Every new exploit,
on the radar.
Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.
monitoring live
CVE-2026-94503
CVE-2026-85097
CVE-2026-37107
3 contacts in last 24h
11117CVEs tracked
26011PoC repositories
3New in 24h
344PoC updated in 7 days
filters
803 results
PoCs 6
★ 8
Last push 2025-12-13 (9 months, 4 weeks ago)
Fetching description from NVD…
Show 6 repositories
PoCs 6
★ 150
Last push 2025-12-12 (9 months, 4 weeks ago)
Fetching description from NVD…
Show 6 repositories
mbanyamer/CVE-2025-11001---7-Zip
CVE-2025-11001 (CVSS 7.0) – 7-Zip < 25.00 Directory Traversal → RCE via crafted ZIP with symlink. Allows arbitrary file write when extracted as Administrator. …
★ 7 · 2025-11-22
PoCs 9
★ 13
Last push 2025-12-11 (9 months, 4 weeks ago)
Fetching description from NVD…
Show 8 of 9 repositories
0dayan0n/RCE_CVE-2024-7954-
The porte_plume plugin used by SPIP before 4.30-alpha2, 4.2.13, and 4.1.16 is vulnerable to an arbitrary code execution vulnerability. A remote and unauthentic…
★ 2 · 2024-12-28
zxj-hub/CVE-2024-7954POC
SPIP 4.30-alpha2、4.2.13、4.1.16之前的版本使用的porte_plume插件存在任意代码执行漏洞,远程未经身份验证的攻击者可以通过发送精心设计的HTTP 请求以SPIP用户身份执行任意PHP代码。
★ 0 · 2024-12-20
PoCs 17
★ 373
Last push 2025-12-08 (10 months ago)
Fetching description from NVD…
Show 8 of 17 repositories
bao7uo/RAU_crypto
Telerik UI for ASP.NET AJAX File upload and .NET deserialisation exploit (CVE-2017-11317, CVE-2017-11357, CVE-2019-18935)
★ 179 · 2020-08-22
PoCs 6
★ 75
Last push 2025-12-08 (10 months ago)
Fetching description from NVD…
Show 6 repositories
sebr-dev/Havoc-C2-SSRF-to-RCE
This is a modified version of the CVE-2024-41570 SSRF PoC from @chebuya chained with the auth RCE exploit from @hyperreality. This exploit executes code remote…
★ 9 · 2025-01-21
PoCs 11
★ 19
Last push 2025-12-06 (10 months ago)
Fetching description from NVD…
Show 8 of 11 repositories
PoCs 12
★ 257
Last push 2025-12-02 (10 months, 1 week ago)
Fetching description from NVD…
Show 8 of 12 repositories
tijme/kernel-mii
Cobalt Strike (CS) Beacon Object File (BOF) foundation for kernel exploitation using CVE-2021-21551.
★ 85 · 2023-05-07
mathisvickie/CVE-2021-21551
arbitrary kernel read/write in dbutil_2_3.sys, Proof of Concept Local Privilege Escalation to nt authority/system
★ 60 · 2021-11-16
PoCs 7
★ 91
Last push 2025-12-01 (10 months, 1 week ago)
Fetching description from NVD…
Show 7 repositories
PoCs 6
★ 6
Last push 2025-12-01 (10 months, 1 week ago)
Fetching description from NVD…
Show 6 repositories
PoCs 8
★ 132
Last push 2025-12-01 (10 months, 1 week ago)
Fetching description from NVD…
Show 8 repositories
jax7sec/S2-062
Apache Struts2 S2-062远程代码执行漏洞(CVE-2021-31805) 支持批量扫描漏洞及漏洞利用
★ 23 · 2022-04-15
PoCs 6
★ 4
Last push 2025-12-01 (10 months, 1 week ago)
Fetching description from NVD…
Show 6 repositories
PoCs 8
★ 1
Last push 2025-11-30 (10 months, 1 week ago)
Fetching description from NVD…
Show 8 repositories
PoCs 5
★ 6
Last push 2025-11-30 (10 months, 1 week ago)
Fetching description from NVD…
Show 5 repositories
Mkway/CVE-2025-57833
We've set up an environment to test CVE-2025-57833. This environment was built using AI, so it's subject to ongoing modification.
★ 2 · 2025-09-08
PoCs 15
★ 70
Last push 2025-11-26 (10 months, 2 weeks ago)
Fetching description from NVD…
Show 8 of 15 repositories
AnubisSec/CVE-2019-16278
A quick python exploit for the Nostromo 1.9.6 remote code execution vulnerability. Simply takes a host and port that the web server is running on.
★ 8 · 2019-11-22
PoCs 9
★ 45
Last push 2025-11-25 (10 months, 2 weeks ago)
Fetching description from NVD…
Show 8 of 9 repositories
PoCs 17
★ 62
Last push 2025-11-24 (10 months, 2 weeks ago)
Fetching description from NVD…
Show 8 of 17 repositories
cyberh3als/CVE-2023-36845-POC
CVE-2023-36845 PoC script automates the PoC for CVE-2023-36845 targeting Juniper Networks Junos OS's J-Web component on EX and SRX Series devices. It exploits …
★ 4 · 2023-10-02
PoCs 22
★ 131
Last push 2025-11-24 (10 months, 2 weeks ago)
Fetching description from NVD…
Show 8 of 22 repositories
s0md3v/Shiva
Improved DOS exploit for wordpress websites (CVE-2018-6389)
★ 131 · 2020-10-01
PoCs 11
★ 107
Last push 2025-11-18 (10 months, 3 weeks ago)
Fetching description from NVD…
Show 8 of 11 repositories
PoCs 19
★ 334
Last push 2025-11-17 (10 months, 3 weeks ago)
Fetching description from NVD…
Show 8 of 19 repositories
Tharana/vulnerability-exploitation
Local Root vulnerability- CVE-2019-13272 / Security Bypass Vulnerability – CVE-2019-14287/Google Android - 'Stagefright' Remote Code Execution - CVE-2015-1538
★ 3 · 2020-05-12
PoCs 10
★ 18
Last push 2025-11-10 (11 months ago)
Fetching description from NVD…
Show 8 of 10 repositories
hunntr/CVE-2023-46818
An issue was discovered in ISPConfig before 3.2.11p1. PHP code injection can be achieved in the language file editor by an admin if admin_allow_langedit is ena…
★ 16 · 2025-07-06
ajdumanhug/CVE-2023-46818
CVE-2023-46818 Python3 Exploit for ISPConfig <= 3.2.11 (language_edit.php) PHP Code Injection Vulnerability
★ 15 · 2025-04-16
ajdumanhug/CVE-2022-42092
CVE-2023-46818 Python3 Exploit for Backdrop CMS <= 1.22.0 Authenticated Remote Command Execution (RCE)
★ 1 · 2025-04-27
PoCs 7
★ 1
Last push 2025-11-08 (11 months ago)
Fetching description from NVD…
Show 7 repositories
razvanclaudiu/ktor-xxe-poc
This repository provides a Proof of Concept for CVE-2023-45612, demonstrating an XML External Entity (XXE) injection vulnerability in JetBrains Ktor versions p…
★ 0 · 2025-10-24
PoCs 5
★ 7
Last push 2025-11-01 (11 months, 1 week ago)
Fetching description from NVD…
Show 5 repositories
PoCs 14
★ 1
Last push 2025-10-28 (11 months, 1 week ago)
Fetching description from NVD…
Show 8 of 14 repositories
PoCs 12
★ 21
Last push 2025-10-28 (11 months, 1 week ago)
Fetching description from NVD…
Show 8 of 12 repositories
Hunt3r0x/CVE-2021-31630-HTB
proof of Concept (PoC) exploit for CVE-2021-31630, targeting the OpenPLC service running on the WifineticTwo box on the Hack The Box platform.
★ 9 · 2024-03-21
PoCs 18
★ 30
Last push 2025-10-27 (11 months, 1 week ago)
Fetching description from NVD…
Show 8 of 18 repositories
Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.