Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11117CVEs tracked
26011PoC repositories
12New in 24h
357PoC updated in 7 days
filters
All New Fresh PoC Hot Multi PoC Critical High

11117 results

CVE-2026-105030
FRESH PoC
PoCs 1 ★ 0 Last push 2026-10-03 (6 days, 17 hours ago)

Fetching description from NVD…

Show 1 repositories
asvorg/CVE-2026-105030-poc

A python3 PoC for CVE-2026-105030 Kener 4.0.0 before 4.1.6 Hidden Monitor Data Disclosure via Dashboard API

★ 0 · 2026-10-03
CVE-2008-0600
FRESH PoC
PoCs 2 ★ 0 Last push 2026-10-03 (6 days, 19 hours ago)

Fetching description from NVD…

Show 2 repositories
0b0111100/2008

Linux Kernel Exploits -> CVE-2008-0600 + CVE-2008-0900 + CVE-2008-4210

★ 0 · 2026-09-07
yilmaz8596/metasploitable-vulnerability-assessment

An end-to-end infrastructure penetration testing lab showcasing automated scanning (Nikto), remote code execution (CVE-2012-1823), and manual kernel privilege …

★ 0 · 2026-10-03
CVE-2026-0828
FRESH PoCMULTI PoC
PoCs 7 ★ 58 Last push 2026-10-03 (6 days, 20 hours ago)

Fetching description from NVD…

Show 7 repositories
DeathShotXD/0xKern3lCrush

Advanced PoC & Research for CVE-2026-0828 (Safetica) and CVE-2025-7771 (ThrottleStop). Analysis of BYOVD (Bring Your Own Vulnerable Driver) TTPs for Ring 0 pro…

★ 58 · 2026-10-03
ANYLNK/STProcessMonitorBYOVD

The PoC for CVE-2025-70795 / CVE-2026-0828 and updated driver

★ 48 · 2026-03-13
oxfemale/KillChain

Kernel Process Termination Tool ( CVE-2026-0828 exploit)

★ 36 · 2026-04-02
KOSEC-LLC/BYOVD-Research

BYOVD research performed by KOSEC. Includes vulnerable drivers and writeups (CVE-2026-0828).

★ 12 · 2026-05-28
mein-0/cve-2026-0828
★ 1 · 2026-05-27
Hika-sec/Terminator_Killer

Ring0-level process killer leveraging CVE-2026-0828 (BYOVD). Designed to demonstrate kernel-level process termination via a vulnerable signed driver, highlight…

★ 1 · 2026-08-23
ximerag/dast

CVE-2026-0828

★ 1 · 2026-09-02
CVE-2025-7771
FRESH PoCMULTI PoC
PoCs 12 ★ 58 Last push 2026-10-03 (6 days, 20 hours ago)

Fetching description from NVD…

Show 8 of 12 repositories
DeathShotXD/0xKern3lCrush

Advanced PoC & Research for CVE-2026-0828 (Safetica) and CVE-2025-7771 (ThrottleStop). Analysis of BYOVD (Bring Your Own Vulnerable Driver) TTPs for Ring 0 pro…

★ 58 · 2026-10-03
enessakircolak/CVE-2025-7771

ThrottleStop.sys Arbitrary Physical Memory R/W

★ 22 · 2026-08-10
wqsv/ThrottleStopPoC

CVE-2025-7771: Arbitrary physical memory and I/O port read/write via ThrottleStop driver

★ 18 · 2025-09-05
AmrHuss/throttlestop-exploit-rw

Arbitrary physical memory read/write exploitation using ThrottleStop.sys (CVE-2025-7771) with superfetch address translation - Windows kernel security research

★ 15 · 2025-11-13
D4rkks/CVE-2025-7771-Vulnerability-Exploration

Escalating privilege in the system from unsigned driver using throttlestop vulnerability

★ 15 · 2026-04-17
Gabriel-Lacorte/CVE-2025-7771

Arbitrary Function Call Exploit using the ThrottleStop driver

★ 12 · 2026-02-25
Demoo1337/ThrottleStop

CVE-2025-7771 ThrottleStop.sys privilege escalation exploit - unrestricted IOCTL access to physical memory via MmMapIoSpace

★ 11 · 2025-09-07
xM0kht4r/CVE-2025-7771

A simple PoC demonstrating the vulnerability in the ThrottleStop.sys driver, showcasing arbitrary physical memory read and write capabilities, as well as virtu…

★ 10 · 2026-01-15
CVE-2025-21065
FRESH PoC
PoCs 1 ★ 0 Last push 2026-10-03 (6 days, 20 hours ago)

Fetching description from NVD…

Show 1 repositories
Pealeap/CVE-2025-21065

A PoC for CVE-2025-21065 that allows any self-attacker to execute commands with Retail Mode privileges (UID 1000/GID 1000, u:r:system_app:s0)

★ 0 · 2026-10-03
CVE-2026-39808
FRESH PoCMULTI PoC
PoCs 6 ★ 26 Last push 2026-10-03 (6 days, 22 hours ago)

Fetching description from NVD…

Show 6 repositories
ynsmroztas/FortiSandbox-RCE-Exploit-CVE-2026-39808

FortiSandbox RCE Scanner — CVE-2026-39808

★ 26 · 2026-04-21
samu-delucas/CVE-2026-39808

PoC for Unauthenticated RCE in FortiSandbox via CVE-2026-39808

★ 9 · 2026-04-15
0xBlackash/CVE-2026-39808

CVE-2026-39808

★ 2 · 2026-04-23
gotr00t0day/CVE-2026-39808

An unauthenticated OS command injection vulnerability

★ 1 · 2026-10-03
HORKimhab/CVE-2026-39808

CVE-2026-39808 - Fortinet Sandbox - Draft

★ 0 · 2026-06-17
error-inside/CVE-2026-39808

Fortinet FortiSandbox 4.4.0-4.4.8 - OS Command Injection via tracer-behavior Endpoint

★ 0 · 2026-06-18
CVE-2026-4480
FRESH PoCMULTI PoC
PoCs 8 ★ 23 Last push 2026-10-03 (6 days, 23 hours ago)

Fetching description from NVD…

Show 8 repositories
TheCyberGeek/CVE-2026-4480-PoC
★ 23 · 2026-06-05
0xBlackash/CVE-2026-4480

CVE-2026-4480

★ 2 · 2026-06-09
saitoken241/CVE-2026-4480-POC

smb spooler to RCE

★ 2 · 2026-10-03
AlanNewberry/CVE-2026-4480-samba-print-command-injection-rce

Exploit para CVE-2026-4480: inyeccion de comandos en la variable %J del print command de Samba para RCE sin autenticacion via spoolss.

★ 2 · 2026-10-03
robinxiang/CVE-2026-4480

Exploit CVE-2026-4480

★ 1 · 2026-06-07
Vusal777/CVE-2026-4480-exploit-poc

This is an exploit poc for CVE-2026-4480

★ 0 · 2026-06-16
ClearLotus-git/CVE-2026-4480-PoC
★ 0 · 2026-06-20
timgad794/Abducted-HTB-Writeup

🔴 HackTheBox Abducted (Medium) — CVE-2026-4480 (Samba %J) → rclone reveal → SMB-Symlink → systemd Drop-in → Root

★ 0 · 2026-10-02
PoCs 2 ★ 3 Last push 2026-10-03 (1 week ago)

Fetching description from NVD…

Show 2 repositories
MRdark-ops/CVE-2026-19660-exploit

Proof-of-concept scanner and exploit helper for CVE-2026-14378: unauthenticated administrator session takeover in the WordPress plugin DevKit Pro (dplugins) th…

★ 3 · 2026-10-03
murrez/CVE-2026-19660

Divi Membership (DiviEngine) pre-auth admin takeover — CVE-2026-19660 paypal_param bypass. Python PoC with exploit + cookie export.

★ 0 · 2026-10-02
PoCs 1 ★ 0 Last push 2026-10-03 (1 week ago)

Fetching description from NVD…

Show 1 repositories
sifatnotes/Learn-SecByte-CTF-Labs-Beelzebub-SQLMap-Auth-CVE-2026-14461-Web-to-Root

Hands-on Learn SecByte CTF labs covering Beelzebub preparation, VM and network clues, Base64, CVE-2026-14461, admin panels, authentication, credential leaks, k…

★ 0 · 2026-10-03
CVE-2026-90970
CRITICAL
CVSS 9.9 CRITICAL CWE-1336 Published 2026-10-02 PoCs 1 ★ 0 Last push 2026-10-03 (1 week ago)

GitLab has remediated a vulnerability in the GitLab AI Gateway component affecting all versions of the AI Gateway from 18.1.6 before 19.2.4, 19.3 before 19.3.2, and 19.4 before 19.4.1 that, under certain conditions, could have allowed an authenticated user with Duo Agent Platform access to escape the prompt template sandbox via a specially crafted flow configuration, resulting in arbitrary command execution on the AI Gateway.

Show 1 repositories
techupdate24/gitlab-ai-gateway-cve-2026-90970

A complete guide and workflow for integrating Agile sprints with DevOps CI/CD pipelines.

★ 0 · 2026-10-03
PoCs 3 ★ 3 Last push 2026-10-03 (1 week ago)

Fetching description from NVD…

Show 3 repositories
4minx/CVE-2026-48842

CVE-2026-48842 PoC — Roundcube virtuser_query pre-auth SQLi

★ 3 · 2026-09-28
murrez/CVE-2026-48842

Roundcube virtuser_query pre-auth SQLi (CVE-2026-48842). Python PoC — version detect, virtuser plugin, login probe. https://pocbit.org

★ 1 · 2026-09-25
XsanFlip/POC-CVE-2026-48842

CVE-2026-48842 Roundcube SQLi Verifier

★ 1 · 2026-10-03
PoCs 1 ★ 0 Last push 2026-10-03 (1 week ago)

Fetching description from NVD…

Show 1 repositories
flavorex0000/libtiff-cve-2022-0891-lab

Isolated ASan/UBSan reproduction and patch verification lab for public CVE-2022-0891

★ 0 · 2026-10-03
PoCs 2 ★ 17 Last push 2026-10-03 (1 week ago)

Fetching description from NVD…

Show 2 repositories
Creeeeger/CVE-2024-56426

A PoC of the CVE-2024-56426 vulnerability.

★ 17 · 2026-10-03
xcracker000/CVE-2024-56426

CVE-2024-56426 Exynos9830 Bootrom Exploit - SM-G985F

★ 4 · 2026-08-15
CVE-2026-41096
MULTI PoC
PoCs 7 ★ 96 Last push 2026-10-03 (1 week ago)

Fetching description from NVD…

Show 7 repositories
ZeroDayEvil/CVE-2026-41096-PoC

🛡️ Official AI Security Tool module for CVE-2026-41096 (Windows DNSAPI.dll Heap Overflow / DNS-Mayhem Deep Dive Analysis & Audit Module).

★ 96 · 2026-10-03
satchfunky/CVE-2026-41096-POC

windows api bug

★ 38 · 2026-05-24
TwoSevenOneT/CVE-2026-41096-Attack-Surface

Attack surface in the real-world environment of CVE-2026-41096

★ 14 · 2026-06-04
mrk336/DNS-Mayhem-CVE-2026-41096-Deep-Dive

In‑depth technical analysis of CVE‑2026‑41096, a critical heap overflow in Windows DNSAPI.dll enabling remote code execution via crafted DNS responses. Include…

★ 4 · 2026-05-15
m0n1x90/CVE-2026-41096

CVE-2026-41096: Heap Overflow in the Windows DNS Client

★ 3 · 2026-05-24
personnumber3377/dns_client_fuzzing

Fuzzing the Microsoft Windows DNS client library. Inspired by CVE-2026-41096.

★ 0 · 2026-06-23
PoCs 1 ★ 0 Last push 2026-10-03 (1 week ago)

Fetching description from NVD…

Show 1 repositories
zahidec0de/CVE-2026-12345-poc

Proof of Concept (PoC) for CVE-2026-64638, a reflected XSS in WordPress Core < 7.0.3.

★ 0 · 2026-10-03
CVSS 8.7 HIGH CWE-1336 Published 2026-09-16 PoCs 1 ★ 0 Last push 2026-10-03 (1 week ago)

Craft CMS 4.8.0 through 4.18.5 and 5.0.0 through 5.10.12 sign an authenticated user's attacker-controlled license-shun cookie with the same key and format used to validate signed redirect parameters, because the HMAC signature is not bound to its purpose (Yii's cookieValidationKey is derived from the same Craft securityKey used for signed request parameters). An authenticated, non-administrator user (Control Panel access is not required) can set the cookie via the license-shun endpoint and transplant the signed envelope into the redirect parameter; on a successful login, Craft validates the signature and renders the authenticated bytes as an unsandboxed Twig template, where Twig's map filter accepts a string callback and allows PHP system() to execute arbitrary operating-system commands as the web-server user. Exploitation requires an account using password authentication without active 2FA, the default request configuration, and availability of PHP system(). The issue is fixed in 4.18.6 and 5.10.13.

Show 1 repositories
godylockz/CVE-2026-92592

Proof of concept for CVE-2026-92592: Craft CMS authenticated RCE

★ 0 · 2026-10-03
CVE-2021-21315
HOTMULTI PoC
PoCs 6 ★ 160 Last push 2026-10-03 (1 week ago)

Fetching description from NVD…

Show 6 repositories
ForbiddenProgrammer/CVE-2021-21315-PoC

CVE 2021-21315 PoC

★ 160 · 2021-06-09
alikarimi999/CVE-2021-21315
★ 4 · 2021-09-20
G01d3nW01f/CVE-2021-21315

rust noob tried write easy exploit code with rust lang

★ 1 · 2021-12-27
MazX0p/CVE-2021-21315-exploit

systeminformation

★ 0 · 2021-07-18
xMohamed0/CVE-2021-21315-POC
★ 0 · 2021-11-14
jimahub/scenario-d-kev

Thesis scenario test (research only): Scenario D: KEV override path - [email protected] CVE-2021-21315

★ 0 · 2026-10-03
CVE-2017-5941
MULTI PoC
PoCs 7 ★ 2 Last push 2026-10-03 (1 week ago)

Fetching description from NVD…

Show 7 repositories
uartu0/nodejshell

Exploit de reverseshell para desserialização em NodeJs (CVE-2017-5941)

★ 2 · 2023-08-27
Cr4zyD14m0nd137/Lab-for-cve-2018-15133

Ejecución de exploit de deserialización con CVE-2017-5941

★ 0 · 2023-05-13
f41k0n/RCE-NodeJs

Exploit Title: Node.JS - 'node-serialize' Remote Code Execution (2), Version: 0.0.4, CVE: CVE-2017-5941

★ 0 · 2025-10-12
jimahub/scenario-c-block

Thesis scenario test (research only): Scenario C: EPSS-BLOCK path - [email protected] CVE-2017-5941

★ 0 · 2026-10-03
PoCs 2 ★ 0 Last push 2026-10-03 (1 week ago)

Fetching description from NVD…

Show 2 repositories
mlbrilliance/aurora-demo-lockfile

AURORA demo target — deliberately vulnerable lockfiles (CVE-2019-10744, CVE-2018-18074, CVE-2020-26160)

★ 0 · 2026-05-11
jimahub/scenario-b-warn

Thesis scenario test (research only): Scenario B: WARN path - [email protected] CVE-2019-10744 (known-vulnerable dependency, low EPSS)

★ 0 · 2026-10-03
PoCs 1 ★ 0 Last push 2026-10-03 (1 week ago)

Fetching description from NVD…

Show 1 repositories
OhWelp/CVE-2026-83603-LPE-PoC

A PoC for ZDI-CAN-28834/CVE-2026-83603, which allows local privilege escalation using netdata and fail2ban-client

★ 0 · 2026-10-03
CVE-2026-9558
CRITICAL
CVSS 9.9 CRITICAL CWE-1336 Published 2026-05-29 PoCs 2 ★ 1 Last push 2026-10-03 (1 week ago)

A Server-Side Template Injection (SSTI) vulnerability exists in Mautic's theme engine. The platform renders uploaded Twig templates without a sandbox or strict function restrictions. Authenticated users with permissions to create or upload themes can abuse this to execute arbitrary code on the hosting server (Remote Code Execution) or access restricted system files and configuration settings.

Show 2 repositories
covepseng/cve-2026-9558-poc

Exploitability PoC for CVE-2026-9558 (SSTI Mautic Theme)

★ 1 · 2026-07-12
PoCs 2 ★ 1 Last push 2026-10-03 (1 week ago)

Fetching description from NVD…

Show 2 repositories
antid00t/CVE-2026-15989

Unauthenticated Privilege Escalation Mass Exploit Super Forms <= 6.3.316 CVE-2026-15989

★ 1 · 2026-10-03
fl0ydsec/CVE-2026-15989

SFADMIN - CVE-2026-15989 Super Forms <= 6.3.316 unauthenticated privilege escalation (mass scanner + exploit)

★ 0 · 2026-10-02
PoCs 2 ★ 11 Last push 2026-10-02 (1 week ago)

Fetching description from NVD…

Show 2 repositories
x86byte/adm-zip_LPE-PoC

CVE-2026-102282: Local Privilege Escalation via SUID/SGID preservation during archive extraction

★ 11 · 2026-09-30
Ahmed-Elmahgob/POC-CVE-2026-102282

CVE-2026-102282: adm-zip LPE via SUID/SGID preservation during archive extraction (fixed in 0.6.1)

★ 0 · 2026-10-02
PoCs 1 ★ 0 Last push 2026-10-02 (1 week ago)

Fetching description from NVD…

Show 1 repositories
parapapinho/CVE-2017-12561
★ 0 · 2026-10-02
PoCs 1 ★ 0 Last push 2026-10-02 (1 week ago)

Fetching description from NVD…

Show 1 repositories
LipeOzyy/CVE-2026-42322
★ 0 · 2026-10-02
< Prev Page 15 / 445 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.