Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11117CVEs tracked
26011PoC repositories
12New in 24h
346PoC updated in 7 days
filters
Reset
All New Fresh PoC Hot Multi PoC Critical High

803 results

CVE-2021-4045
HOTMULTI PoC
PoCs 6 ★ 120 Last push 2026-06-12 (3 months, 4 weeks ago)

Fetching description from NVD…

Show 6 repositories
hacefresko/CVE-2021-4045

Exploit for command injection vulnerability found in uhttpd binary from TP-Link Tapo c200 IP camera

★ 120 · 2024-10-31
0xbinder/CVE-2021-4045

🔐 "PWNTAPO: Unveiling Command Injection in TP-Link Tapo C200 Cameras (<= v1.1.16 Build 211209)" 🔓

★ 9 · 2023-12-27
jeffbezosispogg/CVE-2021-4045

TP-Link Tapo c200 ver <1.1.15 - Remote Code Execution (RCE)

★ 1 · 2022-10-08
DorskFR/tapodate

Sets up a local Tapo C200 using CVE-2021-4045

★ 1 · 2025-03-31
234329a423853/CVE-2021-4045

CVE-2021-4045 CVE-2021-4045 is a Command Injection vulnerability that allows Remote Code Execution in the TP-Link Tapo c200 IP camera. It affects all firmware …

★ 1 · 2025-12-11
kaleth4/CVE-2021-4045
★ 0 · 2026-06-12
CVE-2023-21768
HOTMULTI PoC
PoCs 14 ★ 506 Last push 2026-06-11 (3 months, 4 weeks ago)

Fetching description from NVD…

Show 8 of 14 repositories
chompie1337/Windows_LPE_AFD_CVE-2023-21768

LPE exploit for CVE-2023-21768

★ 506 · 2023-07-10
SamuelTulach/nullmap

Using CVE-2023-21768 to manual map kernel mode driver

★ 201 · 2023-03-10
Malwareman007/CVE-2023-21768

Windows_AFD_LPE_CVE-2023-21768

★ 66 · 2023-08-27
cl4ym0re/cve-2023-21768-compiled

cve-2023-21768

★ 27 · 2023-03-10
P4x1s/CVE-2023-21768-POC

CVE-2023-21768 Windows 11 22H2 系统本地提权 POC

★ 23 · 2023-03-22
xboxoneresearch/CVE-2023-21768-dotnet

C# / .NET version of CVE-2023-21768

★ 15 · 2024-09-06
h1bAna/CVE-2023-21768
★ 3 · 2023-04-05
CVE-2023-34362
HOTMULTI PoC
PoCs 15 ★ 140 Last push 2026-06-09 (4 months ago)

Fetching description from NVD…

Show 8 of 15 repositories
horizon3ai/CVE-2023-34362

MOVEit CVE-2023-34362

★ 140 · 2023-06-26
sfewer-r7/CVE-2023-34362

CVE-2023-34362: MOVEit Transfer Unauthenticated RCE

★ 65 · 2024-03-24
Malwareman007/CVE-2023-34362

POC for CVE-2023-34362 affecting MOVEit Transfer

★ 10 · 2023-07-09
kenbuckler/MOVEit-CVE-2023-34362

Repository with everything I have tracking the impact of MOVEit CVE-2023-34362

★ 6 · 2023-06-19
deepinstinct/MOVEit_CVE-2023-34362_IOCs

CVE-2023-34362-IOCs. More information on Deep Instinct's blog site.

★ 2 · 2023-06-06
errorfiathck/MOVEit-Exploit

an exploit of POC for CVE-2023-34362 affecting MOVEit Transfer

★ 2 · 2023-08-31
toorandom/moveit-payload-decrypt-CVE-2023-34362

This shellscript given the OrgKey 0 will parse the header of the base64 artifacts found in MOVEit Logs and decrypt the Serialized object used a payload

★ 1 · 2023-07-19
CVE-2020-17103
MULTI PoC
PoCs 6 ★ 46 Last push 2026-06-07 (4 months ago)

Fetching description from NVD…

Show 6 repositories
AlexLinov/MiniPlasma-Runner

CVE-2020-17103 adapted for C2 with split-binary SYSTEM callback

★ 46 · 2026-05-20
CaptainChicky/MiniPlasma

CVE-2020-17103 was apparently not patched or the patch was reversed, regardless this the PoC for an LPE in cldflt.sys

★ 3 · 2026-05-16
mohammadzarnian1357/MiniPlasma

CVE-2020-17103

★ 2 · 2026-05-14
arch1m3d/MiniPlasma-Detection

Sigma detection rule for MiniPlasma (CVE-2020-17103)

★ 1 · 2026-05-18
rfranca777/miniplasma-advisory

MiniPlasma CVE-2020-17103 mitigation advisory

★ 0 · 2026-06-04
0xBlackash/CVE-2020-17103

CVE-2020-17103

★ 0 · 2026-06-07
CVE-2023-28121
MULTI PoC
PoCs 8 ★ 41 Last push 2026-06-07 (4 months ago)

Fetching description from NVD…

Show 8 repositories
gbrsh/CVE-2023-28121

WooCommerce Payments: Unauthorized Admin Access Exploit

★ 41 · 2023-05-31
im-hanzou/Mass-CVE-2023-28121

CVE-2023-28121 - WooCommerce Payments < 5.6.2 - Unauthenticated Privilege Escalation [ Mass Add Admin User ]

★ 11 · 2023-07-14
rio128128/Mass-CVE-2023-28121-kdoec

CVE-2023-28121 - WooCommerce Payments < 5.6.2 - Unauthenticated Privilege Escalation [ Mass Add Admin User ]

★ 1 · 2023-07-12
luisdevpentest/CVE-2023-28121-WordPress-Privilege-Escalation

Exploração prática de vulnerabilidade crítica no WordPress usando o plugin WooCommerce Payments.

★ 1 · 2026-04-30
Jenderal92/WP-CVE-2023-28121

Wordpress CVE-2023-28121

★ 0 · 2026-05-30
1337nemojj/CVE-2023-28121

Python research notes and tooling for CVE-2023-28121

★ 0 · 2026-06-07
sug4r-wr41th/CVE-2023-28121

WooCommerce Payments (WordPress plugin) =< 5.6.1 CVE-2023-28121 PoC

★ 0 · 2025-04-12
0axz-tools/CVE-2023-28121
★ 0 · 2025-10-19
CVE-2024-0044
HOTMULTI PoC
PoCs 15 ★ 332 Last push 2026-06-06 (4 months ago)

Fetching description from NVD…

Show 8 of 15 repositories
0xbinder/CVE-2024-0044

CVE-2024-0044: a "run-as any app" high-severity vulnerability affecting Android versions 12 and 13

★ 332 · 2024-12-02
canyie/CVE-2024-0044

RunAsAnyone: PoC and writeup for bypassing the initial patch of CVE-2024-0044, Android run-as any app vulnerability allowing privilege escalation from adb to i…

★ 180 · 2024-09-30
scs-labrat/android_autorooter

Exfiltrate sensitive user data from apps on Android 12 and 13 using CVE-2024-0044 vulnerability remotely

★ 80 · 2024-07-31
sridhar-sec/EvilDroid

EvilDroid automates the exploitation of CVE-2024-0044, installing malicious payloads on a target device and extracting sensitive data. It features automated AD…

★ 31 · 2025-09-06
Re13orn/CVE-2024-0044-EXP

利用 CVE-2024-0044 Android 权限提升下载任意目标App沙箱文件。

★ 16 · 2024-09-03
MrW0l05zyn/cve-2024-0044

CVE-2024-0044

★ 12 · 2024-08-24
hackerronin/CVE-2024-0044

a vulnerability affecting Android version 12 & 13

★ 6 · 2024-08-13
007CRIPTOGRAFIA/c-CVE-2024-0044

CVE-2024-0044: uma vulnerabilidade de alta gravidade do tipo "executar como qualquer aplicativo" que afeta as versões 12 e 13 do Android

★ 4 · 2024-07-11
CVE-2025-8671
MULTI PoC
PoCs 5 ★ 6 Last push 2026-06-04 (4 months ago)

Fetching description from NVD…

Show 5 repositories
moften/CVE-2025-8671-MadeYouReset-HTTP-2-DDoS

CVE-2025-25063 MadeYouReset HTTP/2 DDoS

★ 6 · 2025-12-09
ayushghatkar8080/MadeYouReset_Tester

A Python script that checks if a web server is vulnerable to MadeYouReset (CVE-2025-8671) — an HTTP/2 DoS attack that bypasses Rapid Reset mitigations by trick…

★ 4 · 2026-06-04
mateusm1403/PoC-CVE-2025-8671-MadeYouReset-HTTP-2

PoC para validar vulnerabilidade MadeYouReset

★ 2 · 2025-08-21
abiyeenzo/CVE-2025-8671

PoC éducatif pour la vulnérabilité CVE-2025-8671 (DoS HTTP/2 sur lighttpd). À utiliser uniquement en laboratoire local.

★ 0 · 2025-08-23
mysara2022/CVE-2025-8671-vulnerability-POC-

CVE-2025-8671 vulnerability POC

★ 0 · 2026-03-07
CVE-2025-4138
MULTI PoC
PoCs 5 ★ 17 Last push 2026-06-04 (4 months ago)

Fetching description from NVD…

Show 5 repositories
DesertDemons/CVE-2025-4138-4517-POC

CVE-2025-4138 / CVE-2025-4517 — Python tarfile PATH_MAX Symlink Filter Bypass

★ 17 · 2026-06-04
thefizzyfish/CVE-2025-4138_tarfile_filter_bypass

CVE-2025-4138 - Python Arbitrary file write outside extraction directory

★ 4 · 2026-02-17
kyakei/CVE-2025-4138-poc

A Python script to generate a malicious tar archive that exploits CVE-2025-4138 / CVE-2025-4517.

★ 1 · 2026-02-16
localh0ste/CVE-2025-4138

Tarfile module directory traversal vulnerability ( with overflow crossed Directory ) --> Lead to Privilege escalation

★ 0 · 2026-02-17
d3vn0mi/CVE-2025-4138-POC

Python PoC for CVE-2025-4138, a path traversal in Python's tarfile module abusing symlink chains to bypass PATH_MAX for arbitrary file write

★ 0 · 2026-02-22
CVE-2013-0156
MULTI PoC
PoCs 8 ★ 5 Last push 2026-06-03 (4 months, 1 week ago)

Fetching description from NVD…

Show 8 repositories
bsodmike/rails-exploit-cve-2013-0156

Bootstrapped Rails 3.2.10 to test the remote code exploit CVE-2013-0156

★ 5 · 2013-01-13
heroku/heroku-CVE-2013-0156

Inspect all of your heroku apps to see if they are running a vulnerable version of Rails

★ 1 · 2026-06-03
terracatta/name_reverser

Silly Rails App to demonstrate vuln CVE-2013-0156

★ 0 · 2013-01-10
josal/crack-0.1.8-fixed

crack repo from jnunemaker but with version 0.1.8 and rails CVE-2013-0156 vulnerability fixed

★ 0 · 2013-01-11
R3dKn33-zz/CVE-2013-0156

Arbitrary deserialization that can be used to trigger SQL injection and even Code execution

★ 0 · 2019-05-27
Jjdt12/kuang_grade_mk11

Pseudo shell for CVE-2013-0156.

★ 0 · 2023-07-29
oxben10/CVE-2013-0156

This script is specifically designed to solve the challenge on PentesterLab for the CVE-2013-0156 exploit

★ 0 · 2024-11-13
7s26simon/CVE-2013-0156

Modified ruby script for RCE

★ 0 · 2025-12-11
CVE-2024-38475
MULTI PoC
PoCs 5 ★ 16 Last push 2026-06-01 (4 months, 1 week ago)

Fetching description from NVD…

Show 5 repositories
p0in7s/CVE-2024-38475
★ 16 · 2024-08-18
soltanali0/CVE-2024-38475

exploit CVE-2024-38475(mod_rewrite weakness with filesystem path matching)

★ 4 · 2024-12-12
syaifulandy/CVE-2024-38475

CVE-2024-38475 Scanner using FFUF + Seclists

★ 0 · 2025-05-09
Nyakki-Labs-0x420/Myesve

CVE-2024-38475 exploitation & scanning tool with Mullvad VPN rotation

★ 0 · 2026-06-01
CVE-2019-6340
MULTI PoC
PoCs 11 ★ 71 Last push 2026-05-31 (4 months, 1 week ago)

Fetching description from NVD…

Show 8 of 11 repositories
jas502n/CVE-2019-6340

Drupal8's REST RCE, SA-CORE-2019-003, CVE-2019-6340

★ 71 · 2020-06-10
knqyf263/CVE-2019-6340

Environment for CVE-2019-6340 (Drupal)

★ 42 · 2023-06-19
g0rx/Drupal-SA-CORE-2019-003

CVE-2019-6340-Drupal SA-CORE-2019-003

★ 30 · 2019-02-24
oways/CVE-2019-6340

CVE-2019-6340 POC Drupal rce

★ 11 · 2019-02-25
ludy-dev/drupal8-REST-RCE

(CVE-2019-6340, CVE-2018-7600) drupal8-REST-RCE

★ 4 · 2020-11-07
DevDungeon/CVE-2019-6340-Drupal-8.6.9-REST-Auth-Bypass

CVE-2019-6340 Drupal 8.6.9 REST Auth Bypass examples

★ 2 · 2019-02-25
cved-sources/cve-2019-6340

cve-2019-6340

★ 0 · 2021-04-15
josehelps/cve-2019-6340-bits

Bits generated while analyzing CVE-2019-6340 Drupal RESTful RCE

★ 0 · 2019-03-12
CVE-2025-6934
MULTI PoC
PoCs 10 ★ 9 Last push 2026-05-30 (4 months, 1 week ago)

Fetching description from NVD…

Show 8 of 10 repositories
Nxploited/CVE-2025-6934

Opal Estate Pro <= 1.7.5 - Unauthenticated Privilege Escalation

★ 9 · 2025-07-01
0xgh057r3c0n/CVE-2025-6934

CVE-2025-6934 is a critical vulnerability in the WordPress Opal Estate Pro plugin (<= 1.7.5) that allows unauthenticated attackers to create new administrator …

★ 5 · 2025-08-17
yukinime/CVE-2025-6934
★ 5 · 2025-08-27
1atakan1/CVE-2025-6934
★ 3 · 2026-01-30
AnotherSec/CVE-2025-6934

Opal Estate Pro <= 1.7.5 - Unauthenticated Privilege Escalation

★ 2 · 2025-11-26
MrjHaxcore/CVE-2025-6934

CVE-2025-6934 POC

★ 1 · 2025-07-02
Rosemary1337/CVE-2025-6934

CVE-2025-6934 - Exploit WordPress Opal Estate Pro

★ 0 · 2025-09-08
Jenderal92/WP-CVE-2025-6934

WP-CVE-2025-6934 | Opal Estate Pro <= 1.7.5 - Unauthenticated Privilege Escalation

★ 0 · 2026-05-30
CVE-2023-5360
MULTI PoC
PoCs 8 ★ 13 Last push 2026-05-30 (4 months, 1 week ago)

Fetching description from NVD…

Show 8 repositories
phankz/Worpress-CVE-2023-5360
★ 13 · 2023-11-30
Chocapikk/CVE-2023-5360

Exploit for the unauthenticated file upload vulnerability in WordPress's Royal Elementor Addons and Templates plugin (< 1.3.79). CVE-ID: CVE-2023-5360.

★ 10 · 2023-11-02
Pushkarup/CVE-2023-5360

The Royal Elementor Addons and Templates WordPress plugin before 1.3.79 does not properly validate uploaded files, which could allow unauthenticated users to u…

★ 5 · 2023-11-05
sagsooz/CVE-2023-5360

CVE-2023-5360 Auto Shell Upload WordPress Royal Elementor 1.3.78 Shell Upload

★ 3 · 2023-10-21
X3RX3SSec/CVE-2023-5360

Royal Elementor Addons - Unauthenticated Remote Code Execution

★ 2 · 2025-07-15
LaviruDilshan/CVE-2023-5360-exploit-with-native-libraries

CVE-2023-5360 PoC: Unauthenticated arbitrary file upload leading to RCE in Royal Elementor Addons (≤ 1.3.78), written in pure Python.

★ 1 · 2025-12-27
nastar-id/CVE-2023-5360

CVE-2023-5360

★ 0 · 2023-10-26
Jenderal92/WP-CVE-2023-5360

Wordpress CVE-2023-5360

★ 0 · 2026-05-30
CVE-2023-32243
MULTI PoC
PoCs 8 ★ 86 Last push 2026-05-30 (4 months, 1 week ago)

Fetching description from NVD…

Show 8 repositories
RandomRobbieBF/CVE-2023-32243

CVE-2023-32243 - Essential Addons for Elementor 5.4.0-5.7.1 - Unauthenticated Privilege Escalation

★ 86 · 2023-06-05
Jenderal92/WP-CVE-2023-32243

Wordpress CVE-2023-32243

★ 5 · 2026-05-30
gbrsh/CVE-2023-32243

Exploit for CVE-2023-32243 - Unauthorized Account Takeover.

★ 4 · 2023-05-31
thatonesecguy/Wordpress-Vulnerability-Identification-Scripts

Identifies domains which run WordPress and tests against vulnerabilities (CVE-2023-32243) / #VU76395 / etc...

★ 2 · 2023-05-29
little44n1o/cve-2023-32243

poc

★ 1 · 2023-05-13
YouGina/CVE-2023-32243

Vulnerable docker to test for: CVE-2023-32243

★ 0 · 2023-05-24
CVE-2023-34960
MULTI PoC
PoCs 6 ★ 34 Last push 2026-05-30 (4 months, 1 week ago)

Fetching description from NVD…

Show 6 repositories
Aituglo/CVE-2023-34960

CVE-2023-34960 Chamilo PoC

★ 34 · 2023-06-09
Ap0dexMe0/CVE-2023-34960

Perform with Massive Command Injection (Chamilo)

★ 23 · 2023-07-31
Mantodkaz/CVE-2023-34960
★ 4 · 2023-09-05
Jenderal92/CHAMILO-CVE-2023-34960

Wordpress CVE-2023-34960

★ 1 · 2026-05-30
YongYe-Security/CVE-2023-34960

Chamilo CVE-2023-34960 Batch scan/exploit

★ 0 · 2023-07-09
tpdlshdmlrkfmcla/cve-2023-34960

chamilo soap api rce (/webservices/additional_webservices.php)

★ 0 · 2025-03-30
CVE-2014-3566
HOTMULTI PoC
PoCs 7 ★ 267 Last push 2026-05-30 (4 months, 1 week ago)

Fetching description from NVD…

Show 7 repositories
mpgn/poodle-PoC

:poodle: Poodle (Padding Oracle On Downgraded Legacy Encryption) attack CVE-2014-3566 :poodle:

★ 267 · 2023-10-06
cloudpassage/mangy-beast

CloudPassage Halo policy for detecting vulnerability to CVE-2014-3566 (AKA POODLE)

★ 0 · 2015-09-21
GoRuGoo/poodle-attack-sandbox

Test code for poodle attack (CVE-2014-3566)

★ 0 · 2025-01-27
josecl200/VC-PoodlePOC

Vibe coded POC of exploitation of the POODLE CVE-2014-3566

★ 0 · 2026-04-26
jmonge12/Home-Network-Vulnerability-Assessment

Auditoría de seguridad y análisis de vulnerabilidades (CVE-2014-3566 y CVE-2010-2333) en la infraestructura de red local y router residencial.

★ 0 · 2026-05-30
CVE-2023-30253
MULTI PoC
PoCs 9 ★ 41 Last push 2026-05-30 (4 months, 1 week ago)

Fetching description from NVD…

Show 8 of 9 repositories
nikn0laty/Exploit-for-Dolibarr-17.0.0-CVE-2023-30253

Reverse Shell POC exploit for Dolibarr <= 17.0.0 (CVE-2023-30253), PHP Code Injection

★ 41 · 2024-05-28
dollarboysushil/Dolibarr-17.0.0-Exploit-CVE-2023-30253

In Dolibarr 17.0.0 with the CMS Website plugin (core) enabled, an authenticated attacker can obtain remote command execution via php code injection bypassing t…

★ 9 · 2024-06-24
Rubikcuv5/cve-2023-30253

Dolibarr before 17.0.1 allows remote code execution by an authenticated user via an uppercase manipulation: <?PHP instead of <?php in injected data.

★ 7 · 2024-05-26
g4nkd/CVE-2023-30253-PoC

I couldn’t find a PoC for CVE-2023-30253, so I developed an effective one

★ 1 · 2024-07-31
andria-dev/DolibabyPhp

An authenticated RCE exploit for Dolibarr ERP/CRM CVE-2023-30253.

★ 1 · 2024-07-20
04Shivam/CVE-2023-30253-Exploit

Poc for CVE-2023-30253

★ 0 · 2024-05-27
bluetoothStrawberry/CVE-2023-30253

Dolibarr 17.0.0 PHP Code Injection Exploit

★ 0 · 2024-09-20
1lkla/POC-exploit-for-Dolibarr

POC exploit for Dolibarr <= 17.0.0 (CVE-2023-30253)

★ 0 · 2025-12-24
CVE-2025-9074
MULTI PoC
PoCs 18 ★ 49 Last push 2026-05-30 (4 months, 1 week ago)

Fetching description from NVD…

Show 8 of 18 repositories
BridgerAlderson/CVE-2025-9074-PoC

A vulnerability has been identified in Docker Desktop. A remote attacker could exploit this vulnerability to trigger security restriction bypass on the targete…

★ 49 · 2025-12-07
Shaoshi17/CVE-2025-9074-Docker-Exploit

一个功能强大的 Docker 远程 API 漏洞利用工具,用于 CVE-2025-9074 漏洞的安全研究和测试。

★ 13 · 2025-12-26
zenzue/CVE-2025-9074
★ 10 · 2025-08-25
j3r1ch0123/CVE-2025-9074

New vulnerability found in Docker. Credit for finding the vulnerability goes to Felix Boulet

★ 8 · 2025-09-03
OilSeller2001/PoC-for-CVE-2025-9074

Proof-of-Concept exploit for CVE-2025-9074 - Unauthenticated Docker API exposure allowing arbitrary container creation and host filesystem access.

★ 4 · 2025-10-06
xwpdx0/poc-2025-9074

Docker API CVE-2025-9074 PoC (Proof-Of-Concept). A sophisticated exploitation framework for CVE-2025-9074, targeting unauthenticated Docker API endpoints with …

★ 4 · 2025-12-09
PtechAmanja/CVE-2025-9074-Docker-Desktop-Container-Escape

Proof of concept exploit for CVE-2025-9074 - Unauthenticated Docker Engine API container escape affecting Docker Desktop < 4.44.3 on Windows and macOS (CVSS 9…

★ 3 · 2025-12-09
pppxo/CVE-2025-9074-PoC-Bash
★ 1 · 2025-12-10
CVE-2022-26923
MULTI PoC
PoCs 9 ★ 80 Last push 2026-05-29 (4 months, 1 week ago)

Fetching description from NVD…

Show 8 of 9 repositories
evilashz/PIGADVulnScanner

检测域内常见一把梭漏洞,包括:NoPac、ZeroLogon、CVE-2022-26923、PrintNightMare

★ 80 · 2023-10-23
LudovicPatho/CVE-2022-26923_AD-Certificate-Services

The vulnerability allowed a low-privileged user to escalate privileges to domain administrator in a default Active Directory environment with the Active Direct…

★ 41 · 2022-05-14
lsecqt/CVE-2022-26923-Powershell-POC

A powershell poc to load and automatically run Certify and Rubeus from memory.

★ 17 · 2022-08-17
r1skkam/TryHackMe-CVE-2022-26923

Walkthrough on the exploitation of CVE-2022-26923, a vulnerability in AD Certificate Services

★ 6 · 2022-05-12
Gh-Badr/CVE-2022-26923

A proof of concept exploiting CVE-2022-26923.

★ 2 · 2023-12-09
Eliasdekiniweek/CVE-2022-26923

Exploitation de CVE-2022-26923

★ 1 · 2026-02-21
Yowise/CVE-2022-26923
★ 0 · 2024-09-01
rayngnpc/CVE-2022-26923-rayng

Exploitation for CVE-2022-26923

★ 0 · 2025-03-04
CVE-2026-35616
MULTI PoC
PoCs 8 ★ 37 Last push 2026-05-28 (4 months, 1 week ago)

Fetching description from NVD…

Show 8 repositories
Alaatk/CVE-2026-35616

Fortinet FortiClientEMS improper access control

★ 37 · 2026-04-20
BishopFox/CVE-2026-35616-check
★ 2 · 2026-04-06
0xBlackash/CVE-2026-35616

CVE-2026-35616

★ 1 · 2026-04-04
keraattin/CVE-2026-35616

CVE-2026-35616 - FortiClient EMS Pre-Authentication API Bypass (CVSS 9.1, CISA KEV). Python & Nmap NSE detection scripts with full technical breakdown. One for…

★ 1 · 2026-04-13
wa6n3r/CVE-2026-35616
★ 1 · 2026-04-20
fevar54/CVE-2026-35616-detector.py

Detector de CVE-2026-35616: identifica servidores FortiClient EMS vulnerables (7.4.5-7.4.6).

★ 0 · 2026-04-06
fevar54/forticlient_ems_cve_2026_35616_poc.py

PoC de CVE-2026-35616: control de acceso indebido en FortiClient EMS.

★ 0 · 2026-04-06
HORKimhab/CVE-2026-35616

CVE-2026-35616 - Draft

★ 0 · 2026-05-28
CVE-2023-35813
MULTI PoC
PoCs 5 ★ 7 Last push 2026-05-27 (4 months, 1 week ago)

Fetching description from NVD…

Show 5 repositories
aalexpereira/CVE-2023-35813

Exploit for CVE-2023-35813 POC

★ 7 · 2023-12-31
BagheeraAltered/CVE-2023-35813-PoC

An exploit for the Sitecore Remote Code Execution Vulnerability

★ 4 · 2026-02-20
her3ticAVI/CVE-2023-35813

CVE-2023-35813 is a proof-of-concept used to determine if an instance of Sitecore is vulnerable by analyzing a server Response Header for modification.

★ 3 · 2026-03-27
Rezy-Dev/CVE-2023-35813

Exploit CVE-2023-35813 PoC Script

★ 0 · 2025-11-30
nmlz/CVE-2023-35813_PoC
★ 0 · 2026-05-27
CVE-2024-23113
MULTI PoC
PoCs 7 ★ 11 Last push 2026-05-26 (4 months, 2 weeks ago)

Fetching description from NVD…

Show 7 repositories
p33d/CVE-2024-23113
★ 11 · 2024-10-27
CheckCve2/CVE-2024-23113

test_private_CVE

★ 1 · 2024-10-11
puckiestyle/CVE-2024-23113
★ 1 · 2024-10-31
MAVRICK-1/cve-2024-23113-test-env
★ 1 · 2025-07-02
ownouwa/cve-2024-23113-poc

CVE-2024-23113 是一个在 Linux Kernel 中被发现的漏洞,它属于 任意代码执行漏洞,影响了 bpf (Berkeley Packet Filter) 子系统。具体来说,这个漏洞影响了 bpf 程序的 bpf_prog 类型的对象,并且可以允许攻击者通过构造恶意的 BPF 程序来在内核空间执行恶…

★ 0 · 2024-11-28
iambrayden/CVE-2024-23113

This python scripts searches a client list to see if their FortiGate device is vulnerable to this CVE.

★ 0 · 2025-05-02
MinhPham123456789/PoC-CVE-2024-23113

A proof of concept for CVE 2024 23113 inspired by WatchTowr's article.

★ 0 · 2026-05-26
CVE-2012-2982
MULTI PoC
PoCs 18 ★ 42 Last push 2026-05-25 (4 months, 2 weeks ago)

Fetching description from NVD…

Show 8 of 18 repositories
JohnHammond/CVE-2012-2982

A Python replicated exploit for Webmin 1.580 /file/show.cgi Remote Code Execution

★ 42 · 2021-09-28
cd6629/CVE-2012-2982-Python-PoC

This was converted from a metasploit module as an exercise for OSCP studying

★ 5 · 2020-10-30
0xTas/CVE-2012-2982

An exploit for CVE-2012-2982 implemented in Rust

★ 3 · 2022-12-15
OstojaOfficial/CVE-2012-2982

Python exploit for CVE-2012-2982

★ 2 · 2020-10-25
Gvmyz/CVE-2012-2982_Python

PoC Python script as an exercice from tryhackme.

★ 1 · 2021-03-19
JRrooot/CVE-2012-2982-Webmin-RCE

Python PoC for Webmin 1.580 Remote Command Execution (CVE-2012-2982)

★ 1 · 2026-01-06
Ari-Weinberg/CVE-2012-2982

Exploit for CVE-2012-2982

★ 0 · 2021-04-06
varppi/CVE-2012-2982
★ 0 · 2023-03-10
CVE-2023-26360
MULTI PoC
PoCs 6 ★ 5 Last push 2026-05-24 (4 months, 2 weeks ago)

Fetching description from NVD…

Show 6 repositories
yosef0x01/CVE-2023-26360

Exploit for Arbitrary File Read for CVE-2023-26360 - Adobe Coldfusion

★ 4 · 2024-06-22
CuriousLearnerDev/ColdFusion_EXp

Adobe ColdFusion CVE-2023-26360/CVE-2023-29298 自动化实现反弹

★ 1 · 2024-09-03
H3rm1tR3b0rn/CVE-2023-26360-RCE

Exploit for Remote Code Execution in ColdFusion 2021 (CVE-2023-26360)

★ 1 · 2025-10-28
joaoaugustom/Adobe_ColdFusion_RCE_Unauthenticated

This exploit is based on CVE-2023-26360 (https://nvd.nist.gov/vuln/detail/CVE-2023-26360) and was built on top of the Metasploit module and the jakabakos/CVE-2…

★ 1 · 2026-05-24
RyanRodrigues880/CVE-2023-26360

Exploit - CVE-2023-26360

★ 0 · 2025-11-28
CVE-2019-8942
MULTI PoC
PoCs 5 ★ 74 Last push 2026-05-23 (4 months, 2 weeks ago)

Fetching description from NVD…

Show 5 repositories
brianwrf/WordPress_4.9.8_RCE_POC

A simple PoC for WordPress RCE (author priviledge), refer to CVE-2019-8942 and CVE-2019-8943.

★ 74 · 2019-03-18
synacktiv/CVE-2019-8942

WordPress crop-image exploitation

★ 4 · 2019-05-02
tuannq2299/CVE-2019-8942
★ 1 · 2022-05-31
SpeatX/WordPress-RCE-CVE-2019-8942

Python exploit toolkit for WordPress Crop Image RCE — CVE-2019-8942 & CVE-2019-8943

★ 1 · 2026-05-23
synod2/WP_CROP_RCE

cve-2019-8942, cve-2019-8943

★ 0 · 2021-05-05
< Prev Page 19 / 33 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.