarFare Plugin (<=3.5.2)

★ 22 · 2021-06-26
mpgn/CVE-2019-9978

CVE-2019-9978 - RCE on a Wordpress plugin: Social Warfare < 3.5.3

★ 8 · 2019-05-09
KTN1990/CVE-2019-9978

Wordpress Social Warfare Remote Code Execution (AUTO UPLOAD SHELL)

★ 6 · 2019-05-07
grimlockx/CVE-2019-9978

Remote Code Execution in Social Warfare Plugin before 3.5.3 for Wordpress.

★ 4 · 2023-02-03
yup-Ivan/CVE-2019-9978

POC (RCE) -> CVE-2019-9978

★ 4 · 2026-01-27
d3fudd/CVE-2019-9978_Exploit

Social WarFare Plugin (<=3.5.2) Remote Code Execution

★ 3 · 2022-11-15
TokyoHunter/CVE-2019-9978-Social-Warfare-WordPress-RCE

A complete walkthrough and exploit for CVE-2019-9978 - Unauthenticated Remote Code Execution in Social Warfare WordPress plugin ≤ 3.5.2. Includes vulnerable co…

★ 2 · 2026-07-10
echoosso/CVE-2019-9978

A Remote Code Execution (RCE) vulnerability in the Social Warfare plugin for WordPress, affecting versions below 3.5.3.

★ 1 · 2025-04-10
CVE-2021-21974
HOTMULTI PoC
PoCs 7 ★ 186 Last push 2026-07-09 (3 months ago)

Fetching description from NVD…

Show 7 repositories
Shadow0ps/CVE-2021-21974

POC for CVE-2021-21974 VMWare ESXi RCE Exploit

★ 186 · 2026-03-10
Aiyakami/CVE-2021-21974

自研针对ESXI 堆栈溢出的CVE-2021-21974 POC,只支持项目给出的的目标和环境,用于学习和研究

★ 5 · 2026-07-09
n2x4/Feb2023-CVE-2021-21974-OSINT

Analysis of the ransom demands from Shodan results

★ 2 · 2023-02-06
CYBERTHREATANALYSIS/ESXi-Ransomware-Scanner-mi

ESXi EZ - A custom scanner that takes list of IPs either in JSON, CSV or individually and checks for infection CVE-2021-21974

★ 2 · 2023-02-08
hateme021202/cve-2021-21974

Nmap NSE script for cve-2021-21974

★ 0 · 2023-10-19
mercylessghost/CVE-2021-21974
★ 0 · 2025-01-10
abirasecurity/CVE-2021-21974_vuln_dectection

CVE-2021-21974 Vulnerability Detection Tool Safe PoC that identifies vulnerable SLP implementations without exploitation

★ 0 · 2025-09-04
CVE-2026-43503
MULTI PoC
PoCs 8 ★ 35 Last push 2026-07-09 (3 months ago)

Fetching description from NVD…

Show 8 repositories
0xBlackash/CVE-2026-43503

CVE-2026-43503

★ 35 · 2026-06-25
entra1337/DirtyClone

Python Proof of Concept for DirtyClone (CVE-2026-43503) - Linux kernel LPE via page-cache corruption

★ 26 · 2026-06-29
mooder1/dirtyclone-CVE-2026-43503
★ 16 · 2026-06-26
douglasmun/pagecache-lpe-containment-kit

Educational, defensive kit for two Linux page-cache-corruption LPEs (DirtyClone CVE-2026-43503, pedit COW CVE-2026-46331): hardening, detection, verification, …

★ 3 · 2026-06-27
gl1tch0x1/DirtyClone

DirtyClone - local privilege escalation (LPE) proof-of-concept targeting a kernel/XFRM-related vulnerability described in the source as CVE-2026-43503

★ 2 · 2026-06-28
lieehrdiansyah12/CVE-2026-43503
★ 1 · 2026-07-09
sec0x/CVE-2026-43503
★ 0 · 2026-06-28
SecureWithUmer/CVE-2026-43503

DirtyClone - local privilege escalation (LPE) proof-of-concept targeting a kernel/XFRM-related vulnerability described in the source as CVE-2026-43503

★ 0 · 2026-06-29
CVE-2021-40346
MULTI PoC
PoCs 7 ★ 41 Last push 2026-07-09 (3 months ago)

Fetching description from NVD…

Show 7 repositories
knqyf263/CVE-2021-40346

CVE-2021-40346 PoC (HAProxy HTTP Smuggling)

★ 41 · 2021-09-08
donky16/CVE-2021-40346-POC

CVE-2021-40346 integer overflow enables http smuggling

★ 32 · 2021-09-28
alikarimi999/CVE-2021-40346
★ 5 · 2021-09-13
Vulnmachines/HAProxy_CVE-2021-40346

HAProxy CVE-2021-40346

★ 5 · 2022-09-20
alexOarga/CVE-2021-40346

CVE-2021-40346 - HaProxy HTTP request smuggling through integer overflow

★ 0 · 2022-01-24
BoianEduard/CVE-2021-40346

HTTP Request Smuggling

★ 0 · 2026-03-14
jmg0929/CVE-2021-40346

WHS CVE-2021-40346 분석

★ 0 · 2026-07-09
CVE-2022-24706
MULTI PoC
PoCs 5 ★ 29 Last push 2026-07-08 (3 months ago)

Fetching description from NVD…

Show 5 repositories
sadshade/CVE-2022-24706-CouchDB-Exploit

Apache CouchDB 3.2.1 - Remote Code Execution (RCE)

★ 29 · 2022-05-20
ahmetsabrimert/Apache-CouchDB-CVE-2022-24706-RCE-Exploits-Blog-post-

I wrote a blog post about Apache CouchDB CVE-2022-24706 RCE Exploits

★ 1 · 2022-06-14
superzerosec/CVE-2022-24706

CVE-2022-24706 POC exploit

★ 0 · 2022-07-04
becrevex/CVE-2022-24706

Apache CouchDB 3.2.1 - Remote Code Execution (RCE) Checker

★ 0 · 2025-04-25
junghyeonkum/CVE-2022-24706
★ 0 · 2026-07-08
CVE-2022-22954
HOTMULTI PoC
PoCs 26 ★ 1484 Last push 2026-07-08 (3 months ago)

Fetching description from NVD…

Show 8 of 26 repositories
Schira4396/VcenterKiller

一款针对Vcenter的综合利用工具,包含目前最主流的CVE-2021-21972、CVE-2021-21985以及CVE-2021-22005、One Access的CVE-2022-22954、CVE-2022-22972/31656以及log4j,提供一键上传webshell,命令执行或者上传公钥使用SSH免密…

★ 1484 · 2024-04-25
sherlocksecurity/VMware-CVE-2022-22954

POC for VMWARE CVE-2022-22954

★ 279 · 2022-04-13
bewhale/CVE-2022-22954

CVE-2022-22954 VMware Workspace ONE Access freemarker SSTI 漏洞 命令执行、批量检测脚本、文件写入

★ 68 · 2022-04-26
tunelko/CVE-2022-22954-PoC

VMware Workspace ONE Access and Identity Manager RCE via SSTI - Test script for shodan, file or manual.

★ 16 · 2024-02-13
jax7sec/CVE-2022-22954

提供批量扫描URL以及执行命令功能。Workspace ONE Access 模板注入漏洞,可执行任意代码

★ 12 · 2022-04-15
Vulnmachines/VMWare_CVE-2022-22954

CVE-2022-22954 is a server-side template injection vulnerability in the VMware Workspace ONE Access and Identity Manager

★ 11 · 2022-04-11
DrorDvash/CVE-2022-22954_VMware_PoC

PoC for CVE-2022-22954 - VMware Workspace ONE Access Freemarker Server-Side Template Injection

★ 10 · 2022-04-12
orwagodfather/CVE-2022-22954
★ 8 · 2022-06-03
CVE-2025-30065
MULTI PoC
PoCs 7 ★ 12 Last push 2026-07-08 (3 months ago)

Fetching description from NVD…

Show 7 repositories
bjornhels/CVE-2025-30065

PoC

★ 12 · 2025-04-07
h3st4k3r/CVE-2025-30065

This PoC targets CVE-2025-30065, an RCE vulnerability in Apache Parquet via Avro schema deserialization. It abuses the getDefaultValue() mechanism to instantia…

★ 7 · 2026-07-08
ThreatRadarAI/TRAI-001-Critical-RCE-Vulnerability-in-Apache-Parquet-CVE-2025-30065-Simulation

A CVSS 10.0-rated vulnerability in the parquet-avro Java module allows remote code execution via unsafe deserialization when parsing schemas. Tracked as CVE-20…

★ 1 · 2025-04-22
ron-imperva/CVE-2025-30065-PoC

CVE-2025-30065 PoC

★ 0 · 2025-04-05
micrictor/parquet-avro-rce

PoC: CVE-2025-30065 incomplete fix bypass in Apache Parquet Java 1.15.1

★ 0 · 2026-04-06
CVE-2022-46364
MULTI PoC
PoCs 6 ★ 7 Last push 2026-07-07 (3 months ago)

Fetching description from NVD…

Show 6 repositories
kasem545/CVE-2022-46364-Poc

CVE-2022-46364-Poc Apache CXF SSRF via MTOM XOP:Include

★ 7 · 2026-03-28
cybermaksx/CVE-2022-46364-Proof-of-the-concept

This vulnerability allows an attacker to perform SSRF (Server-Side Request Forgery) attacks on Apache CXF webservices that accept MTOM/XOP requests. The issue …

★ 3 · 2026-03-29
jwsly12/CVE-2022-46364-htb-ctf

Exploit CVE-2022-46363

★ 1 · 2026-04-03
0xmid00/CVE-2022-46364-poc

CVE-2022-46364 Apache CXF XOP:Include SSRF / LFI

★ 0 · 2026-03-31
c0gnit00/CVE-2022-46364

Python POC, Exploit for CVE-2022-46364

★ 0 · 2026-07-07
CVE-2021-42278
HOTMULTI PoC
PoCs 6 ★ 1069 Last push 2026-07-07 (3 months ago)

Fetching description from NVD…

Show 6 repositories
safebuffer/sam-the-admin

Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user

★ 1069 · 2022-07-10
Ridter/noPac

Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user

★ 1022 · 2023-01-29
ly4k/Pachine

Python implementation for CVE-2021-42278 (Active Directory Privilege Escalation)

★ 278 · 2022-01-13
waterrr/noPac

Exploiting CVE-2021-42278 and CVE-2021-42287

★ 6 · 2021-12-13
cybersecurityworks553/noPac-detection

Detection script for CVE-2021-42278 and CVE-2021-42287

★ 2 · 2021-12-27
xLTJ/noPac

Go implementation of NoPac, exploiting CVE-2021-42278 and CVE-2021-42287

★ 0 · 2026-07-07
CVE-2022-31814
MULTI PoC
PoCs 9 ★ 23 Last push 2026-07-06 (3 months ago)

Fetching description from NVD…

Show 8 of 9 repositories
Laburity/CVE-2022-31814

Updated Exploit - pfBlockerNG <= 2.1.4_26 Unauth RCE (CVE-2022-31814)

★ 23 · 2024-07-23
EvergreenCartoons/SenselessViolence

CVE-2022-31814 Exploitation Toolkit.

★ 4 · 2022-09-21
Chocapikk/CVE-2022-31814

pfBlockerNG <= 2.1.4_26 Unauth RCE (CVE-2022-31814)

★ 3 · 2023-03-26
drcayber/RCE

CVE-2022-31814

★ 2 · 2023-03-05
TheUnknownSoul/CVE-2022-31814
★ 1 · 2023-03-03
dkstar11q/CVE-2022-31814

pfBlockerNG <= 2.1.4_26 Unauth RCE (CVE-2022-31814)

★ 1 · 2023-03-26
sh4den/CVE-2022-31814

Proof of concept for CVE-2022-31814

★ 1 · 2026-07-06
Madliife0/CVE-2022-31814
★ 0 · 2023-02-22
CVE-2022-29464
HOTMULTI PoC
PoCs 29 ★ 377 Last push 2026-07-06 (3 months ago)

Fetching description from NVD…

Show 8 of 29 repositories
hakivvi/CVE-2022-29464

WSO2 RCE (CVE-2022-29464) exploit and writeup.

★ 377 · 2022-04-27
dsssssssm/WSOB

😭 WSOB is a python tool created to exploit the new vulnerability on WSO2 assigned as CVE-2022-29464.

★ 26 · 2023-05-23
sh4den/CVE-2022-29464

A bots loader for CVE-2022-29464 with multithreading

★ 10 · 2026-07-06
Ap0dexMe0/CVE-2022-29464

Perform With Mass Exploits In WSO Management.

★ 9 · 2023-07-24
gbrsh/CVE-2022-29464

RCE exploit for WSO2

★ 7 · 2022-11-14
Lidong-io/cve-2022-29464

cve-2022-29464 批量脚本

★ 5 · 2022-04-22
hev0x/CVE-2022-29464

WSO2 RCE (CVE-2022-29464)

★ 5 · 2022-04-28
Chocapikk/CVE-2022-29464

Python script to exploit CVE-2022-29464 (mass mode)

★ 5 · 2022-06-01
CVE-2022-27925
MULTI PoC
PoCs 12 ★ 65 Last push 2026-07-06 (3 months ago)

Fetching description from NVD…

Show 8 of 12 repositories
vnhacker1337/CVE-2022-27925-PoC

Zimbra RCE simple poc

★ 65 · 2022-08-13
Josexv1/CVE-2022-27925

Zimbra CVE-2022-27925 PoC

★ 43 · 2022-08-27
sh4den/CVE-2022-27925

A loader for zimbra 2022 rce (cve-2022-27925)

★ 18 · 2026-07-06
jam620/Zimbra

CVE-2022-27925

★ 8 · 2022-09-25
Chocapikk/CVE-2022-27925-Revshell

Python Script to exploit Zimbra Auth Bypass + RCE (CVE-2022-27925)

★ 5 · 2022-09-17
akincibor/CVE-2022-27925

CVE-2022-27925 nuclei template

★ 3 · 2022-09-12
huahuatzt/CVE-2022-27925
★ 0 · 2022-08-14
CVE-2023-51385
MULTI PoC
PoCs 23 ★ 50 Last push 2026-07-06 (3 months ago)

Fetching description from NVD…

Show 8 of 23 repositories
vin01/poc-proxycommand-vulnerable

Proof of conept to exploit vulnerable proxycommand configurations on ssh clients (CVE-2023-51385)

★ 50 · 2023-10-12
LtmThink/CVE-2023-51385_test

一个验证对CVE-2023-51385

★ 7 · 2024-03-17
Le1a/CVE-2023-51385

OpenSSH ProxyCommand RCE

★ 5 · 2023-12-26
WOOOOONG/CVE-2023-51385

CVE-2023-51385 PoC Exploit

★ 2 · 2024-01-02
FeatherStark/CVE-2023-51385
★ 0 · 2023-12-25
watarium/poc-cve-2023-51385
★ 0 · 2023-12-27
WLaoDuo/CVE-2023-51385_poc-test

CVE-2023-51385;OpenSSH ProxyCommand RCE;OpenSSH <9.6 命令注入漏洞poc

★ 0 · 2023-12-27
power1314520/CVE-2023-51385_test

一个验证对CVE-2023-51385

★ 0 · 2023-12-30
CVE-2025-54236
MULTI PoC
PoCs 7 ★ 4 Last push 2026-07-06 (3 months ago)

Fetching description from NVD…

Show 7 repositories
wubinworks/magento2-session-reaper-patch

Patch for CVE-2025-54236(a.k.a Session Reaper) which allows customer account takeover and RCE under certain conditions. This patch is actually a Magento 2 exte…

★ 4 · 2025-11-09
alexb616/SessionReaper-CVE-2025-54236

PoC Magento Session Reaper - CVE-2025-54236

★ 1 · 2026-07-02
amalpvatayam67/day01-sessionreaper-lab

This is a tiny lab that simulates the core idea reported for CVE-2025-54236 (“SessionReaper”)

★ 0 · 2025-09-10
Baba01hacker666/cve-2025-54236

cve-2025-54236 poc

★ 0 · 2026-03-16
Jenderal92/magento-upload-auto-submit-zoneh

SessionReaper-CVE-2025-54236

★ 0 · 2026-06-10
brito101/session_reaper_lab

Ambiente Docker para demonstração prática da CVE-2025-54236 (SessionReaper): PHP Object Deserialization levando a RCE em Magento Open Source 2.4.7

★ 0 · 2026-05-24
Dx3iZ/CVE-2025-54236

Adobe Magento SessionReaper LFI Vulnerability

★ 0 · 2026-07-06
CVE-2017-5715
MULTI PoC
PoCs 5 ★ 54 Last push 2026-07-05 (3 months ago)

Fetching description from NVD…

Show 5 repositories
opsxcq/exploit-cve-2017-5715

Spectre exploit

★ 54 · 2018-01-09
mathse/meltdown-spectre-bios-list

a list of BIOS/Firmware fixes adressing CVE-2017-5715, CVE-2017-5753, CVE-2017-5754

★ 17 · 2018-03-27
GregAskew/SpeculativeExecutionAssessment

Assesses a system for the "speculative execution" vulnerabilities described in CVE-2017-5715, CVE-2017-5753, CVE-2017-5754

★ 0 · 2019-11-24
GalloLuigi/Analisi-CVE-2017-5715
★ 0 · 2024-05-06
iamshivambhatt/Hardware-Vulnerability-with-Proof-of-Concept-

Research and hands-on PoC of Spectre Variant 2 (CVE-2017-5715), a hardware side-channel vulnerability exploiting CPU speculative execution and branch predictio…

★ 0 · 2026-07-05
< Prev Page 17 / 33 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.