Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11117CVEs tracked
26011PoC repositories
12New in 24h
345PoC updated in 7 days
filters
Reset
All New Fresh PoC Hot Multi PoC Critical High

803 results

CVE-2007-4559
MULTI PoC
PoCs 7 ★ 82 Last push 2026-04-18 (5 months, 3 weeks ago)

Fetching description from NVD…

Show 7 repositories
advanced-threat-research/Creosote

Creosote is our solution to searching for the tarfile vulnerability described by CVE-2007-4559.

★ 82 · 2022-09-23
depers-rus/CVE-2007-4559
★ 1 · 2025-07-01
Ooscaar/MALW

CVE-2007-4559 - Polemarch exploit

★ 0 · 2023-01-12
davidholiday/CVE-2007-4559
★ 0 · 2023-09-12
luigigubello/trellix-tarslip-patch-bypass

Bypass for CVE-2007-4559 Trellix patch

★ 0 · 2024-05-03
m0d0ri205/wargame-tarpioka

YISF 2024 CTF-Web (Directory Traversal via ".tar" file, CVE-2007-4559), easy

★ 0 · 2024-09-24
jithinodattu/CVE-2007-4559-lab
★ 0 · 2026-04-18
CVE-2021-35042
MULTI PoC
PoCs 6 ★ 13 Last push 2026-04-18 (5 months, 3 weeks ago)

Fetching description from NVD…

Show 6 repositories
YouGina/CVE-2021-35042

SQL injection via unsanitized QuerySet.order_by() input

★ 13 · 2021-07-10
r4vi/CVE-2021-35042
★ 5 · 2022-02-10
zer0qs/CVE-2021-35042

A basic analysis about CVE-2021-35942. SQL injection in Django.

★ 2 · 2022-04-29
mrlihd/CVE-2021-35042

Reproduce CVE-2021-35042

★ 0 · 2021-09-18
LUUANHDUC/CVE-2021-35042

Django SQL injection vulnerability

★ 0 · 2023-05-18
CVE-2024-24590
MULTI PoC
PoCs 6 ★ 9 Last push 2026-04-16 (5 months, 3 weeks ago)

Fetching description from NVD…

Show 6 repositories
diegogarciayala/CVE-2024-24590-ClearML-RCE-CMD-POC

CVE-2024-24590 ClearML RCE&CMD POC

★ 9 · 2024-06-15
OxyDeV2/ClearML-CVE-2024-24590

Proof of concept for CVE-2024-24590

★ 6 · 2024-06-13
rippsec/CVE-2024-24590-ClearML-RCE-Exploit

CVE-2024-24590 – ClearML RCE via unsafe pickle artifact deserialization (0.17.0–1.14.2)

★ 6 · 2026-04-16
sviim/ClearML-CVE-2024-24590-RCE

With this script you can exploit the CVE-2024-24590

★ 4 · 2024-07-21
junnythemarksman/CVE-2024-24590

Deserialization of untrusted data can occur in versions 0.17.0 to 1.14.2 of the client SDK of Allegro AI’s ClearML platform, enabling a maliciously uploaded ar…

★ 1 · 2024-06-21
j3r1ch0123/CVE-2024-24590

Created this exploit for the Hack The Box machine, Blurry.

★ 0 · 2024-10-07
CVE-2025-49113
HOTMULTI PoC
PoCs 22 ★ 107 Last push 2026-04-16 (5 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 22 repositories
fearsoff-org/CVE-2025-49113
★ 107 · 2025-06-06
hakaioffsec/CVE-2025-49113-exploit

Proof of Concept demonstrating Remote Code Execution through insecure deserialization in Roundcube (CVE-2025-49113).

★ 92 · 2025-06-06
00xCanelo/CVE-2025-49113

💥 Python Exploit for CVE-2025-49113 | Roundcube Webmail RCE via PHP Object Injection

★ 7 · 2025-07-19
BiiTts/Roundcube-CVE-2025-49113

Proof-of-concept to CVE-2025-49113

★ 6 · 2025-06-10
rxerium/CVE-2025-49113

Detection for CVE-2025-49113

★ 5 · 2025-10-24
Zwique/CVE-2025-49113

POC of CVE-2025-49113

★ 5 · 2025-08-25
Ademking/CVE-2025-49113-nuclei-template

CVE-2025-49113 - Roundcube <= 1.6.10 Post-Auth RCE via PHP Object Deserialization

★ 3 · 2025-06-04
rasool13x/exploit-CVE-2025-49113
★ 3 · 2025-06-06
CVE-2023-29357
HOTMULTI PoC
PoCs 8 ★ 236 Last push 2026-04-13 (5 months, 3 weeks ago)

Fetching description from NVD…

Show 8 repositories
Chocapikk/CVE-2023-29357

Microsoft SharePoint Server Elevation of Privilege Vulnerability

★ 236 · 2023-09-26
LuemmelSec/CVE-2023-29357
★ 55 · 2023-10-10
KeyStrOke95/CVE-2023-29357-ExE

Recreation of the SharePoint PoC for CVE-2023-29357 in C# from LuemmelSec

★ 2 · 2023-10-10
Jev1337/CVE-2023-29357-Check

A Python script that verifies whether a target is vulnerable to CVE-2023-29357 or not

★ 1 · 2024-01-01
AhmedMansour93/Event-ID-189-Rule-Name-SOC227-CVE-2023-29357

Event ID 189 Rule Name SOC227 Microsoft SharePoint Server Elevation of Privilege Possible CVE-2023-29357 .. Exploitation

★ 0 · 2024-09-12
DonVorrin/CVE-2023-29357
★ 0 · 2026-04-13
CVE-2023-38408
MULTI PoC
PoCs 10 ★ 53 Last push 2026-04-12 (5 months, 4 weeks ago)

Fetching description from NVD…

Show 8 of 10 repositories
kali-mx/CVE-2023-38408

PoC for the recent critical vuln affecting OpenSSH versions < 9.3p2

★ 53 · 2024-11-09
LucasPDiniz/CVE-2023-38408

Takeover Account OpenSSH

★ 45 · 2024-06-30
TX-One/CVE-2023-38408

CVE-2023-38408 SSH Vulnerability Scanner & PoC

★ 7 · 2025-04-19
Adel2411/cve-2023-38408

An in-depth analysis of CVE 2023 38408, a critical OpenSSH vulnerability, including technical background, exploitation in controlled environments, and mitigati…

★ 5 · 2025-07-16
classic130/CVE-2023-38408

CVE-2023-38408 Remote Code Execution in OpenSSH's forwarded ssh-agent

★ 3 · 2023-07-25
mrtacojr/CVE-2023-38408

Script para eliminar vulnerabilidad de openssh de ubuntu 22.04 LTS

★ 1 · 2024-07-17
wxrdnx/CVE-2023-38408

Slide and source code for CS-782 attack presentation

★ 0 · 2024-12-20
fazilbaig1/cve_2023_38408_scanner

Vulnerability Overview CVE-2023-38408 affects OpenSSH versions < 9.3p2 and stems from improper validation of data when SSH agent forwarding is enabled. When us…

★ 0 · 2024-10-17
CVE-2020-0601
HOTMULTI PoC
PoCs 35 ★ 889 Last push 2026-04-11 (5 months, 4 weeks ago)

Fetching description from NVD…

Show 8 of 35 repositories
ly4k/CurveBall

PoC for CVE-2020-0601- Windows CryptoAPI (Crypt32.dll)

★ 889 · 2020-01-20
kudelskisecurity/chainoffools

A PoC for CVE-2020-0601

★ 335 · 2023-05-09
gentilkiwi/curveball

CVE-2020-0601 #curveball - Alternative Key Calculator

★ 78 · 2020-01-20
saleemrashid/badecparams

Proof of Concept for CVE-2020-0601

★ 66 · 2026-04-11
0xxon/cve-2020-0601

Zeek package to detect CVE-2020-0601

★ 35 · 2022-07-09
eastmountyxz/CVE-2020-0601-EXP

这资源是作者复现微软签字证书漏洞CVE-2020-0601,结合相关资源及文章实现。推荐大家结合作者博客,理解ECC算法、Windows验证机制,并尝试自己复现可执行文件签名证书和HTTPS劫持的例子。作为网络安全初学者,自己确实很菜,但希望坚持下去,加油!

★ 30 · 2020-02-17
ioncodes/Curveball

PoC for CVE-2020-0601 - CryptoAPI exploit

★ 20 · 2022-03-06
0xxon/cve-2020-0601-plugin

Zeek package that uses OpenSSL to detect CVE-2020-0601 exploit attempts

★ 5 · 2020-02-12
CVE-2021-22911
MULTI PoC
PoCs 11 ★ 61 Last push 2026-04-11 (5 months, 4 weeks ago)

Fetching description from NVD…

Show 8 of 11 repositories
CsEnox/CVE-2021-22911

Pre-Auth Blind NoSQL Injection leading to Remote Code Execution in Rocket Chat 3.12.1

★ 61 · 2023-06-11
optionalCTF/Rocket.Chat-Automated-Account-Takeover-RCE-CVE-2021-22911

Full unauthenticated RCE proof of concept for Rocket.Chat 3.12.1 CVE-2021-22911

★ 10 · 2021-07-30
roshanrajbanshi/rocketcat-cve-2021-22911-exploit

CVE-2021-22911 Rocket.Chat NoSQL Injection RCE Exploit - Educational Purpose

★ 1 · 2026-04-11
jayngng/CVE-2021-22911

Modifed ver of the original exploit to save some times on password reseting for unprivileged user

★ 0 · 2021-09-19
ChrisPritchard/CVE-2021-22911-rust

exploit for CVE-2021-22911 in rust

★ 0 · 2023-04-01
MrDottt/CVE-2021-22911
★ 0 · 2023-06-05
overgrowncarrot1/CVE-2021-22911
★ 0 · 2023-06-19
CVE-2025-15467
MULTI PoC
PoCs 5 ★ 15 Last push 2026-04-07 (6 months ago)

Fetching description from NVD…

Show 5 repositories
guiimoraes/CVE-2025-15467

Command Execution PoC for OpenSSL Stack buffer overflow CVE-2025-15467

★ 15 · 2026-02-25
balgan/CVE-2025-15467

Working DoS for CVE-2025-15467 and a docker container to test against

★ 8 · 2026-01-28
mr-r3b00t/CVE-2025-15467

discovery tool (powershell)

★ 1 · 2026-02-03
materaj2/cve-2025-15467

Exploit script for cve-2025-15467

★ 0 · 2026-03-14
WostGit/cve-2025-15467-crash
★ 0 · 2026-04-07
CVE-2025-1974
MULTI PoC
PoCs 24 ★ 98 Last push 2026-04-07 (6 months ago)

Fetching description from NVD…

Show 8 of 24 repositories
Esonhugh/ingressNightmare-CVE-2025-1974-exps

IngressNightmare POC. world first non-blind remote execution exploitation with multi-advanced exploitation methods. allow on disk exploitation. CVE-2025-24514 …

★ 98 · 2025-05-06
sandumjacob/IngressNightmare-POCs

CVE-2025-1974

★ 91 · 2025-04-02
yoshino-s/CVE-2025-1974
★ 53 · 2025-03-25
zwxxb/CVE-2025-1974

Poc for Ingress RCE

★ 8 · 2025-04-01
hi-unc1e/CVE-2025-1974-poc

PoC of CVE-2025-1974, modified from the world-first PoC~

★ 4 · 2025-03-27
1w4y/IngressNightmare-RCE-POC

PoC for CVE-2025-1974: Critical RCE in Ingress-NGINX (<v1.12.1) via unsafe config injection. Exploitable from the pod network without credentials, enabling cod…

★ 1 · 2025-03-26
rjhaikal/POC-IngressNightmare-CVE-2025-1974

POC IngressNightmare (CVE-2025-1974), modified from https://github.com/yoshino-s/CVE-2025-1974

★ 1 · 2025-03-28
Rubby2001/CVE-2025-1974-go

Exploit CVE-2025-1974 with a single file.

★ 1 · 2025-04-10
CVE-2024-35250
MULTI PoC
PoCs 5 ★ 23 Last push 2026-04-03 (6 months, 1 week ago)

Fetching description from NVD…

Show 5 repositories
yinsel/CVE-2024-35250-BOF

CVE-2024-35250 的 Beacon Object File (BOF) 实现。

★ 23 · 2024-11-28
ro0tmylove/CVE-2024-35250-BOF

Cobalt Strike 的 CVE-2024-35250 的 BOF。(请给我加个星,谢谢。)

★ 13 · 2024-10-21
CrackerCat/CVE-2024-35250

PoC for the Untrusted Pointer Dereference in the ks.sys driver

★ 10 · 2024-10-13
xvalegendary/HVCIPwned

CVE-2024-35250 demonstrates that HVCI is not a defense against data-only kernel exploits. As long as a driver bug provides an arbitrary R/W primitive, token sw…

★ 9 · 2026-04-03
0xROOTPLS/GiveMeKernel

CVE-2024-35250 PoC - Optimized & Condensed Form of Varwara's PoC

★ 6 · 2025-01-14
CVE-2024-27348
MULTI PoC
PoCs 6 ★ 60 Last push 2026-03-30 (6 months, 1 week ago)

Fetching description from NVD…

Show 6 repositories
Zeyad-Azima/CVE-2024-27348

Apache HugeGraph Server RCE Scanner ( CVE-2024-27348 )

★ 60 · 2024-06-08
kljunowsky/CVE-2024-27348

Apache HugeGraph Server Unauthenticated RCE - CVE-2024-27348 Proof of concept Exploit

★ 18 · 2024-06-03
wqfh/CVE-2024-27348

CVE-2024-27348 Exploitation Toolkit: Complete RCE exploit for Apache Huge-Graph-Server vulnerability.

★ 1 · 2025-12-13
p0et08/CVE-2024-27348

This is a repository for Apache HugeGraph Remote Code Execution vulnerability(CVE-2024-27348))

★ 0 · 2025-02-10
CVE-2023-27372
MULTI PoC
PoCs 13 ★ 68 Last push 2026-03-30 (6 months, 1 week ago)

Fetching description from NVD…

Show 8 of 13 repositories
nuts7/CVE-2023-27372

SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. The fixed versions are 3.2.18, 4.0.10, 4…

★ 68 · 2024-10-13
Chocapikk/CVE-2023-27372

SPIP Vulnerability Scanner - CVE-2023-27372 Detector

★ 9 · 2023-09-16
0SPwn/CVE-2023-27372-PoC

This is a PoC for CVE-2023-27372 which spawns a fully interactive shell.

★ 6 · 2023-07-05
Ap0dexMe0/CVE-2023-27372

Perform With Mass Remote Code Execution In SPIP Version (4.2.1)

★ 3 · 2023-07-31
izzz0/CVE-2023-27372-POC

CVE-2023-27372-SPIP-CMS-Bypass

★ 2 · 2023-07-12
1Ronkkeli/spip-cve-2023-27372-rce

SPIP CVE-2023-27372 Unauthenticated RCE Exploit (Web Shell Upload)

★ 2 · 2025-04-28
estebanzarate/CVE-2023-27372-SPIP-4.2.1-Unauthenticated-RCE-PoC

Unauthenticated remote code execution vulnerability in SPIP before 4.2.1.

★ 1 · 2026-02-24
dream434/CVE-2023-27372

spip

★ 0 · 2025-02-23
CVE-2023-43208
MULTI PoC
PoCs 13 ★ 7 Last push 2026-03-28 (6 months, 1 week ago)

Fetching description from NVD…

Show 8 of 13 repositories
predyy/CVE-2023-43208

PoC for CVE-2023-43208 RCE exploitation.

★ 5 · 2026-02-25
kyakei/CVE-2023-43208

CVE-2023-43208: Mirth Connect Pre-Auth RCE PoC

★ 3 · 2026-02-22
MKIRAHMET/PoC-2023-43208

A proof-of-concept exploit for CVE-2023-43208, a remote code execution vulnerability in Mirth Connect before version 4.4.1.

★ 3 · 2026-02-24
Avento/CVE-2023-43208_Detection_PoC

Use java.net.InetAddress for detection

★ 2 · 2024-11-28
azrvs/Mirth-Connect-CVE-2023-43208

Python implementation of CVE-2023-43208 Mirth Connect RCE (Unauth XStream)

★ 2 · 2026-03-08
Pegasus0xx/CVE-2023-43208

PoC for Mirth Connect Remote Code Execution (RCE)

★ 1 · 2026-03-01
Criz117/CVE-2023-43208-PoC

Proof‑of‑concept Python script demonstrating CVE‑2023‑43208 in Mirth Connect, allowing version checks and command execution on vulnerable instances.

★ 1 · 2026-03-13
CVE-2018-0114
HOTMULTI PoC
PoCs 14 ★ 288 Last push 2026-03-28 (6 months, 1 week ago)

Fetching description from NVD…

Show 8 of 14 repositories
z-bool/Venom-JWT

针对JWT渗透开发的漏洞验证/密钥爆破工具,针对CVE-2015-9235/空白密钥/未验证签名攻击/CVE-2016-10555/CVE-2018-0114/CVE-2020-28042的结果生成用于FUZZ,也可使用字典/字符枚举(包括JJWT)的方式进行爆破(JWT Crack)

★ 288 · 2025-08-12
zi0Black/POC-CVE-2018-0114

This repository contains the POC of an exploit for node-jose < 0.11.0

★ 26 · 2023-02-24
j4k0m/CVE-2018-0114

Exploitation of a vulnerability in Cisco's node-jose, a JavaScript library created to manage JWT.

★ 4 · 2021-09-04
scumdestroy/CVE-2018-0114

Exploit for Node-jose < 0.11.0 written in Ruby

★ 3 · 2022-01-12
Eremiel/CVE-2018-0114

python2.7 script for JWT generation

★ 2 · 2021-01-03
adityathebe/POC-CVE-2018-0114

POC for CVE-2018-0114 written in Go

★ 1 · 2021-02-21
fevra-dev/ClaimJumper

Professional JWT security testing toolkit. Analyze, crack, forge, and exploit JSON Web Tokens with 15+ vulnerability checks, 100k secret wordlist, and CVE-spec…

★ 1 · 2026-01-16
Logeirs/CVE-2018-0114
★ 0 · 2020-08-18
CVE-2022-32250
HOTMULTI PoC
PoCs 8 ★ 189 Last push 2026-03-25 (6 months, 2 weeks ago)

Fetching description from NVD…

Show 8 repositories
theori-io/CVE-2022-32250-exploit
★ 189 · 2023-06-18
ysanatomic/CVE-2022-32250-LPE

LPE PoC of a user-after-free vulnerability in the Linux netfilter subsystem.

★ 9 · 2023-02-04
seadragnol/CVE-2022-32250
★ 3 · 2024-12-07
Decstor5/2022-32250LPE

CVE-2022-32250-LPE

★ 2 · 2023-11-09
Kristal-g/CVE-2022-32250

My exploit for CVE-2022-32250 for linux kernel 5.18

★ 2 · 2024-06-09
KuanKuanQAQ/cve-testing

Reproduce CVE-2022-32250 and CVE-2025-21756 by tampering with modprobe_path and hijacking control flow, respectively.

★ 0 · 2025-07-07
rem0t3/CVE-2022-32250-Compiled
★ 0 · 2025-10-15
Noidolosity/CVE-2022-32250
★ 0 · 2026-03-25
CVE-2025-6018
MULTI PoC
PoCs 14 ★ 16 Last push 2026-03-24 (6 months, 2 weeks ago)

Fetching description from NVD…

Show 8 of 14 repositories
MichaelVenturella/CVE-2025-6018-6019-PoC

A Proof of Concept for chaining CVE-2025-6018 (PAM/Polkit Active Session Bypass) and CVE-2025-6019 (libblockdev SUID Mount Flaw) to achieve Local Privilege Esc…

★ 16 · 2026-02-09
muyuanlove/CVE-2025-6018-CVE-2025-6019-Privilege-Escalation-Exploit

CVE-2025-6018 + CVE-2025-6019 Privilege Escalation Exploit

★ 12 · 2026-02-09
dreysanox/CVE-2025-6018_Poc

Exploit for CVE-2025-6019

★ 6 · 2025-07-21
DesertDemons/CVE-2025-6018-6019

CVE-2025-6018 CVE-2025-6019 PoC Exploit - Local Privilege Escalation in openSUSE/SUSE Linux Enterprise 15 - PAM bypass + udisks2 XFS race condition LPE to root

★ 5 · 2026-03-24
0rionCollector/Exploit-Chain-CVE-2025-6018-6019

Exploit Chain of CVE-2025-6018 to CVE-2025-6019

★ 4 · 2026-02-11
Goultarde/CVE-2025-6018_CVE-2025-6019_autopwn

Auto exploit for CVE-2025-6018 & CVE-2025-6019 based on https://github.com/0rionCollector/Exploit-Chain-CVE-2025-6018-6019

★ 4 · 2026-02-10
AzureADTrent/CVE-2025-6018-and-CVE-2025-6019-Privilege-Escalation

This is just a quick note on how to exploit these vulnerabilities to get root.

★ 1 · 2026-02-09
CVE-2003-0264
MULTI PoC
PoCs 7 ★ 1 Last push 2026-03-23 (6 months, 2 weeks ago)

Fetching description from NVD…

Show 7 repositories
TheMalwareGuardian/CVE-2003-0264

Classic stack-based buffer overflow in SLMail 5.1 showing how early mail servers could be compromised through oversized SMTP and POP3 commands.

★ 1 · 2026-03-23
adenkiewicz/CVE-2003-0264

Exploit for CVE-2003-0264 based on pwntools and metasploit's windows/reverse_tcp

★ 0 · 2018-01-01
fyoderxx/slmail-exploit

Exploit SLmail Buffer Overflow CVE-2003-0264

★ 0 · 2018-10-01
war4uthor/CVE-2003-0264

CVE-2003-0264 - SLMail 5.5 POP3 'PASS' Remote Buffer Overflow Vulnerability. Tested on Windows XP Professional SP3.

★ 0 · 2018-12-19
pwncone/CVE-2003-0264-SLmail-5.5

A POC remote buffer overflow for CVE-2003-0264 - SLMail 5.5

★ 0 · 2020-03-13
vrikodar/CVE-2003-0264_EXPLOIT

Buffer Overflow in Seattle Lab Mail (SLmail) 5.5 - POP3

★ 0 · 2021-04-10
nobodyatall648/CVE-2003-0264

CVE-2003-0264 SLMail5.5_RemoteBufferOverflow

★ 0 · 2021-06-25
CVE-2025-0108
MULTI PoC
PoCs 7 ★ 32 Last push 2026-03-23 (6 months, 2 weeks ago)

Fetching description from NVD…

Show 7 repositories
iSee857/CVE-2025-0108-PoC

Palo Alto Networks PAN-OS 身份验证绕过漏洞批量检测脚本(CVE-2025-0108)

★ 32 · 2025-04-01
FOLKS-iwd/CVE-2025-0108-PoC

PoC exploit for CVE-2025-0108 - PAN-OS Authentication Bypass

★ 8 · 2025-02-14
fr4nc1stein/CVE-2025-0108-SCAN

Detects an authentication bypass vulnerability in Palo Alto PAN-OS (CVE-2025-0108).

★ 2 · 2025-02-18
becrevex/CVE-2025-0108

NSE script that checks for CVE-2025-0108 vulnerability in Palo Alto Networks PAN-OS

★ 2 · 2025-02-19
sohaibeb/CVE-2025-0108

PAN-OS CVE POC SCRIPT

★ 1 · 2025-02-20
kso4more/CVE-2025-0108
★ 0 · 2026-03-23
CVE-2008-0166
HOTMULTI PoC
PoCs 7 ★ 411 Last push 2026-03-18 (6 months, 3 weeks ago)

Fetching description from NVD…

Show 7 repositories
g0tmi1k/debian-ssh

Debian OpenSSL Predictable PRNG (CVE-2008-0166)

★ 411 · 2023-01-22
demining/Vulnerable-to-Debian-OpenSSL-bug-CVE-2008-0166

Search for BTC coins on earlier versions of Bitcoin Core with critical vulnerability OpenSSL 0.9.8 CVE-2008-0166

★ 10 · 2022-12-07
badkeys/debianopenssl

Private keys vulnerable to Debian OpenSSL bug (CVE-2008-0166)

★ 7 · 2025-08-08
avarx/vulnkeys

Debian OpenSSL Predictable PRNG (CVE-2008-0166)

★ 1 · 2018-12-31
AhegaoPsyops/sslWeakness

Example script demonstrating a weak PRNG, CVE-2008-0166

★ 0 · 2025-09-25
FaizanAli8232/CVE-Exploit-Research-Development

A professional Python tool designed for educational penetration testing, demonstrating SSH vulnerabilities (CVE-2008-0166 / CVE-2008-1657) with interactive she…

★ 0 · 2026-03-18
QasimShahbaz21/CVE-Exploit-Research-Development

SSH Exploit Tool (Educational Use Only) 📌 Description This tool demonstrates exploitation of: CVE-2008-0166 CVE-2008-1657 It connects to vulnerable SSH servi…

★ 0 · 2026-03-18
CVE-2017-9805
HOTMULTI PoC
PoCs 20 ★ 247 Last push 2026-03-16 (6 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 20 repositories
mazen160/struts-pwn_CVE-2017-9805

An exploit for Apache Struts CVE-2017-9805

★ 247 · 2017-11-07
luc10/struts-rce-cve-2017-9805

CVE 2017-9805

★ 60 · 2020-08-31
chrisjd20/cve-2017-9805.py

Better Exploit Code For CVE 2017 9805 apache struts

★ 21 · 2017-12-23
0x00-0x00/-CVE-2017-9805

Exploit script for Apache Struts2 REST Plugin XStream RCE (‎CVE-2017-9805)

★ 15 · 2020-11-26
Lone-Ranger/apache-struts-pwn_CVE-2017-9805

An exploit for Apache Struts CVE-2017-9805

★ 5 · 2017-09-10
hahwul/struts2-rce-cve-2017-9805-ruby

cve -2017-9805

★ 3 · 2017-09-07
Shakun8/CVE-2017-9805

CVE-2017-9805 POC

★ 3 · 2022-10-03
BeyondCy/S2-052

CVE-2017-9805 - Exploit

★ 1 · 2017-10-20
CVE-2022-21449
HOTMULTI PoC
PoCs 13 ★ 121 Last push 2026-03-15 (6 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 13 repositories
notkmhn/CVE-2022-21449-TLS-PoC

CVE-2022-21449 Proof of Concept demonstrating its usage with a client running on a vulnerable Java version and a malicious TLS server

★ 121 · 2026-03-15
jfrog/jfrog-CVE-2022-21449
★ 37 · 2022-04-24
thack1/CVE-2022-21449

Zeek script to detect exploitation attempts of CVE-2022-21449 targeting TLS clients

★ 5 · 2022-05-01
jmiettinen/CVE-2022-21449-vuln-test

CVE-2022-21449 Vulnerability tester

★ 2 · 2022-04-20
HeyMrSalt/AIS3-2024-Project-D5Team

Reappear-CVE-2022-21449-TLS-PoC

★ 1 · 2025-02-12
fevra-dev/ClaimJumper

Professional JWT security testing toolkit. Analyze, crack, forge, and exploit JSON Web Tokens with 15+ vulnerability checks, 100k secret wordlist, and CVE-spec…

★ 1 · 2026-01-16
marschall/psychic-signatures

Demos the Psychic Signatures vulnerability (CVE-2022-21449)

★ 0 · 2022-04-21
Damok82/SignChecker

Test tool to demonstrate the vulnerability of CVE-2022-21449

★ 0 · 2022-04-25
CVE-2024-32002
HOTMULTI PoC
PoCs 64 ★ 532 Last push 2026-03-15 (6 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 64 repositories
amalmurali47/git_rce

Exploit PoC for CVE-2024-32002

★ 532 · 2024-05-19
safebuffer/CVE-2024-32002

CVE-2024-32002 RCE PoC

★ 109 · 2024-05-18
amalmurali47/hook

Hook for the PoC for exploiting CVE-2024-32002

★ 18 · 2024-05-19
M507/CVE-2024-32002

local poc for CVE-2024-32002

★ 10 · 2024-05-18
YukaFake/CVE-2024-32002-Reverse-Shell

Este script demuestra cómo explotar la vulnerabilidad CVE-2024-32002 para obtener una reverse shell, proporcionando acceso remoto al sistema afectado. Úselo co…

★ 6 · 2024-05-21
jweny/CVE-2024-32002_HOOK
★ 3 · 2024-05-20
jweny/CVE-2024-32002_EXP
★ 3 · 2024-05-20
NishanthAnand21/CVE-2024-32002-PoC

PoC of CVE-2024-32002 - Remote Code Execution while cloning special-crafted local repositories

★ 3 · 2024-07-30
CVE-2025-4517
MULTI PoC
PoCs 8 ★ 10 Last push 2026-03-14 (6 months, 3 weeks ago)

Fetching description from NVD…

Show 8 repositories
AzureADTrent/CVE-2025-4517-POC

Privilege Escalation script for CVE-2025-4517

★ 10 · 2026-03-14
0xDTC/CVE-2025-4517-tarfile-PATH_MAX-bypass

Python tarfile data filter bypass via PATH_MAX overflow in os.path.realpath() - CVE-2025-4517 / CVE-2025-4330

★ 8 · 2026-02-15
AnimePrincess420/CVE-2025-4517-PoC

CVE‑2025‑4517 Proof‑of‑Concept Script

★ 2 · 2026-02-15
StealthByte0/CVE-2025-4517-poc

CVE-2025-4517 (CVSS 9.4 – Critical) A vulnerability in Python's `tarfile`

★ 2 · 2026-02-15
estebanzarate/CVE-2025-4517-Python-tarfile-filter-data-Bypass-PoC

Path traversal vulnerability in Python's tarfile.

★ 1 · 2026-02-20
Rohitberiwala/PyPath-Escape-CVE-2025-4517-Exploit-Research

A high-performance Python toolkit to automate the CVE-2025-4517 PATH_MAX bypass exploit. Specifically tuned for the WingData HTB challenge to achieve arbitrary…

★ 0 · 2026-03-07
kerburenthusiasm/CVE-2025-4517-PoC

PoC and explanation for CVE-2025-4517 used in a CTF I was playing.

★ 0 · 2026-02-17
bgutowski/CVE-2025-4517-POC-Sudoers

Exploit for CVE-2024-6232 - Python Tarfile Realpath Overflow

★ 0 · 2026-02-18
CVE-2019-1003000
HOTMULTI PoC
PoCs 5 ★ 316 Last push 2026-03-13 (6 months, 4 weeks ago)

Fetching description from NVD…

Show 5 repositories
adamyordan/cve-2019-1003000-jenkins-rce-poc

Jenkins RCE Proof-of-Concept: SECURITY-1266 / CVE-2019-1003000 (Script Security), CVE-2019-1003001 (Pipeline: Groovy), CVE-2019-1003002 (Pipeline: Declarative)

★ 316 · 2019-04-01
wetw0rk/Exploit-Development

CVE-2020-8012, CVE-2016-10709, CVE-2017-17099, CVE-2017-18047, CVE-2019-1003000, CVE-2018-1999002

★ 83 · 2026-03-13
1NTheKut/CVE-2019-1003000_RCE-DETECTION

A C# module to detect if a Jenkins server is vulnerable to the RCE vulnerability found in CVE-2019-1003000 (chained with CVE-2018-1000861 for pre-auth RCE)

★ 4 · 2019-05-01
im23pds/CVE-2019-1003000-and-CVE-2018-1999002-Pre-Auth-RCE-Jenkins

Python CVE-2019-1003000 and CVE-2018-1999002 Pre-Auth RCE Jenkins

★ 0 · 2019-02-23
< Prev Page 21 / 33 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.