Every new exploit,
on the radar.
Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.
monitoring live
CVE-2026-88776
CVE-2026-84520
CVE-2026-51994
CVE-2026-107181
CVE-2026-104587
CVE-2026-104586
CVE-2026-104585
CVE-2026-104584
CVE-2025-34071
CVE-2026-95149
CVE-2026-94597
CVE-2026-28775
CVE-2026-24046
CVE-2026-107406
14 contacts in last 24h
11114CVEs tracked
26004PoC repositories
17New in 24h
361PoC updated in 7 days
filters
803 results
PoCs 10
★ 73
Last push 2026-10-09 (16 hours, 21 minutes ago)
Fetching description from NVD…
Show 8 of 10 repositories
CVSS 9.5 CRITICAL
CWE-20
Published 2026-09-27
PoCs 12
★ 23
Last push 2026-10-09 (20 hours, 41 minutes ago)
Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway.
This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading to an unauthenticated attacker to execute arbitrary commands.
Show 8 of 12 repositories
PoCs 12
★ 231
Last push 2026-10-09 (22 hours, 29 minutes ago)
Fetching description from NVD…
Show 8 of 12 repositories
HydraSoft/CVE-2026-41089-Netlogon-RCE
Technical analysis and Proof-of-Concept (PoC) for CVE-2026-41089, a critical unauthenticated Remote Code Execution (RCE) vulnerability in the Windows Netlogon …
★ 34 · 2026-08-24
ADScanPro/CVE-2026-41089-LongLogon
CVE-2026-41089 checker: unauthenticated, non-destructive detection for the Netlogon CLDAP stack buffer overflow (CVSS 9.8). Reports whether a domain controller…
★ 14 · 2026-06-04
hnytgl/CVE-2026-41089
CVE-2026-41089 是 Windows Netlogon 服务中一个关键的远程代码执行漏洞,单包即可崩溃 lsass.exe,导致域控制器在约 30-60 秒内重启。此期间该 DC 的所有域认证将失败。
★ 13 · 2026-09-26
ZeroDayVPN/CVE-2026-41089-Netlogon
🛡️ Official AI Security Tool diagnostic module for CVE-2026-41089 (Windows Netlogon Stack Buffer Overflow RCE). Features technical writeup, attack architecture…
★ 5 · 2026-09-29
PoCs 11
★ 7
Last push 2026-10-09 (22 hours, 34 minutes ago)
Fetching description from NVD…
Show 8 of 11 repositories
everest90909/YellowKey-WinRE-Remediation
Intune Remediation package for the CVE-2026-45585 YellowKey BitLocker/WinRE bypass mitigation described in the provided procedure. This package removes `autof…
★ 1 · 2026-05-21
PoCs 8
★ 13
Last push 2026-10-09 (22 hours, 38 minutes ago)
Fetching description from NVD…
Show 8 repositories
PoCs 40
★ 12
Last push 2026-10-09 (22 hours, 39 minutes ago)
Fetching description from NVD…
Show 8 of 40 repositories
boroeurnprach/CVE-2026-23744-PoC
CVE-2026-23744 - Versions 1.4.2 and earlier of MCPJam inspector are vulnerable to remote code execution (RCE). Because the tool listens on 0.0.0.0 by default, …
★ 12 · 2026-06-14
luiskrnr/exploit-CVE-2026-23744
MCPJam Inspector is a local-first development platform for MCP servers. In versions 1.4.2 (and earlier), a RCE flaw lets attackers send crafted HTTP request th…
★ 4 · 2026-04-10
Mluex0/CVE-2026-23744-PoC
CVE-2026-23744 is an unauthenticated command injection in MCPJam Inspector ≤1.4.2 via /api/mcp/connect. This POC exploits it by sending a crafted JSON payload …
★ 3 · 2026-08-11
ctzisme/CVE-2026-23744
PoC for CVE-2026-23744, demonstrating an unauthenticated RCE in MCPJam Inspector (<= 1.4.2).
★ 1 · 2026-03-26
PoCs 325
★ 4074
Last push 2026-10-09 (22 hours, 40 minutes ago)
Fetching description from NVD…
Show 8 of 325 repositories
tgies/copy-fail-c
Cross-platform C port of the Copy Fail Linux LPE (CVE-2026-31431). Disclosed 2026-04-29 by Theori / Xint.
★ 445 · 2026-07-17
painoob/Copy-Fail-Exploit-CVE-2026-31431
Most Linux LPEs need a race window or a kernel-specific offset. Copy Fail is a straight-line logic flaw, it needs neither. The same 732-byte Python script (or …
★ 109 · 2026-04-29
sgkdev/page_inject
CVE-2026-31431-killed page-cache exploit — code exec into containers sharing the same image layer
★ 76 · 2026-05-06
PoCs 40
★ 35
Last push 2026-10-09 (22 hours, 59 minutes ago)
Fetching description from NVD…
Show 8 of 40 repositories
Black1hp/mongobleed-scanner
MongoDB CVE-2025-14847 Heap Memory Leak Scanner | OP_COMPRESSED zlib Vulnerability | Bug Bounty & Red Team Tool
★ 35 · 2025-12-28
cybertechajju/CVE-2025-14847_Expolit
a critical memory disclosure vulnerability in MongoDB's zlib compression handling. This tool allows security researchers to extract sensitive data from vulnera…
★ 34 · 2025-12-27
PoCs 7
★ 4
Last push 2026-10-09 (23 hours ago)
Fetching description from NVD…
Show 7 repositories
Nikopmpm/nikopmpm.github.io
🚀 Utilize this C++ tool for local privilege escalation on CheckMK agents, addressing the CVE-2024-0670 vulnerability effectively.
★ 0 · 2026-01-09
PoCs 462
★ 2453
Last push 2026-10-09 (23 hours, 1 minute ago)
Fetching description from NVD…
Show 8 of 462 repositories
mrknow001/RSC_Detector
Supports RSC fingerprinting and exploitation of the React component vulnerability CVE-2025-55182.
★ 588 · 2025-12-05
emredavut/CVE-2025-55182
RSC/Next.js RCE Vulnerability Detector & PoC Chrome Extension – CVE-2025-55182 & CVE-2025-66478
★ 313 · 2025-12-06
PoCs 5
★ 5
Last push 2026-10-09 (23 hours, 6 minutes ago)
Fetching description from NVD…
Show 5 repositories
rxerium/CVE-2025-26466
The OpenSSH client and server are vulnerable to a pre-authentication DoS attack between versions 9.5p1 to 9.9p1 (inclusive) that causes memory and CPU consump…
★ 5 · 2025-10-14
PoCs 5
★ 4
Last push 2026-10-09 (1 day, 5 hours ago)
Fetching description from NVD…
Show 5 repositories
chu0119/vc-strike
VC-Strike — VMware vCenter CVE-2026-59310 (unauth root RCE) & CVE-2026-59309 (SRP auth bypass) authorized pentest suite. GUI+CLI, multi-session C2, stdlib-only…
★ 1 · 2026-10-03
PoCs 7
★ 2
Last push 2026-10-08 (1 day, 8 hours ago)
Fetching description from NVD…
Show 7 repositories
aish19siddiqua-commits/mtechweek_04
Metasploit-based penetration test on an isolated Metasploitable2 lab VM — remote exploitation via DistCC (CVE-2004-2687), privilege escalation via udev netlink…
★ 0 · 2026-08-22
ocfagb/hacktivity-vulns-exploits-lab
Writeup + CVE analysis + countermeasures for the Hacktivity 'Vulnerabilities, Exploits, and Remote Access Payloads' lab (netcat shells, Metasploit, CVE-2010-12…
★ 0 · 2026-08-27
PoCs 26
★ 56
Last push 2026-10-08 (1 day, 9 hours ago)
Fetching description from NVD…
Show 8 of 26 repositories
wordsec/XSS2Shell
Wordpress Pre-auth XSS to RCE exploit PoC (xss2shell & CVE-2026-64638)
★ 7 · 2026-08-07
HackSpeak/CVE-2026-64638
XSS2Shell (CVE-2026-64638) WordPress pre-auth XSS to RCE PoC mirror — WordSec, MIT; for authorized security testing
★ 2 · 2026-08-08
PoCs 14
★ 43
Last push 2026-10-08 (1 day, 9 hours ago)
Fetching description from NVD…
Show 8 of 14 repositories
guneykabel/cve-2026-85706
Exploit poc for CVE-2026-85706 an unauthenticated arbitrary file read on Gitlab CE-EE affecting versions: 18.7–19.1.7; 19.2.0–19.2.5; 19.3.0–19.3.1
★ 43 · 2026-09-11
plur1bu5/gitread
CVE-2026-85706 · GitLab CE/EE unauthenticated file read · research PoC with oracle mode, fd enumeration, and tiered loot targeting
★ 1 · 2026-09-13
PoCs 8
★ 12
Last push 2026-10-08 (1 day, 10 hours ago)
Fetching description from NVD…
Show 8 repositories
tc4dy/CVE-2026-82329-PoC-Exploit
CVE-2026-82329 – JFrog Artifactory Auth Bypass Toolkit (CVSS 9.8) | Red/Blue Team suite for self-hosted Artifactory 7.x (111-161). 2 tools: Full Exploit (JWTfo…
★ 3 · 2026-10-08
0xCyp1337/CVE-2026-82329
CVE‑2026‑82329 is a critical authentication bypass in JFrog Artifactory (CVSS 9.8) allowing unauthenticated attackers to obtain full administrative privileges.…
★ 0 · 2026-09-03
PoCs 45
★ 64
Last push 2026-10-08 (1 day, 15 hours ago)
Fetching description from NVD…
Show 8 of 45 repositories
iammerrida-source/nginx-rift-detect
Behavioral detection script for CVE-2026-42945 (NGINX Rift) — heap overflow in ngx_http_rewrite_module. No RCE, crash-based detection only.
★ 4 · 2026-05-15
PoCs 25
★ 30
Last push 2026-10-08 (1 day, 15 hours ago)
Fetching description from NVD…
Show 8 of 25 repositories
orange0Mint/CVE-2025-57819_FreePBX
This repository includes two PoC scripts for CVE-2025-57819 in FreePBX: one to create a new admin user (poc_admin.py), and another to extract credentials using…
★ 2 · 2025-09-18
PoCs 5
★ 20
Last push 2026-10-08 (1 day, 15 hours ago)
Fetching description from NVD…
Show 5 repositories
PoCs 15
★ 278
Last push 2026-10-08 (1 day, 16 hours ago)
Fetching description from NVD…
Show 8 of 15 repositories
Qingizi7/cve-2025-21479_iqooneo8
Local root exploit for CVE-2025-21479 (Adreno KGSL) on iQOO Neo8 (SM8475) - physical memory r/w, disables SELinux, spawns root shell
★ 7 · 2026-09-06
RamenFast/zenfone9-root
Temporary root (uid 0) on a bootloader-locked ASUS Zenfone 9 via CVE-2025-21479 + a perf-based physical-address leak. GPLv3.
★ 4 · 2026-09-18
PoCs 7
★ 21
Last push 2026-10-08 (1 day, 16 hours ago)
Fetching description from NVD…
Show 7 repositories
nullxall/cve-2025-62215-exploit-poc
CVE-2025-62215 is an Elevation of Privilege (EoP) vulnerability in the Windows Kernel, disclosed in November 2025 and confirmed to be actively exploited as a z…
★ 1 · 2025-11-14
PoCs 12
★ 18
Last push 2026-10-08 (1 day, 17 hours ago)
Fetching description from NVD…
Show 8 of 12 repositories
papageo75/CVE-2026-48908-PoC
Unauthenticated RCE PoC for CVE-2026-48908 — SP Page Builder for Joomla (≤ 6.6.1): arbitrary file upload via asset.uploadCustomIcon. Self-cleaning, token-guard…
★ 18 · 2026-06-23
Jenderal92/CVE-2026-48908
CVE-2026-48908 — PoC exploit for unauthenticated RCE in SP Page Builder (Joomla) via arbitrary file upload. Multi‑threaded, case‑bypass, shell verification. Fo…
★ 3 · 2026-07-08
ayiezola/CVE-2026-48908
Unauthenticated RCE PoC for CVE-2026-48908 SP Page Builder (Joomla) arbitrary file upload and remote code execution exploit with mass scaning support.
★ 0 · 2026-06-25
PoCs 44
★ 61
Last push 2026-10-08 (1 day, 19 hours ago)
Fetching description from NVD…
Show 8 of 44 repositories
Unix13/metasploitable2
PHP-CGI-REMOTE_CVE-2012-1823, UnrealIRCd, MySQL, PostgreSQL and SSH bruteforce, VSFTPD2.3.4, samba CVE-2007-2447, JAVA RMI Server, distcc daemon, misconfigured…
★ 4 · 2018-07-11
JoseBarrios/CVE-2007-2447
Remote Command Injection Vulnerability (CVE-2007-2447), allows remote attackers to execute arbitrary commands by specifying a Samba username containing shell m…
★ 1 · 2020-01-20
PoCs 17
★ 114
Last push 2026-10-08 (1 day, 20 hours ago)
Fetching description from NVD…
Show 8 of 17 repositories
ynsmroztas/KeySniper
**CVE-2026-18963** — unauthenticated Keycloak account takeover via the reset-credentials flow.
★ 114 · 2026-09-06
PoCs 5
★ 1
Last push 2026-10-08 (1 day, 21 hours ago)
Fetching description from NVD…
Show 5 repositories
kaizoku73/CVE-2026-31857-PoC
Proof of Concept for CVE-2026-31857, an authenticated Remote Code Execution vulnerability in Craft CMS caused by unsafe processing of user-controlled Twig expr…
★ 0 · 2026-10-08
Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.