Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11117CVEs tracked
26011PoC repositories
12New in 24h
354PoC updated in 7 days
filters
All New Fresh PoC Hot Multi PoC Critical High

11117 results

PoCs 1 ★ 1 Last push 2026-09-30 (1 week, 3 days ago)

Fetching description from NVD…

Show 1 repositories
CVE-2026-33017
MULTI PoC
PoCs 27 ★ 11 Last push 2026-09-30 (1 week, 3 days ago)

Fetching description from NVD…

Show 8 of 27 repositories
EQSTLab/CVE-2026-33017

Langflow RCE

★ 11 · 2026-08-19
MaxMnMl/langflow-CVE-2026-33017-poc

CVE-2026-33017 - An unauthenticated remote code execution in Langflow <= 1.8.1 via Public Flow Build Endpoint

★ 10 · 2026-03-22
z4yd3/PoC-CVE-2026-33017

CVE-2026-33017: Unauthenticated RCE in Langflow

★ 5 · 2026-03-27
c0gnit00/CVE-2026-33017

Python POC, Exploit for CVE-2026-33017

★ 2 · 2026-07-02
CerberusMrXi/Langflow-cve-2026-33017-exploit

CVE-2026-33017 exploitation tool for Langflow <1.9.0. Features reverse shells, command execution, file operations, persistence, and automated testing. Validate…

★ 2 · 2026-07-19
omer-efe-curkus/CVE-2026-33017-Langflow-RCE-PoC

The vulnerability in Langflow 1.8.1 and earlier allows a remote, unauthenticated attacker to achieve arbitrary command execution on the host.

★ 1 · 2026-03-21
Jorrit-VM/CVE-2026-33017
★ 1 · 2026-05-07
Industri4l-H3ll-Xpl0it3rs/CVE-2026-33017-Langflow-RCE

CVE-2026-33017 Exploit | by infrar3d

★ 1 · 2026-07-17
CVE-2025-31161
MULTI PoC
PoCs 20 ★ 48 Last push 2026-09-30 (1 week, 3 days ago)

Fetching description from NVD…

Show 8 of 20 repositories
Immersive-Labs-Sec/CVE-2025-31161

Proof of Concept for CVE-2025-31161 / CVE-2025-2825

★ 48 · 2025-04-08
0xgh057r3c0n/CVE-2025-31161

🛡️ CVE-2025-31161 - CrushFTP User Creation Authentication Bypass Exploit

★ 5 · 2025-05-23
TX-One/CVE-2025-31161

CrushFTP CVE-2025-31161 Exploit Tool 🔓

★ 2 · 2025-04-22
f4dee-backup/CVE-2025-31161

PoC CVE-2025-31161 - Authentication Bypass CrushFTP

★ 2 · 2025-09-14
SUPRAAA-1337/Nuclei_CVE-2025-31161_CVE-2025-2825

Official Nuclei template for CVE-2025-31161 (formerly CVE-2025-2825)

★ 1 · 2025-04-24
cesarbtakeda/CVE-2025-31161
★ 1 · 2025-10-21
ch3m1cl/CVE-2025-31161
★ 1 · 2025-12-07
Dairrow/CVE-2025-31161

PoC Authentication Bypass to RCE to Exploit CVE-2025-31161

★ 1 · 2026-01-11
PoCs 1 ★ 0 Last push 2026-09-30 (1 week, 3 days ago)

Fetching description from NVD…

Show 1 repositories
CVSS 8.8 HIGH CWE-89 Published 2026-09-28 PoCs 1 ★ 0 Last push 2026-09-30 (1 week, 3 days ago)

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Iron Mountain Archiving Services Inc. EnVision allows SQL Injection. This issue affects enVision: before 260655.

Show 1 repositories
PoCs 1 ★ 0 Last push 2026-09-30 (1 week, 3 days ago)

Fetching description from NVD…

Show 1 repositories
0xBlackash/CVE-2026-72018

CVE-2026-72018

★ 0 · 2026-09-30
CVE-2026-96760
CRITICAL
CVSS 9.8 CRITICAL CWE-20, CWE-347, CWE-358, CWE-670 Published 2026-09-28 PoCs 1 ★ 0 Last push 2026-09-30 (1 week, 3 days ago)

Authlib (v1.7.2 and below) contains a signature verification bypass vulnerability. The JsonWebSignature.deserialize_json() method accepts a JSON Serialization JWS object and returns the payload as successfully verified without checking for a signature and without requiring a cryptographic key.

Show 1 repositories
uziii2208/CVE-2026-96760

Authlib 1.7.2: Signature Verification Bypass - General JSON JWS Accepts Unsigned Payload when `signatures` is Empty

★ 0 · 2026-09-30
CVE-2026-16723
HOTMULTI PoC
PoCs 11 ★ 206 Last push 2026-09-30 (1 week, 3 days ago)

Fetching description from NVD…

Show 8 of 11 repositories
dinosn/fastjson-jsontype-rce-lab

Docker labs + defensive scanner for fastjson remote-class-load RCE. fastjson 1.2.66-1.2.83: @JSONType resource probe (CVE-2026-16723). fastjson2 2.0.57: attack…

★ 206 · 2026-07-27
why-success/fastjson-rce-lab

Fastjson 1.2.83 RCE 靶场环境 (CVE-2026-16723)

★ 4 · 2026-07-28
1xPwn/CVE-2026-16723

A critical vulnerability affecting Fastjson versions 1.2.68 – 1.2.83.

★ 2 · 2026-09-30
HORKimhab/CVE-2026-16723

CVE-2026-16723

★ 1 · 2026-07-26
EQSTLab/CVE-2026-16723

Fastjson RCE

★ 1 · 2026-07-30
fazilbaig1/CVE-2026-16723

This is N-day patch we releasing by testing our model capabilities

★ 1 · 2026-07-31
Superman-L/CVE-2026-16723

fastjson jsontype利用

★ 1 · 2026-08-19
CVE-2025-30208
HOTMULTI PoC
PoCs 24 ★ 194 Last push 2026-09-30 (1 week, 3 days ago)

Fetching description from NVD…

Show 8 of 24 repositories
ThumpBo/CVE-2025-30208-EXP

CVE-2025-30208-EXP

★ 194 · 2025-04-01
xuemian168/CVE-2025-30208

全网首发 CVE-2025-31125 CVE-2025-30208 CVE-2025-32395 Vite Scanner

★ 49 · 2025-04-13
4xura/CVE-2025-30208

A PoC of the exploit script for the Arbitrary File Read vulnerability of Vite /@fs/ Path Traversal in the transformMiddleware (CVE-2025-30208).

★ 12 · 2025-04-09
marino-admin/Vite-CVE-2025-30208-Scanner

CVE-2025-30208-EXP 任意文件读取

★ 10 · 2025-03-27
ThemeHackers/CVE-2025-30208

CVE‑2025‑30208 is a medium-severity arbitrary file read vulnerability in the Vite development server (a popular frontend build tool)

★ 10 · 2025-06-29
jackieya/ViteVulScan

针对CVE-2025-30208和CVE-2025-31125的漏洞利用

★ 7 · 2025-04-10
4m3rr0r/CVE-2025-30208-PoC

CVE-2025-30208 - Vite Arbitrary File Read PoC

★ 7 · 2025-09-08
PoCs 1 ★ 0 Last push 2026-09-30 (1 week, 3 days ago)

Fetching description from NVD…

Show 1 repositories
decker757/cs440-langgraph-nosql-demo

Local classroom demo of NoSQL operator injection in LangGraph's MongoDBSaver (GHSA-98xf-r82g-9mhx / CVE-2026-48121). Fictional data only.

★ 0 · 2026-09-30
PoCs 3 ★ 1 Last push 2026-09-29 (1 week, 3 days ago)

Fetching description from NVD…

Show 3 repositories
Herick-Costa/CVE-2023-43364-Searchor-RCE-Exploit

POC exploit via unsafe `eval()` usage in Searchor (< 2.4.2)

★ 1 · 2026-06-30
IamSaishi/CVE-2023-43364_Exploit
★ 0 · 2026-09-29
CVE-2020-24186
MULTI PoC
PoCs 7 ★ 19 Last push 2026-09-29 (1 week, 3 days ago)

Fetching description from NVD…

Show 7 repositories
hev0x/CVE-2020-24186-wpDiscuz-7.0.4-RCE

wpDiscuz 7.0.4 Remote Code Execution

★ 19 · 2021-06-15
Sakura-501/CVE-2020-24186-exploit

CVE-2020-24186的攻击脚本

★ 3 · 2022-04-05
meicookies/CVE-2020-24186

WpDiscuz 7.0.4 Arbitrary File Upload Exploit

★ 0 · 2021-08-13
GazettEl/CVE-2020-24186
★ 0 · 2025-03-12
sec-dojo-com/CVE-2020-24186
★ 0 · 2025-11-29
kiyingiericmark-wq/CVE-2020-24186
★ 0 · 2026-09-29
PoCs 1 ★ 10 Last push 2026-09-29 (1 week, 4 days ago)

Fetching description from NVD…

Show 1 repositories
dinosn/libheif-cve-2026-84383-lab

Docker lab for validating CVE-2026-84383 in libheif through Discourse

★ 10 · 2026-09-29
PoCs 1 ★ 0 Last push 2026-09-29 (1 week, 4 days ago)

Fetching description from NVD…

Show 1 repositories
7acini/CVE-2026-102261

https://vuldb.com/cve/CVE-2026-102261

★ 0 · 2026-09-29
CVE-2026-34990
MULTI PoC
PoCs 12 ★ 31 Last push 2026-09-29 (1 week, 4 days ago)

Fetching description from NVD…

Show 8 of 12 repositories
predyy/CVE-2026-34990

CVE-2026-34990 minimal PoC. CUPS <= 2.4.16 local privesc.

★ 31 · 2026-09-27
0xc4rc3l/CVE-2026-34990-poc
★ 3 · 2026-09-27
Noorkhalel/CVE-2026-34990-CUPS-LPE-PoC

Generic PoC for CVE-2026-34990 - CUPS 2.4.16 Local Privilege Escalation via Local token disclosure and arbitrary root file overwrite.

★ 3 · 2026-09-28
khush-613/CVE-2026-34990-poc
★ 2 · 2026-09-27
DENNISDGR/CVE-2026-34990-poc

LPE PoC for CVE-2026-34990 using a CUPS root file write vulnerability.

★ 1 · 2026-09-27
ungabunga-ctf/CVE-2026-34990

CVE-2026-34990 - OpenPrinting CUPS versions 2.4.16 and prior, a local unprivileged user can coerce cupsd into authenticating to an attacker-controlled localhos…

★ 1 · 2026-09-28
HORKimhab/CVE-2026-34990

CVE-2026-34990 - Draft or Todo

★ 0 · 2026-08-06
TRX-0/CVE-2026-34990-cups-lpe
★ 0 · 2026-09-21
PoCs 4 ★ 12 Last push 2026-09-29 (1 week, 4 days ago)

Fetching description from NVD…

Show 4 repositories
0xBlackash/CVE-2026-41091

CVE-2026-41091

★ 12 · 2026-05-21
tc4dy/CVE-2026-41091-PoC-Exploit

CVE-2026-41091 RedSun | Microsoft Defender LPE exploit. Low-privileged users gain NT AUTHORITY\SYSTEM - via Cloud Files API + NTFS junction trickery. Forces De…

★ 4 · 2026-09-29
s4m98/RedSun-

Windwos Zero Day Local PrivESc Exploit (CVE-2026-41091)

★ 1 · 2026-08-09
ridhinva/defender-privilege-escalation-scanner

Scanner: CVE-2026-41091/45498 Microsoft Defender LPE/DoS — Python scanner for Windows Defender privilege escalation (CISA KEV)

★ 0 · 2026-08-07
CVE-2026-54121
HOTMULTI PoC
PoCs 14 ★ 332 Last push 2026-09-29 (1 week, 4 days ago)

Fetching description from NVD…

Show 8 of 14 repositories
aniqfakhrul/CVE-2026-54121

Certighost POC

★ 332 · 2026-07-28
ZeroDayEvil/CVE-2026-54121-Certighost

🛡️ Official AI Security Tool module for CVE-2026-54121 (Certighost - AD CS Domain Controller Impersonation & PKINIT Elevation).

★ 88 · 2026-09-12
tc4dy/CVE-2026-54121-PoC-Exploit

CVE-2026-54121 - CertiGhost AD CS Multi-Exploit Framework | Rogue DC + LDAP spoofing, certificate abuse, PKINIT hash extraction, auto DCSync. Safe Checker + fu…

★ 30 · 2026-09-29
ZeroDayEvil/CVE-2026-54121
★ 26 · 2026-09-28
marcgoam/CVE-2026-54121-CertiGhost

CVE-2026-54121 (Certighost) AD CS DC-impersonation PoC. Patched SAN handling + MAQ-safe account reuse.

★ 11 · 2026-07-27
nafiez/Metasploit-CVE-2026-54121-Certighost

A Metasploit auxiliary module that escalates from any low-privileged domain user to full domain compromise by abusing the AD CS enrollment "chase" fallback. T…

★ 4 · 2026-07-31
0xBlackash/CVE-2026-54121

CVE-2026-54121

★ 2 · 2026-07-25
ChPratik/CVE-2026-54121

Improper authorization in Active Directory Certificate Services (AD CS) allows an authorized attacker to elevate privileges over a network.

★ 1 · 2026-07-28
PoCs 1 ★ 0 Last push 2026-09-29 (1 week, 4 days ago)

Fetching description from NVD…

Show 1 repositories
BomboBombone/CVE-2026-100381

Sanitized UploadWizard report and patch verification notes for CVE-2026-100381.

★ 0 · 2026-09-29
PoCs 1 ★ 0 Last push 2026-09-29 (1 week, 4 days ago)

Fetching description from NVD…

Show 1 repositories
BomboBombone/CVE-2026-100380

Sanitized Wikibase report and patch verification notes for CVE-2026-100380.

★ 0 · 2026-09-29
CVSS 6.9 MEDIUM CWE-79 Published 2026-09-25 PoCs 1 ★ 0 Last push 2026-09-29 (1 week, 4 days ago)

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Mediawiki - Cargo extension allows Reflected XSS. This issue affects Mediawiki - Cargo extension: through 3.9.4.

Show 1 repositories
BomboBombone/CVE-2026-96878

Sanitized Cargo report and patch verification notes for CVE-2026-96878.

★ 0 · 2026-09-29
CVSS 6.9 MEDIUM CWE-79 Published 2026-09-25 PoCs 1 ★ 0 Last push 2026-09-29 (1 week, 4 days ago)

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Mediawiki - Cargo extension allows Reflected XSS. This issue affects Mediawiki - Cargo extension: through 3.9.4.

Show 1 repositories
BomboBombone/CVE-2026-96877

Sanitized Cargo report and patch verification notes for CVE-2026-96877.

★ 0 · 2026-09-29
CVSS 6.9 MEDIUM CWE-79 Published 2026-09-25 PoCs 1 ★ 0 Last push 2026-09-29 (1 week, 4 days ago)

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Mediawiki - Cargo extension allows Reflected XSS. This issue affects Mediawiki - Cargo extension: through 3.9.4.

Show 1 repositories
BomboBombone/CVE-2026-96876

Sanitized Cargo report and patch verification notes for CVE-2026-96876.

★ 0 · 2026-09-29
CVSS 6.9 MEDIUM CWE-79 Published 2026-09-25 PoCs 1 ★ 0 Last push 2026-09-29 (1 week, 4 days ago)

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Mediawiki - Cargo extension allows Stored XSS. This issue affects Mediawiki - Cargo extension: through 3.9.4.

Show 1 repositories
BomboBombone/CVE-2026-96875

Sanitized Cargo report and patch verification notes for CVE-2026-96875.

★ 0 · 2026-09-29
CVSS 2.3 LOW CWE-79 Published 2026-09-25 PoCs 1 ★ 0 Last push 2026-09-29 (1 week, 4 days ago)

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in the Mediawiki - Cargo extension allows Stored XSS. This issue affects Mediawiki - Cargo extension: through 3.9.4.

Show 1 repositories
BomboBombone/CVE-2026-96874

Sanitized Cargo report and patch verification notes for CVE-2026-96874.

★ 0 · 2026-09-29
CVSS 5.5 MEDIUM CWE-79 Published 2026-09-24 PoCs 1 ★ 0 Last push 2026-09-29 (1 week, 4 days ago)

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Mediawiki - CirrusSearch extension allows Reflected XSS. This issue affects Mediawiki - CirrusSearch extension through 1.46.0.

Show 1 repositories
BomboBombone/CVE-2026-96873

Sanitized CirrusSearch report and patch verification notes for CVE-2026-96873.

★ 0 · 2026-09-29
< Prev Page 19 / 445 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.