Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11117CVEs tracked
26011PoC repositories
12New in 24h
344PoC updated in 7 days
filters
Reset
All New Fresh PoC Hot Multi PoC Critical High

803 results

CVE-2022-21661
MULTI PoC
PoCs 13 ★ 28 Last push 2026-03-10 (7 months ago)

Fetching description from NVD…

Show 8 of 13 repositories
z92g/CVE-2022-21661

WordPress WP_Query SQL Injection POC

★ 28 · 2023-03-11
purple-WL/wordpress-CVE-2022-21661
★ 17 · 2022-02-17
0x4E0x650x6F/Wordpress-cve-CVE-2022-21661

Wordpress 5.8.2 CVE-2022-21661 Vuln enviroment POC exploit

★ 15 · 2022-05-28
guestzz/CVE-2022-21661

CVE-2022-21661 exp for Elementor custom skin.

★ 6 · 2022-08-02
WellingtonEspindula/SSI-CVE-2022-21661

Study and exploit the vulnerability CVE-2022-21661 that allows SQL Injections through plugins POST requests to WordPress versions below 5.8.3.

★ 6 · 2023-11-30
sealldeveloper/CVE-2022-21661-PoC

A Python PoC of CVE-2022-21661, inspired from z92g's Go PoC

★ 6 · 2023-04-27
daniel616/CVE-2022-21661-Demo

Demonstration of the SQL injection vulnerability in wordpress 5.8.2

★ 2 · 2023-05-10
safe3s/CVE-2022-21661

The first poc video presenting the sql injection test from ( WordPress Core 5.8.2-'WP_Query' / CVE-2022-21661)

★ 0 · 2022-11-06
CVE-2014-6287
MULTI PoC
PoCs 14 ★ 2 Last push 2026-03-10 (7 months ago)

Fetching description from NVD…

Show 8 of 14 repositories
mrintern/thm_steelmountain_CVE-2014-6287

a python3 version of the exploit written for CVE-2014-6287. Useful for completing the "Steel Mountain" room on TryHackMe.com without the use of metasploit.

★ 1 · 2021-12-03
roughiz/cve-2014-6287.py

HttpFileServer httpd 2.3

★ 0 · 2022-10-22
wizardy0ga/THM-Steel_Mountain-CVE-2014-6287

A write up on the Steel Mountain box from TryHackMe.com and exploit for CVE-2014-6287

★ 0 · 2021-12-02
zhsh9/CVE-2014-6287

Rejetto HTTP File Server (aks HFS or HttpFileServer) 2.3x before 2.3c

★ 0 · 2024-03-06
10cks/CVE-2014-6287

Rejetto http File Server 2.3.x (Reverse shell)

★ 0 · 2023-09-16
CVE-2019-8451
MULTI PoC
PoCs 5 ★ 30 Last push 2026-03-10 (7 months ago)

Fetching description from NVD…

Show 5 repositories
jas502n/CVE-2019-8451

Jira未授权SSRF漏洞

★ 30 · 2019-09-30
0xbug/CVE-2019-8451

https://jira.atlassian.com/browse/JRASERVER-69793

★ 10 · 2019-09-16
h0ffayyy/Jira-CVE-2019-8451

POC to check for Jira instances vulnerable to CVE-2019-8451

★ 7 · 2019-09-28
ianxtianxt/CVE-2019-8451
★ 1 · 2019-09-24
iuds/CVE-2019-8451

exploit for atlassian jira server SSRF

★ 0 · 2026-03-10
CVE-2024-34064
MULTI PoC
PoCs 7 ★ 0 Last push 2026-03-10 (7 months ago)

Fetching description from NVD…

Show 7 repositories
SandBlastx/flask-vuln-v3

CVE-2024-34064 demo - v3 subtle vuln no misleading comment

★ 0 · 2026-03-10
SandBlastx/flask-vuln-v4

CVE-2024-34064 demo - v4 subtle vuln good comment

★ 0 · 2026-03-10
SandBlastx/flask-vuln-baseline

CVE-2024-34064 demo - baseline (no sanitisation)

★ 0 · 2026-03-10
SandBlastx/flask-vuln-v1

CVE-2024-34064 demo - v1 genuine fix honest comments

★ 0 · 2026-03-10
SandBlastx/flask-vuln-v2

CVE-2024-34064 demo - v2 genuine fix bad comments

★ 0 · 2026-03-10
SandBlastx/flask-vuln-v5

CVE-2024-34064 demo - v5 regex missing end anchor

★ 0 · 2026-03-10
SandBlastx/flask-vuln-v6

CVE-2024-34064 demo - v6 sanitisation applied to wrong variable

★ 0 · 2026-03-10
CVE-2019-16098
HOTMULTI PoC
PoCs 5 ★ 200 Last push 2026-03-04 (7 months ago)

Fetching description from NVD…

Show 5 repositories
Barakat/CVE-2019-16098

Local privilege escalation PoC exploit for CVE-2019-16098

★ 200 · 2019-09-13
Offensive-Panda/NT-AUTHORITY-SYSTEM-CONTEXT-RTCORE

This exploit rebuilds and exploit the CVE-2019-16098 which is in driver Micro-Star MSI Afterburner 4.6.2.15658 (aka RTCore64.sys and RTCore32.sys) allows any a…

★ 34 · 2024-08-05
0xDivyanshu-new/CVE-2019-16098
★ 6 · 2023-09-02
VortexCry-Organization/VortexCry-Ransomware-Release

# VortexCry-Ransomware VortexCry is an advanced ransomware that utilizes multi-stage process injection (such as Process Hollowing and APC Injection) and kernel…

★ 1 · 2026-02-24
CrowTheArchfiend/RTCore64-probe

A tiny cpp program to test reading memory using a vulnerable RTCore64.sys driver/device (CVE-2019-16098). It tries to read a "secret" from its own memory usin…

★ 0 · 2026-03-04
CVE-2025-25257
HOTMULTI PoC
PoCs 12 ★ 100 Last push 2026-03-01 (7 months, 1 week ago)

Fetching description from NVD…

Show 8 of 12 repositories
0xbigshaq/CVE-2025-25257

FortiWeb CVE-2025-25257 exploit

★ 64 · 2025-07-11
TheStingR/CVE-2025-25257

Public PoC for CVE-2025-25257: FortiWeb pre-auth SQLi to RCE

★ 5 · 2025-10-30
aitorfirm/CVE-2025-25257

Exploiting the CVE-2025-25257 vulnerability in FortiWeb. This repository demonstrates secure pre-authenticated SQL injection.

★ 1 · 2025-07-18
imbas007/CVE-2025-25257
★ 1 · 2025-07-12
0xgh057r3c0n/CVE-2025-25257

PoC for CVE-2025-25257, a critical unauthenticated SQL injection in FortiWeb. Exploits SQLi via the Authorization header to write a webshell and gain RCE. No l…

★ 1 · 2025-07-15
mrmtwoj/CVE-2025-25257

CVE‑2025‑25257 is a critical pre-authentication SQL injection vulnerability affecting Fortinet FortiWeb’s

★ 1 · 2025-07-19
segfault-it/CVE-2025-25257

A working (at least for me :] ) exploit for CVE-2025-25257

★ 1 · 2025-09-21
CVE-2020-29607
MULTI PoC
PoCs 5 ★ 6 Last push 2026-02-28 (7 months, 1 week ago)

Fetching description from NVD…

Show 5 repositories
abbarhissarh/CVE-2020-29607

A file upload restriction bypass vulnerability in Pluck CMS before 4.7.13 allows an admin privileged user to gain access in the host through the "manage files"…

★ 6 · 2022-06-04
0xN7y/CVE-2020-29607

Exploit forCVE-2020-29607

★ 1 · 2023-11-24
estebanzarate/CVE-2020-29607-Pluck-CMS-4.7.13-Authenticated-File-Upload-RCE-PoC

Authenticated remote code execution in Pluck CMS before 4.7.13.

★ 1 · 2026-02-28
Alienfader/CVE-2020-29607
★ 0 · 2025-02-12
CaelumIsMe/CVE-2020-29607-POC
★ 0 · 2025-10-27
CVE-2023-4966
MULTI PoC
PoCs 14 ★ 80 Last push 2026-02-25 (7 months, 2 weeks ago)

Fetching description from NVD…

Show 8 of 14 repositories
Chocapikk/CVE-2023-4966

Sensitive information disclosure in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA vi…

★ 80 · 2023-10-26
dinosn/citrix_cve-2023-4966

Citrix CVE-2023-4966 from assetnote modified for parallel and file handling

★ 10 · 2023-10-25
RevoltSecurities/CVE-2023-4966

An Exploitation script developed to exploit the CVE-2023-4966 bleed citrix information disclosure vulnerability

★ 10 · 2023-10-29
mlynchcogent/CVE-2023-4966-POC

Proof Of Concept for te NetScaler Vuln

★ 8 · 2023-10-25
certat/citrix-logchecker

Parse citrix netscaler logs to check for signs of CVE-2023-4966 exploitation

★ 5 · 2023-11-03
morganwdavis/overread

Simulates CVE-2023-4966 Citrix Bleed overread bug

★ 2 · 2023-12-31
IceBreakerCode/CVE-2023-4966
★ 1 · 2023-10-25
0xKayala/CVE-2023-4966

CVE-2023-4966 - NetScaler ADC and NetScaler Gateway Memory Leak Exploit

★ 0 · 2023-10-28
CVE-2021-42287
HOTMULTI PoC
PoCs 7 ★ 1414 Last push 2026-02-21 (7 months, 2 weeks ago)

Fetching description from NVD…

Show 7 repositories
cube0x0/noPac

CVE-2021-42287/CVE-2021-42278 Scanner & Exploiter.

★ 1414 · 2021-12-16
knightswd/NoPacScan

NoPacScan is a CVE-2021-42287/CVE-2021-42278 Scanner,it scan for more domain controllers than other script

★ 87 · 2022-02-17
ricardojba/Invoke-noPac

.Net Assembly loader for the [CVE-2021-42287 - CVE-2021-42278] Scanner & Exploit noPac

★ 62 · 2023-02-16
XiaoliChan/Invoke-sAMSpoofing

CVE-2021-42287/CVE-2021-42278 exploits in powershell

★ 39 · 2022-04-04
TryA9ain/noPac

CVE-2021-42287/CVE-2021-42278 Exploiter

★ 15 · 2023-01-12
DanielFEXKEX/CVE-Scanner

CVE-2021-42287/CVE-2021-42278/OTHER Scanner & Exploiter.

★ 2 · 2025-04-26
Chrisync/CVE-Scanner

CVE-2021-42287/CVE-2021-42278/OTHER Scanner & Exploiter.

★ 0 · 2026-02-21
CVE-2022-22980
MULTI PoC
PoCs 7 ★ 32 Last push 2026-02-18 (7 months, 3 weeks ago)

Fetching description from NVD…

Show 7 repositories
trganda/CVE-2022-22980

Poc of CVE-2022-22980

★ 32 · 2022-06-23
kuron3k0/Spring-Data-Mongodb-Example

CVE-2022-22980环境

★ 14 · 2022-07-14
li8u99/Spring-Data-Mongodb-Demo

CVE-2022-22980环境

★ 11 · 2022-06-22
jweny/cve-2022-22980

CVE-2022-22980 exp && 靶场

★ 10 · 2022-06-22
Vulnmachines/Spring_cve-2022-22980

spring data mongodb remote code execution | cve-2022-22980 poc

★ 7 · 2022-07-13
murataydemir/CVE-2022-22980

[CVE-2022-22980] Spring Data MongoDB SpEL Expression Injection

★ 5 · 2022-06-28
Eliasdekiniweek/CVE-2022-22980

Exploitation de CVE-2022-22980

★ 1 · 2026-02-18
CVE-2026-24858
MULTI PoC
PoCs 5 ★ 9 Last push 2026-02-10 (8 months ago)

Fetching description from NVD…

Show 5 repositories
absholi7ly/CVE-2026-24858-FortiCloud-SSO-Authentication-Bypass

CVE-2026-24858 FortiCloud Single Sign On (SSO) a factory default enabled feature once you register any FortiGate/FortiManager/FortiAnalyzer contains a critic…

★ 9 · 2026-01-30
gagaltotal/cve-2026-24858

CVE-2026-24858 - Administrative FortiCloud SSO authentication bypass

★ 1 · 2026-02-10
m0d0ri205/CVE-2026-24858

아직 제로데이인거 같아, 공개되거나 천천히 분석할 예정....

★ 0 · 2026-01-29
SimoesCTT/-CTT-NSP-Convergent-Time-Theory---Network-Stack-Projection-CVE-2026-24858-

A Proof-of-Concept demonstrating the application of 3D Navier-Stokes CTT formulations to packet flow optimization and defensive bypass.

★ 0 · 2026-01-30
SimoesCTT/SCTT-2026-33-0004-FortiCloud-SSO-Identity-Singularity

While Fortinet's January 27, 2026 mitigation for **CVE-2026-24858** focuses on blocking specific accounts like `[email protected]`, it fails to address the **T…

★ 0 · 2026-01-31
CVE-2025-34085
MULTI PoC
PoCs 5 ★ 34 Last push 2026-02-10 (8 months ago)

Fetching description from NVD…

Show 5 repositories
ill-deed/CVE-2025-34085-Multi-target

Multi-target unauthenticated RCE scanner for CVE-2025-34085 affecting WordPress Simple File List plugin. Uploads, renames, and triggers PHP webshells across la…

★ 34 · 2025-07-13
yukinime/CVE-2025-34085
★ 7 · 2025-07-22
0xgh057r3c0n/CVE-2025-34085

WordPress Simple File List Unauthenticated RCE Exploit

★ 2 · 2025-07-20
MrjHaxcore/CVE-2025-34085

Simple File List – Unauthenticated RCE Exploit (CVE-2025-34085)

★ 1 · 2025-07-10
0xGunrunner/CVE-2025-34085

Exploit for CVE-2025-34085

★ 0 · 2026-02-10
CVE-2023-50564
MULTI PoC
PoCs 9 ★ 18 Last push 2026-02-09 (8 months ago)

Fetching description from NVD…

Show 8 of 9 repositories
Rai2en/CVE-2023-50564_Pluck-v4.7.18_PoC

A Proof of Concept for CVE-2023-50564 vulnerability in Pluck CMS version 4.7.18

★ 18 · 2026-02-09
thefizzyfish/CVE-2023-50564-pluck

CVE-2023-50564 - An arbitrary file upload vulnerability in the component /inc/modules_install.php of Pluck-CMS v4.7.18 allows attackers to execute arbitrary c…

★ 4 · 2024-10-03
Mrterrestrial/CVE-2023-50564

This script exploits the file upload feature in Pluck CMS v4.7.18 to upload a malicious PHP file, enabling remote access via a reverse shell. Once uploaded, th…

★ 1 · 2024-10-15
0xDTC/Pluck-CMS-v4.7.18-Remote-Code-Execution-CVE-2023-50564

Refurbish exploit in bash

★ 1 · 2025-02-02
xpltive/CVE-2023-50564

Pluck-CMS v4.7.18 RCE exploit

★ 1 · 2024-12-22
ipuig/CVE-2023-50564

CVE-2023-50564 PoC

★ 0 · 2024-08-02
rwexecute/CVE-2023-50564

Python Script to exploit CVE-2023-50564

★ 0 · 2024-10-14
glynzr/CVE-2023-50564

Pluck v4.7.18 - Remote Code Execution (RCE)

★ 0 · 2025-05-25
CVE-2017-8917
MULTI PoC
PoCs 11 ★ 68 Last push 2026-02-08 (8 months ago)

Fetching description from NVD…

Show 8 of 11 repositories
stefanlucas/Exploit-Joomla

CVE-2017-8917 - SQL injection Vulnerability Exploit in Joomla 3.7.0

★ 68 · 2022-03-07
brianwrf/Joomla3.7-SQLi-CVE-2017-8917

Joomla 3.7 SQL injection (CVE-2017-8917)

★ 7 · 2017-05-19
BaptisteContreras/CVE-2017-8917-Joomla

CVE-2017-8917 SQL injection Vulnerability in Joomla! 3.7.0 exploit

★ 2 · 2023-11-27
ztrxwzy/joomla.3.7.0exploit

Proof of Concept exploit for the Joomla 3.7.0 com_fields SQL injection vulnerability (CVE-2017-8917), demonstrating detection, enumeration, and data extraction…

★ 2 · 2026-02-08
cved-sources/cve-2017-8917

cve-2017-8917

★ 0 · 2021-04-15
gmohlamo/CVE-2017-8917

Python exploit for CVE-2017-8917 - Joomla 3.7.0 'com_fields' SQL Injection

★ 0 · 2021-05-27
Siopy/CVE-2017-8917

CVE-2017-8917 - Joomla 3.7.0 'com_fields' SQL Injection

★ 0 · 2022-08-29
CVE-2024-5084
MULTI PoC
PoCs 6 ★ 9 Last push 2026-02-07 (8 months ago)

Fetching description from NVD…

Show 6 repositories
Chocapikk/CVE-2024-5084

Hash Form – Drag & Drop Form Builder <= 1.1.0 - Unauthenticated Arbitrary File Upload to Remote Code Execution

★ 9 · 2024-07-17
KTN1990/CVE-2024-5084

WordPress Hash Form – Drag & Drop Form Builder <= 1.1.0 - Unauthenticated Arbitrary File Upload to Remote Code Execution

★ 0 · 2024-05-31
NanoWraith/CVE-2024-5084
★ 0 · 2024-06-06
WOOOOONG/CVE-2024-5084

PoC Exploit for CVE-2024-5084

★ 0 · 2024-07-03
Raeezrbr/CVE-2024-5084
★ 0 · 2024-11-30
CVE-2023-22527
MULTI PoC
PoCs 23 ★ 74 Last push 2026-02-06 (8 months ago)

Fetching description from NVD…

Show 8 of 23 repositories
Boogipop/CVE-2023-22527-Godzilla-MEMSHELL

CVE-2023-22527 内存马注入工具

★ 74 · 2024-02-21
M0untainShley/CVE-2023-22527-MEMSHELL

confluence CVE-2023-22527 漏洞利用工具,支持冰蝎/哥斯拉内存马注入,支持设置 http 代理

★ 40 · 2024-04-24
Avento/CVE-2023-22527_Confluence_RCE

CVE-2023-22527 - RCE (Remote Code Execution) Vulnerability In Confluence Data Center and Confluence Server PoC

★ 26 · 2024-01-23
Manh130902/CVE-2023-22527-POC

A critical severity Remote Code Execution (RCE) vulnerability (CVE-2023-22527) was discovered in Confluence Server and Data Center.

★ 22 · 2024-01-23
VNCERT-CC/CVE-2023-22527-confluence

[Confluence] CVE-2023-22527 realworld poc

★ 18 · 2024-01-23
Vozec/CVE-2023-22527

This repository presents a proof-of-concept of CVE-2023-22527

★ 14 · 2024-01-23
RevoltSecurities/CVE-2023-22527

An Exploitation tool to exploit the confluence server that are vulnerable to CVE-2023-22527 leads to RCE

★ 10 · 2024-01-23
Chocapikk/CVE-2023-22527

Atlassian Confluence - Remote Code Execution

★ 9 · 2024-01-23
CVE-2019-11510
HOTMULTI PoC
PoCs 13 ★ 360 Last push 2026-02-06 (8 months ago)

Fetching description from NVD…

Show 8 of 13 repositories
projectzeroindia/CVE-2019-11510

Exploit for Arbitrary File Read on Pulse Secure SSL VPN (CVE-2019-11510)

★ 360 · 2020-01-11
BishopFox/pwn-pulse

Exploit for Pulse Connect Secure SSL VPN arbitrary file read vulnerability (CVE-2019-11510)

★ 132 · 2020-01-15
jas502n/CVE-2019-11510-1

SSL VPN Rce

★ 52 · 2019-08-27
imjdl/CVE-2019-11510-poc

Pulse Secure SSL VPN pre-auth file reading

★ 50 · 2019-08-26
cisagov/check-your-pulse

This utility can help determine if indicators of compromise (IOCs) exist in the log files of a Pulse Secure VPN Appliance for CVE-2019-11510.

★ 28 · 2020-08-19
r00tpgp/http-pulse_ssl_vpn.nse

Nmap NSE script to detect Pulse Secure SSL VPN file disclosure CVE-2019-11510

★ 18 · 2019-08-27
aqhmal/pulsexploit

Automated script for Pulse Secure SSL VPN exploit (CVE-2019-11510) using hosts retrieved from Shodan API. You must have a Shodan account to use this script.

★ 9 · 2020-04-25
es0/CVE-2019-11510_poc

PoC for CVE-2019-11510 | Pulse Secure 8.1R15.1/8.2/8.3/9.0 SSL VPN - Arbitrary File Disclosure vulnerability

★ 5 · 2019-08-27
CVE-2025-65964
MULTI PoC
PoCs 6 ★ 4 Last push 2026-02-04 (8 months ago)

Fetching description from NVD…

Show 6 repositories
Syzygy-K/CVE-2025-65964-Exploit

CVE-2025-65964复现

★ 4 · 2025-12-10
Anthony558238/CVE-2025-65964-poc

CVE-2025-65964-poc

★ 0 · 2025-12-10
Geekby/n8n-CVE-2025-65964

CVE-2025-65964

★ 0 · 2025-12-10
Saboor-Hakimi-23/CVE-2025-65964
★ 0 · 2025-12-13
Pinus97/CVE-2025-65964-POC

CVE-2025-65964-POC

★ 0 · 2025-12-23
nn0nkey/repo

CVE-2025-65964 PoC - Malicious Git Hooks

★ 0 · 2026-02-04
CVE-2020-0022
MULTI PoC
PoCs 9 ★ 65 Last push 2026-02-04 (8 months, 1 week ago)

Fetching description from NVD…

Show 8 of 9 repositories
leommxj/cve-2020-0022

poc for cve-2020-0022

★ 65 · 2020-07-16
Polo35/CVE-2020-0022

CVE-2020-0022 vulnerability exploitation on Bouygues BBox Miami (Android TV 8.0 - ARM32 Cortex A9)

★ 37 · 2021-03-21
k3vinlusec/Bluefrag_CVE-2020-0022

This is a RCE bluetooth vulnerability on Android 8.0 and 9.0

★ 32 · 2023-05-23
themmokhtar/CVE-2020-0022

A fully public exploit of the CVE-2020-0022 BlueFrag Android RCE Vulnerability (tested on Pixel 3 XL)

★ 22 · 2023-11-21
5k1l/cve-2020-0022

cve-2020-0022相关的一些东西

★ 4 · 2020-12-16
lsw29475/CVE-2020-0022
★ 4 · 2021-02-24
idkwim/CVE-2020-0022

BlueFrag experiments

★ 0 · 2020-02-19
devdanqtuan/poc-for-cve-2020-0022

cve-2020-0022

★ 0 · 2021-11-03
CVE-2025-55184
MULTI PoC
PoCs 9 ★ 22 Last push 2026-02-03 (8 months, 1 week ago)

Fetching description from NVD…

Show 8 of 9 repositories
ejpir/CVE-2025-55184
★ 7 · 2025-12-12
hans362/CVE-2025-55184-poc
★ 3 · 2025-12-12
KkHackingLearning/CVE-2025-55184_Testing

Python script for Testing CVE-2025-55184

★ 2 · 2025-12-18
KingHacker353/CVE-2025-55184
★ 1 · 2025-12-14
shubham-01-star/OpsGuard-simulation

OpsGuard eliminates the "3 AM PagerDuty" nightmare, specifically protecting against threats like the recent CVE-2025-55184 (Next.js DoS)

★ 1 · 2025-12-20
bakhod1r/CVE-2025-55184
★ 0 · 2025-12-12
Tarekhshaikh13/CVE-2025-55184

Target Code + Exploit

★ 0 · 2025-12-17
CVE-2025-58360
MULTI PoC
PoCs 6 ★ 7 Last push 2026-02-02 (8 months, 1 week ago)

Fetching description from NVD…

Show 6 repositories
quyenheu/CVE-2025-58360

XXE through a specific endpoint /geoserver/wms operation GetMap - Geoserver

★ 7 · 2025-12-08
quyenheu/Bypass-CVE-2025-58360

A new way to exploit CVE-2025-58360 bypass WAF

★ 1 · 2025-12-31
thomas-osgood/cve-2025-58360
★ 1 · 2026-02-02
carlzhang123/Blackash-CVE-2025-58360

CVE-2025-58360

★ 0 · 2025-11-26
rxerium/CVE-2025-58360

Passive detection for CVE-2025-58360

★ 0 · 2025-12-12
CVE-2021-43857
MULTI PoC
PoCs 5 ★ 7 Last push 2026-01-30 (8 months, 1 week ago)

Fetching description from NVD…

Show 5 repositories
LongWayHomie/CVE-2021-43857

Gerapy prior to version 0.9.8 is vulnerable to remote code execution. This issue is patched in version 0.9.8.

★ 7 · 2022-01-03
ProwlSec/gerapy-cve-2021-43857

Proof of Concept exploit for CVE‑2021‑43857: Authenticated Remote Code Execution in Gerapy (<0.9.8). Updated and automated version of the original Exploit‑DB P…

★ 2 · 2025-07-30
lowkey0808/CVE-2021-43857

CVE-2021-43857(gerapy命令执行)

★ 1 · 2022-04-26
G4sp4rCS/CVE-2021-43857-POC

Optimized exploit for CVE-2021-43857 affecting Gerapy < 0.9.8

★ 0 · 2025-04-24
CVE-2024-50498
MULTI PoC
PoCs 5 ★ 3 Last push 2026-01-28 (8 months, 1 week ago)

Fetching description from NVD…

Show 5 repositories
RandomRobbieBF/CVE-2024-50498

WP Query Console <= 1.0 - Unauthenticated Remote Code Execution

★ 3 · 2024-11-04
p0et08/CVE-2024-50498

This is a exploit for CVE-2024-50498

★ 1 · 2024-12-04
JoshuaProvoste/0-click-RCE-Exploit-for-CVE-2024-50498

Unauthenticated 0-click RCE exploit for CVE-2024-50498. Exploits a code injection vulnerability in the LUBUS WP Query Console plugin to execute arbitrary PHP c…

★ 1 · 2026-01-22
Nxploited/CVE-2024-50498
★ 0 · 2025-01-03
CVE-2024-23334
MULTI PoC
PoCs 14 ★ 27 Last push 2026-01-27 (8 months, 1 week ago)

Fetching description from NVD…

Show 8 of 14 repositories
jhonnybonny/CVE-2024-23334

aiohttp LFI (CVE-2024-23334)

★ 27 · 2024-03-19
z3rObyte/CVE-2024-23334-PoC

A proof of concept of the path traversal vulnerability in the python AioHTTP library =< 3.9.1

★ 20 · 2024-03-19
ox1111/CVE-2024-23334

CVE-2024-23334

★ 6 · 2024-02-29
wizarddos/CVE-2024-23334

Proof-of-Concept for LFI/Path Traversal vulnerability in Aiohttp =< 3.9.1

★ 5 · 2024-10-20
s4botai/CVE-2024-23334-PoC

A proof of concept of the LFI vulnerability on aiohttp 3.9.1

★ 4 · 2024-09-08
TheRedP4nther/LFI-aiohttp-CVE-2024-23334-PoC

Bash script to automate Local File Inclusion (LFI) attacks on aiohttp server version 3.9.1.

★ 2 · 2025-03-16
0xR00/CVE-2024-23334
★ 1 · 2024-11-24
CVE-2025-54309
MULTI PoC
PoCs 7 ★ 28 Last push 2026-01-27 (8 months, 1 week ago)

Fetching description from NVD…

Show 7 repositories
foregenix/CVE-2025-54309

Exploitation scripts for the CrushFTP CVE-2025-54309: vulnerability

★ 2 · 2025-09-03
0xLittleSpidy/CVE-2025-54309
★ 1 · 2026-01-27
blueisbeautiful/CVE-2025-54309

CrushFTP AS2 Authentication Bypass

★ 0 · 2025-08-30
chin-tech/CrushFTP_CVE-2025-54309
★ 0 · 2025-09-13
Smileyface101/CrushFTP-AS2-Bypass-Research-CVE-2025-54309

Findings & july race with 0day in wild

★ 0 · 2025-12-06
< Prev Page 22 / 33 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.