Fetching description from NVD…
Show 2 repositories
CVE-2026-24423 exp
Unauthenticated RCE PoC for CVE-2026-24423 in SmarterTools SmarterMail (ConnectToHub). For authorized security testing, CTFs, and research only.
Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.
monitoring live11117 results
Fetching description from NVD…
CVE-2026-24423 exp
Unauthenticated RCE PoC for CVE-2026-24423 in SmarterTools SmarterMail (ConnectToHub). For authorized security testing, CTFs, and research only.
Fetching description from NVD…
Proof of Concept and Write-up for CVE-2026-56096 (Blind Parameter Injection in TYPO3 EXT:solr)
Fetching description from NVD…
CVE-2026-100721 PoC: vm2 <3.12.2 NodeVM external allowlist bypass → sandbox escape / host RCE. Local Node lab (evil-left-pad), remote sandbox API mass exploit,…
Fetching description from NVD…
CVE-2026-82384 PoC: Apache Roller 6.1.5 unauthenticated XML-RPC ex:serializable Java deserialization (pre-auth RCE). Check, ysoserial exploit, mass bulk scanni…
Fetching description from NVD…
GEOritm CVE
Fetching description from NVD…
CVE-2026-100886 | Unauthenticated Remote Code Execution toolkit.
A vulnerability was found in D-Link R95 BE9500_1.00.16. This vulnerability affects the function system of the file /bin/ssi of the component DHMAPI. The manipulation of the argument NTPServer results in os command injection. The attack can be executed remotely. The exploit has been made public and could be used.
D-Link R95 (BE9500) DHMAPI SetTimeSettings command injection -> root RCE PoC (CVE-2026-93958); for authorized testing
CVE-2026-93958 PoC: D-Link R95 BE9500 DHMAPI SetTimeSettings NTPServer authenticated root command injection. DHMAPI login, RCE verify, mass bulk exploit mode, …
Fetching description from NVD…
Exploit for Pterodactyl Panel ≤ 1.11.10 - unauthenticated LFI to RCE.
A script that gives you the credentials of a Pterodactyl panel vulnerable to CVE-2025-49132
PoCs for CVE-2025-49132
Pterodactyl翼龙面板CVE-2025-49132批量检测☝️🤓
This repository contains a Proof of Concept (PoC) for CVE-2025-49132, a critical vulnerability in Pterodactyl Panel versions < 1.11.11.
CVE For Pterodactyl (For Study and Education)
Fetching description from NVD…
CVE-2026-85984 PoC: WordPress miniOrange OTP ≤5.5.5 unauth admin bypass (mo_wp_login_intent=otp + empty password). Check/exploit, user enum, colored CLI. https…
Fetching description from NVD…
POC for CVE-2026-78006 The Events Calendar <= 6.17.4 - Unauthenticated PHP Object Injection to Remote Code Execution
The Events Calendar Wordpress Plugin Mass Exploit CVE-2026-78006 & CVE-2026-78159
Traefik is an open source HTTP reverse proxy and load balancer. From 2.11.26 until 2.11.57 and 3.7.13, Traefik forwards a client-supplied Connection header requesting Upgrade, the Upgrade: h2c token, and HTTP2-Settings to a shared backend. If the backend accepts h2c and returns 101 Switching Protocols, Traefik enters a raw tunnel and no longer applies routers, BasicAuth, ForwardAuth, IPAllowList, RateLimit, access logging, metrics, or tracing to later HTTP/2 requests, allowing an unauthenticated request through an unprotected route to reach protected paths on the same backend. This issue is fixed in 2.11.57 and 3.7.13.
CVE-2026-88008 - Traefik (<=2.11.56 / <=3.7.12): a client-controlled h2c upgrade tunnels past routers and middleware (BasicAuth/ForwardAuth/IPAllowList), unaut…
Fetching description from NVD…
Arguments to reject CVE-2025-56005
This is a modified version of PLY 3.11, from PyPI (current defunct git repo is not current to PyPI) which reimplements the pickle function in yacc.py to resolv…
Lab demonstrating that CVE-2025-56005 is real and does allow arbitrary code execution at a minimum (the debate about RCE notwithstanding here), and shows that …
Fetching description from NVD…
CVE-2026-71963 - Hermes Agent 0.18.2-0.21.0 RCE via a repository-delivered .git/config (core.fsmonitor). Stdlib-only Python, verified on real 0.21.0 with a cle…
Fetching description from NVD…
Unauthenticated privilege escalation in WordPress WAWP (Automation Web Platform) ≤ 4.8.6 via public REST signup and unsanitized wawp_custom_fields → admin. Pyt…
CVE-2026-14281
A Windows-friendly, non-destructive Python checker for detecting WordPress installations potentially affected by CVE-2026-14281.
Fetching description from NVD…
CVE-2026-28695 PoC - Authenticated blind remote code execution in Craft CMS.
Authenticated, **blind** remote code execution in Craft CMS. Fix for CVE-2026-28695
Fetching description from NVD…
PHP Object Injection in Profile Builder < 4.0.1
Fetching description from NVD…
Fetching description from NVD…
Private Fortbridge PoC for the CVE-2026-32740 Next.js/sharp leak-to-memcpy-GOT RCE chain
Fetching description from NVD…
CVE-2026-100835 PoC: Edgeless Contrast <1.16.0 remote attestation relay (aTLS / CWE-295). Manifest audit (AllowedChipIDs/AllowedPIIDs), version & coordinator p…
Fetching description from NVD…
CVE-2021-28235 PoC
Fetching description from NVD…
CVE-2026-35204 PoC
Fetching description from NVD…
A variant of CVE-2024-58239
Tracking CVE-2025-39682, the Linux kernel kTLS zero-length record use-after-free
Fetching description from NVD…
CVE-2025-39964 EXP
Tracking CVE-2025-39964, the Linux kernel AF_ALG concurrent-write race
Fetching description from NVD…
Tracking CVE-2026-53266, the Linux kernel ebtables SNAT ARP-rewrite page-cache write
Wyoming before 1.10.2 contains a server-side request forgery vulnerability that allows unauthenticated attackers with network access to force outbound connections to arbitrary targets by supplying a malicious `uri` query parameter to the HTTP API. Attackers can pass arbitrary `tcp://` or `unix://` URIs to affected endpoints including /api/info, /api/speech-to-text, and /api/text-to-speech to override the server-configured backend and redirect connections to attacker-chosen hosts.
CVE-2026-8712: Unauthenticated SSRF / Backend URI Override in Wyoming HTTP API via uri Query Parameter
Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.