Every new exploit,
on the radar.
Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.
monitoring live
CVE-2026-84411
CVE-2026-108592
CVE-2026-107806
CVE-2026-106445
CVE-2026-104335
CVE-2026-103690
CVE-2026-102428
CVE-2025-9548
CVE-2025-69872
CVE-2025-20730
CVE-2021-42023
CVE-2026-94503
CVE-2026-85097
CVE-2026-37107
14 contacts in last 24h
11128CVEs tracked
26034PoC repositories
14New in 24h
366PoC updated in 7 days
filters
803 results
PoCs 5
★ 12
Last push 2024-11-21 (1 year, 10 months ago)
Fetching description from NVD…
Show 5 repositories
d0rb/CVE-2024-4439
The provided exploit code leverages a stored Cross-Site Scripting (XSS) vulnerability (CVE-2024-4439) in WordPress Core versions up to 6.5.1.
★ 12 · 2024-05-06
xssor-dz/-CVE-2024-4439
WordPress Core < 6.5.2 - Unauthenticated & Authenticated (Contributor+) Stored Cross-Site Scripting via Avatar Block
★ 0 · 2024-05-20
PoCs 7
★ 25
Last push 2024-11-01 (1 year, 11 months ago)
Fetching description from NVD…
Show 7 repositories
PoCs 11
★ 823
Last push 2024-10-17 (1 year, 11 months ago)
Fetching description from NVD…
Show 8 of 11 repositories
zha0gongz1/CVE-2021-31166
PoC for CVE-2021-31166, a remote HTTP.sys use-after-free triggered remotely. Although it was defined as remote command execution, it can only cause the system …
★ 8 · 2021-05-17
PoCs 5
★ 15
Last push 2024-10-16 (1 year, 11 months ago)
Fetching description from NVD…
Show 5 repositories
dani87/ntpscanner
Scans NTP servers for CVE-2013-5211 NTP DDOS amplification vulnerability.
★ 15 · 2014-09-07
PoCs 9
★ 209
Last push 2024-10-15 (1 year, 11 months ago)
Fetching description from NVD…
Show 8 of 9 repositories
PoCs 6
★ 10
Last push 2024-10-11 (1 year, 11 months ago)
Fetching description from NVD…
Show 6 repositories
PoCs 7
★ 223
Last push 2024-10-07 (2 years ago)
Fetching description from NVD…
Show 7 repositories
duc-nt/CVE-2020-6287-exploit
PoC for CVE-2020-6287 The PoC in python for add user only, no administrator permission set. Inspired by @zeroSteiner from metasploit. Original Metasploit PR m…
★ 96 · 2020-07-21
murataydemir/CVE-2020-6287
[CVE-2020-6287] SAP NetWeaver AS JAVA (LM Configuration Wizard) Authentication Bypass (Create Simple & Administrator Java User)
★ 13 · 2020-09-18
PoCs 17
★ 214
Last push 2024-10-06 (2 years ago)
Fetching description from NVD…
Show 8 of 17 repositories
PoCs 6
★ 28
Last push 2024-10-04 (2 years ago)
Fetching description from NVD…
Show 6 repositories
PoCs 10
★ 409
Last push 2024-09-16 (2 years ago)
Fetching description from NVD…
Show 8 of 10 repositories
PoCs 8
★ 26
Last push 2024-09-13 (2 years ago)
Fetching description from NVD…
Show 8 repositories
Mr-r00t11/CVE-2024-4879
CVE-2024-4879.py is a Python script designed to detect specific vulnerabilities in ServiceNow instances and dump database connection details if the vulnerabili…
★ 4 · 2024-07-12
jdusane/CVE-2024-4879
Python script designed to detect specific vulnerabilities in ServiceNow instances and dump database connection details if the vulnerability is found. This tool…
★ 0 · 2024-08-14
PoCs 5
★ 113
Last push 2024-09-12 (2 years ago)
Fetching description from NVD…
Show 5 repositories
PoCs 5
★ 24
Last push 2024-09-08 (2 years, 1 month ago)
Fetching description from NVD…
Show 5 repositories
PoCs 9
★ 34
Last push 2024-08-24 (2 years, 1 month ago)
Fetching description from NVD…
Show 8 of 9 repositories
gotr00t0day/CVE-2024-28995
SolarWinds Serv-U was susceptible to a directory transversal vulnerability that would allow access to read sensitive files on the host machine.
★ 3 · 2024-08-24
PoCs 5
★ 119
Last push 2024-07-27 (2 years, 2 months ago)
Fetching description from NVD…
Show 5 repositories
buiduchoang24/CVE-2023-33733
This project aims at re-analyzing and PoC about CVE-2023-33733. Reportlab up to v3.6.12 allows attackers to execute arbitrary code via supplying a crafted PDF …
★ 1 · 2024-04-24
PoCs 5
★ 5
Last push 2024-07-22 (2 years, 2 months ago)
Fetching description from NVD…
Show 5 repositories
PoCs 5
★ 17
Last push 2024-07-10 (2 years, 3 months ago)
Fetching description from NVD…
Show 5 repositories
eudemonics/scaredycat
Python script to generate a malicious MP4 file and start a CherryPy web server hosting a simple HTML page with the embedded file. Exploits another Stagefright…
★ 17 · 2015-12-08
PoCs 7
★ 184
Last push 2024-07-09 (2 years, 3 months ago)
Fetching description from NVD…
Show 7 repositories
byt3n33dl3/CLFS
it's a CVE-2023-28252 (Patched), but feel free to use it for check any outdated software or reseach
★ 6 · 2024-07-09
PoCs 5
★ 19
Last push 2024-07-03 (2 years, 3 months ago)
Fetching description from NVD…
Show 5 repositories
PoCs 5
★ 5
Last push 2024-07-02 (2 years, 3 months ago)
Fetching description from NVD…
Show 5 repositories
Mr-r00t11/CVE-2024-34470
A critical vulnerability has been found in HSC Mailinspector up to version 5.2.18. This vulnerability affects an unknown functionality of the file /public/load…
★ 4 · 2024-06-20
PoCs 5
★ 0
Last push 2024-07-01 (2 years, 3 months ago)
Fetching description from NVD…
Show 5 repositories
PoCs 5
★ 1
Last push 2024-06-24 (2 years, 3 months ago)
Fetching description from NVD…
Show 5 repositories
PoCs 7
★ 2076
Last push 2024-06-16 (2 years, 3 months ago)
Fetching description from NVD…
Show 7 repositories
0xn0ne/weblogicScanner
weblogic 漏洞扫描工具。目前包含对以下漏洞的检测能力:CVE-2014-4210、CVE-2016-0638、CVE-2016-3510、CVE-2017-3248、CVE-2017-3506、CVE-2017-10271、CVE-2018-2628、CVE-2018-2893、CVE-2018-2894、C…
★ 2076 · 2023-11-24
PoCs 5
★ 14
Last push 2024-06-10 (2 years, 4 months ago)
Fetching description from NVD…
Show 5 repositories
PoCs 5
★ 14
Last push 2024-06-06 (2 years, 4 months ago)
Fetching description from NVD…
Show 5 repositories
Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.