Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11117CVEs tracked
26011PoC repositories
12New in 24h
350PoC updated in 7 days
filters
All New Fresh PoC Hot Multi PoC Critical High

11117 results

PoCs 1 ★ 1 Last push 2026-09-27 (1 week, 6 days ago)

Fetching description from NVD…

Show 1 repositories
murrez/CVE-2026-100740

CVE-2026-100740 PoC: D-Link DIR-895L A1_102b07 L2TP Host Name AVP out-of-bounds write in tunnel_set_params (UDP 1701). Device fingerprint + optional OOB trigge…

★ 1 · 2026-09-27
CVE-2026-97163
CRITICAL
CVSS 10.0 CRITICAL CWE-22, CWE-284 Published 2026-09-26 PoCs 2 ★ 1 Last push 2026-09-27 (1 week, 6 days ago)

Joomla Extension - lomart.fr - Unauthenticated remote code installation in UP plugin extension 5.0.0-5.2.0, 6.0.0-6.0.29

Show 2 repositories
murrez/CVE-2026-97163

CVE-2026-97163 PoC: Joomla UP (lomart.fr) unauthenticated GitHub mini-install / remote action deployment (≤6.0.29). Detects plugin version, probes com_ajax ins…

★ 1 · 2026-09-26
kize7/cve-2026-97163-payload

CVE-2026-97163 PoC payload (UP plugin Joomla remote code installation)

★ 0 · 2026-09-27
PoCs 1 ★ 0 Last push 2026-09-27 (1 week, 6 days ago)

Fetching description from NVD…

Show 1 repositories
rmhowe425/POC-CVE-2025-11201

PoC for MLFlow unauth RCE

★ 0 · 2026-09-27
CVE-2026-97161
CRITICAL
CVSS 9.2 CRITICAL CWE-22, CWE-284 Published 2026-09-26 PoCs 1 ★ 0 Last push 2026-09-26 (2 weeks ago)

Joomla Extension - lomart.fr - Various path traversal / file access vectors in UP plugin extension 5.0.0-5.2.0, 6.0.0-6.0.29

Show 1 repositories
murrez/CVE-2026-97161

CVE-2026-97161 PoC: Joomla UP (lomart.fr) unauthenticated path traversal / arbitrary file read via ajax-view (≤6.0.29). Fingerprints plugin, probes configurati…

★ 0 · 2026-09-26
CVE-2026-97160
CRITICAL
CVSS 9.4 CRITICAL CWE-94 Published 2026-09-26 PoCs 1 ★ 1 Last push 2026-09-26 (2 weeks ago)

Joomla Extension - lomart.fr - Authenticated, privileged PHP command injection in UP plugin extension 5.0.0-5.2.0, 6.0.0-6.0.29

Show 1 repositories
murrez/CVE-2026-97160

CVE-2026-97160 PoC for Joomla UP (lomart.fr): privileged {up php=} shortcode eval code injection in versions 5.0.0–5.2.0 and 6.0.0–6.0.29 (fix 5.2.1 / 6.1.0). …

★ 1 · 2026-09-26
CVE-2026-94132
CRITICAL
CVSS 9.5 CRITICAL CWE-434 Published 2026-09-26 PoCs 1 ★ 1 Last push 2026-09-26 (2 weeks ago)

Joomla Extension - acymailing.com - Remote Code Execution vulnerability in mailbox action feature in AcyMailing Enterprise extension < 11.1.0 - MIME parts of incoming emails were saved to media/com_acym/upload/ with no extension check, so anyone who could email the monitored mailbox could write a PHP file into the web root.

Show 1 repositories
murrez/CVE-2026-94132

AcyMailing Enterprise for Joomla < 11.1.0: POP3 mailbox actions save MIME attachments without extension checks to media/com_acym/upload/, enabling RCE when an …

★ 1 · 2026-09-26
CVE-2026-94130
CRITICAL
CVSS 9.3 CRITICAL CWE-89 Published 2026-09-26 PoCs 1 ★ 2 Last push 2026-09-26 (2 weeks ago)

Joomla Extension - joomlaboat.com - Unauthenticated SQL injection in YouTube Gallery extension < 5.7.3 - An SQL injection vulnerability in video search functionality and sorting allowed attackers to inject SQL commands in read queries.

Show 1 repositories
murrez/CVE-2026-94130

Unauthenticated SQL injection in Joomla YouTube Gallery (joomlaboat.com, com_youtubegallery) ≤ 5.7.2 — video search/sort on the public yg_api endpoint. Python …

★ 2 · 2026-09-26
CVE-2026-64600
MULTI PoC
PoCs 10 ★ 21 Last push 2026-09-26 (2 weeks ago)

Fetching description from NVD…

Show 8 of 10 repositories
0xBlackash/CVE-2026-64600

CVE-2026-64600

★ 21 · 2026-07-23
Debajyoti0-0/CVE-2026-64600

A C-based Linux security utility for detecting, safely verifying (Proof of Concept), and mitigating CVE-2026-64600 (RefluXFS). It provides kernel vulnerability…

★ 7 · 2026-07-26
litosmartin/CVE-2026-64600-Refluxfs-PoC

A POC for the recently discovered Qualys bug on COW with XFS

★ 4 · 2026-07-30
masrikky/CVE-2026-64600-RefluXFS

A Linux kernel local privilege escalation affecting the XFS filesystem copy-on-write (CoW) path.

★ 1 · 2026-08-08
HORKimhab/CVE-2026-64600

CVE-2026-64600 - Draft - Check todo

★ 0 · 2026-08-24
vulnquest58/VQ-RefluxCore

is an advanced security research framework designed to model, analyze, and demonstrate Local Privilege Escalation (LPE) mechanics associated with kernel-level …

★ 0 · 2026-07-24
bha-vin/CVE-2026-64600-Exploit
★ 0 · 2026-07-28
letsr00t/RefluxFS_CVE-2026-64600
★ 0 · 2026-08-04
PoCs 1 ★ 0 Last push 2026-09-26 (2 weeks ago)

Fetching description from NVD…

Show 1 repositories
aramosf/CVE-2026-61500

CVE-2026-61500 Rejetto HFS predictable PRNG session forgery to RCE PoC and Docker lab

★ 0 · 2026-09-26
CVE-2026-46331
HOTMULTI PoC
PoCs 14 ★ 146 Last push 2026-09-26 (2 weeks ago)

Fetching description from NVD…

Show 8 of 14 repositories
sgkdev/packet_edit_meme

PACKET_EDIT_MEME.c (aka CVE-2026-46331): yet another page cache poisoning nightmare

★ 146 · 2026-06-17
0xBlackash/CVE-2026-46331

CVE-2026-46331

★ 34 · 2026-06-26
rjt-gupta/page-cache-corruption-lpes

CVE-2026-46331 and CVE-2026-43503

★ 12 · 2026-07-22
vulnquest58/dirtyclone-exploit

CVE-2026-46331 — Linux Kernel Local Privilege Escalation TC pedit + IPsec TEE Page Cache Corruption · Affected kernels: ≤ 6.12.9

★ 7 · 2026-06-28
yanxinwu946/CVE-2026-46331

CVE-2026-46331 act_pedit page-cache corruption exploit, with Alpine PIE fix

★ 5 · 2026-07-12
V0IDNETWORK/CVE-2026-46331

pedit COW

★ 1 · 2026-07-01
HORKimhab/CVE-2026-46331

CVE-2026-46331 - Draft

★ 0 · 2026-06-27
Quaerendir/cve-2026-46331-audit

cve-2026-46331-audit script

★ 0 · 2026-09-26
PoCs 1 ★ 0 Last push 2026-09-26 (2 weeks ago)

Fetching description from NVD…

Show 1 repositories
murrez/CVE-2026-13249

Unauthenticated arbitrary file upload on Honeywell PD45 web admin (firmware F10.19.010040–before F10.22.030745) leading to RCE. Python check/exploit PoC

★ 0 · 2026-09-26
CVE-2024-37054
MULTI PoC
PoCs 8 ★ 7 Last push 2026-09-26 (2 weeks ago)

Fetching description from NVD…

Show 8 repositories
jimmexploit/CVE-2024-37054-PoC

PoC for CVE-2024-37054

★ 7 · 2026-05-18
ben-slates/CVE-2024-37054
★ 5 · 2026-05-17
NiteeshPujari/CVE-2024-37054-MLflow-RCE

NiteeshPujari/CVE-2024-37054, This repository contains a Proof of Concept (PoC) a critical deserialization vulnerability in MLflow that allows for Remote Code …

★ 3 · 2025-08-22
tristanqtn/CVE-2024-37054

CVE-2024-37054 exploit and documentation

★ 1 · 2026-05-19
ClearLotus-git/CVE-2024-37054-PoC
★ 0 · 2026-09-19
BardLaudian/CVE-2024-37054

Generic PoC for MLflow pickle deserialization RCE (CVE-2024-37054-style). Poisons a registered model via the MLflow REST API to achieve code execution when the…

★ 0 · 2026-09-23
0o176/CVE-2024-37054_PoC_HTB_SmartHire

MLFlow unsafe deserialization (CVE-2024-37054) written for HTB machine - SmartHire

★ 0 · 2026-09-26
CVE-2026-0073
MULTI PoC
PoCs 15 ★ 84 Last push 2026-09-26 (2 weeks ago)

Fetching description from NVD…

Show 8 of 15 repositories
adityatelange/poc-CVE-2026-0073

CVE-2026-0073 - ADB Wireless Mutual Authentication Bypass PoC

★ 68 · 2026-05-06
0xbinder/CVE-2026-0073

An automated exploit for CVE-2026-0073 (Android ADB TLS Auth Bypass). Features a built-in mDNS/Zeroconf scanner to instantly discover randomized Wireless Debug…

★ 29 · 2026-05-20
MartinPSDev/CVE-2026-0073-Android-ADBD-bypass-POC

CVE-2026-0073 — Android ADB daemon (adbd) TLS authentication bypass via EVP_PKEY_cmp type confusion. Gain unauthorized shell access over WiFi using EC/Ed25519 …

★ 22 · 2026-05-07
tc4dy/CVE-2026-0073-PoC-Exploit

CVE-2026-0073 – Android ADB Wireless Debugging Auth Bypass (CVSS 8.8) | Zero-click TLS type confusion to unauthenticated shell. 2 tools: Full Exploit (ADB shel…

★ 15 · 2026-09-26
unnaim/adbHijacker

A PoC tool for the CVE-2026-0073 on android 11+ devices which allows instant zero click RCE on any unpatched device with adb over tcp enabled

★ 8 · 2026-05-07
novaek/CVE-2026-0073-Research

CVE-2026-0073 is an RCE with a CVSS severity score of 8.3, and here we will explain how it works.

★ 5 · 2026-05-06
0xBlackash/CVE-2026-0073

CVE-2026-0073

★ 5 · 2026-05-07
PoCs 1 ★ 0 Last push 2026-09-26 (2 weeks ago)

Fetching description from NVD…

Show 1 repositories
rahulreddykarne/CVE-2026-65320-fastcore

Path Traversal (Tar Slip) in fastcore via untar_dir()

★ 0 · 2026-09-26
CVE-2026-22812
MULTI PoC
PoCs 9 ★ 34 Last push 2026-09-26 (2 weeks ago)

Fetching description from NVD…

Show 8 of 9 repositories
rohmatariow/CVE-2026-22812-exploit
★ 34 · 2026-01-16
barrersoftware/opencode-secure

Security-hardened fork of OpenCode - Fixes CVE-2026-22812 (CVSS 8.8 RCE) that upstream refuses to patch

★ 6 · 2026-01-19
0xgh057r3c0n/CVE-2026-22812

OpenCode < v1.0.216 - Unauthenticated RCE

★ 2 · 2026-01-19
Udyz/CVE-2026-22812-Exp

CVE-2026-22812 - OpenCode Unauth RCE

★ 1 · 2026-09-26
CayberMods/CVE-2026-22812-POC
★ 1 · 2026-01-20
HodgeLuke/ai-agent-security-research

Open security research on AI coding agent infrastructure. Agent-executable remediation manifests for CVE-2026-22812 and CVE-2026-22813.

★ 1 · 2026-03-29
0xBlackash/CVE-2026-22812

CVE-2026-22812

★ 1 · 2026-04-06
CVE-2024-49138
HOTMULTI PoC
PoCs 13 ★ 270 Last push 2026-09-26 (2 weeks ago)

Fetching description from NVD…

Show 8 of 13 repositories
MrAle98/CVE-2024-49138-POC

POC exploit for CVE-2024-49138

★ 270 · 2025-02-14
Zedocun/soc-investigation-powershell-edrfreeze

SOC investigation of CVE-2024-49138 exploitation alert involving PowerShell, EDRFreeze execution, and defense evasion behavior in a simulated environment.

★ 1 · 2026-03-09
bananoname/CVE-2024-49138-POC
★ 0 · 2025-01-21
CyprianAtsyor/letsdefend-cve-2024-49138-investigation

Hands-on SOC investigation of CVE-2024-49138 using LetsDefend, VirusTotal, Hybrid Analysis, TrueFort, and ChatGPT.

★ 0 · 2025-04-23
onixgod/SOC335-Event-ID-313-CVE-2024-49138-Exploitation-Detected--Lest-Defend-Writeup

In this lab I walked through an end-to-end intrusion that began with an external RDP break-in, used a brand-new CLFS privilege-escalation exploit (CVE-2024–491…

★ 0 · 2025-06-12
vettrivel007/CVE-2024-49138
★ 0 · 2026-04-04
CVE-2025-21298
HOTMULTI PoC
PoCs 7 ★ 197 Last push 2026-09-26 (2 weeks ago)

Fetching description from NVD…

Show 7 repositories
ynwarcs/CVE-2025-21298

Proof of concept & details for CVE-2025-21298

★ 197 · 2025-01-20
TheBl4ckPh4nt0m/CVE-2025-21298

A Critical Windows OLE Zero-Click Vulnerability. This is a proof-of-concept for CVE-2025-21298 - Windows OLE Remote Code Execution Vulnerability (CVSS 9.8). Th…

★ 1 · 2025-03-07
fy-poc/full-poc-CVE-2025_21298

Complete analysis of CVE-2025-21298, a double free vulnerability related to ole32 library in windows.

★ 1 · 2025-09-22
tarunbharathe/Zero-Click-RCE-Incident-Response-CVE-2025-21298

Technical investigation and host containment of a Critical-severity Zero-Click RCE exploit (CVE-2025-21298) using EDR telemetry and static malware analysis.

★ 0 · 2026-03-24
C-G-creator/LetsDefend-SOC336-Windows-OLE-Zero-Click-RCE-Exploitation-Detected-CVE-2025-21298

LetsDefend SOC336 case study on CVE-2025-21298

★ 0 · 2026-05-04
abc1230940/SOC336-Windows-OLE-Zero-Click-RCE-Exploitation-Detected-CVE-2025-21298

SOC336 - Windows OLE Zero-Click RCE Exploitation Detected (CVE-2025-21298) Walkthrough

★ 0 · 2026-05-28
mohamedbrek/SOC336-CVE-2025-21298-Investigation

LetsDefend SOC lab investigating CVE-2025-21298 Windows OLE Zero-Click RCE exploitation.

★ 0 · 2026-09-26
PoCs 1 ★ 12 Last push 2026-09-26 (2 weeks ago)

Fetching description from NVD…

Show 1 repositories
petermalone/CVE-2026-43682

CVE-2026-43682: HFS+ B-tree kernel heap overflow in macOS

★ 12 · 2026-09-26
CVE-2026-93399
CRITICAL
CVSS 9.1 CRITICAL CWE-639 Published 2026-09-25 PoCs 2 ★ 0 Last push 2026-09-26 (2 weeks ago)

The Bookly plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, 28.2 via the 'bookly_get_form_id', 'bookly_render_complete', 'bookly_add_to_calendar' and 'bookly_rollback_order' AJAX actions. This is due to the 'bookly_get_form_id' handler blindly storing the attacker-controlled 'order_id' from the submitted form_data into a new booking session, which the 'bookly_render_complete' handler then trusts to look up and return the corresponding Order's secret token without verifying that the current session created that order. This makes it possible for unauthenticated attackers to enumerate sequential order IDs, disclose other customers' order tokens, retrieve calendar/appointment information via 'bookly_add_to_calendar' and permanently delete arbitrary non-completed bookings via 'bookly_rollback_order', which cascade-deletes the customer_appointment and (when no other customers are attached) the underlying appointment.

Show 2 repositories
murrez/CVE-2026-93399

Unauthenticated IDOR in Bookly ≤ 28.2: bookly_get_form_id + bookly_render_complete leak any order’s bookly_order token; bookly_add_to_calendar exposes appointm…

★ 0 · 2026-09-25
josemour8/CVE-2026-93399

Bookly <= 28.2 Unauth IDOR + PII Leak + RCE Mass exploitation scanner for CVE-2026-93399 (CVSS 9.1 Critical) affecting the Bookly — Online Scheduling and Appo…

★ 0 · 2026-09-26
PoCs 1 ★ 0 Last push 2026-09-25 (2 weeks ago)

Fetching description from NVD…

Show 1 repositories
sdodson/CVE-2026-46595-proof
★ 0 · 2026-09-25
PoCs 2 ★ 1 Last push 2026-09-25 (2 weeks, 1 day ago)

Fetching description from NVD…

Show 2 repositories
ShadowForge-Cyber/CVE-2026-65660-Poc

Malicious Register Directive Code Injection Exploit

★ 1 · 2026-09-25
HORKimhab/CVE-2026-65660

CVE-2026-65660 - Draft or TODO

★ 0 · 2026-09-25
PoCs 3 ★ 9 Last push 2026-09-25 (2 weeks, 1 day ago)

Fetching description from NVD…

Show 3 repositories
Nxploited/CVE-2025-2005

WordPress Front End Users Plugin <= 3.2.32 is vulnerable to Arbitrary File Upload

★ 9 · 2025-04-02
mrmtwoj/CVE-2025-2005

WordPress FEUP Arbitrary File Upload Exploit (CVE-2025-2005)

★ 3 · 2025-04-06
h4ckxel/CVE-2025-2005

Technical security research and PoC for CVE-2025-2005, an unauthenticated arbitrary file upload vulnerability affecting vulnerable versions of the WordPress Fr…

★ 1 · 2026-09-25
PoCs 1 ★ 0 Last push 2026-09-25 (2 weeks, 1 day ago)

Fetching description from NVD…

Show 1 repositories
redhat-tssc-tmm/CVE-2024-3651-exploit

Simple app to demonstrate CVE-2024-3651

★ 0 · 2026-09-25
PoCs 3 ★ 1 Last push 2026-09-25 (2 weeks, 1 day ago)

Fetching description from NVD…

Show 3 repositories
Cinnamon1212/CVE-2018-15877-RCE

Wordpress Plainview Activity Monitor Plugin RCE (20161228)

★ 1 · 2021-09-05
cved-sources/cve-2018-15877

cve-2018-15877

★ 0 · 2021-04-15
firasotoom85-droid/wp-plainview-auth-RCE-broken-cookie-to-session-fix

WP Plainview Activity Monitor auth RCE fix: broken manual cookie parse to stable Session handling. CVE-2018-15877 educational fix.

★ 0 · 2026-09-25
CVE-2021-1675
HOTMULTI PoC
PoCs 50 ★ 2003 Last push 2026-09-25 (2 weeks, 1 day ago)

Fetching description from NVD…

Show 8 of 50 repositories
cube0x0/CVE-2021-1675

C# and Impacket implementation of PrintNightmare CVE-2021-1675/CVE-2021-34527

★ 2003 · 2021-07-20
calebstewart/CVE-2021-1675

Pure PowerShell implementation of CVE-2021-1675 Print Spooler Local Privilege Escalation (PrintNightmare)

★ 1109 · 2021-07-05
hlldz/CVE-2021-1675-LPE

Local Privilege Escalation Edition for CVE-2021-1675/CVE-2021-34527

★ 324 · 2021-07-05
ly4k/PrintNightmare

Python implementation for PrintNightmare (CVE-2021-1675 / CVE-2021-34527)

★ 215 · 2021-10-17
LaresLLC/CVE-2021-1675

CVE-2021-1675 Detection Info

★ 214 · 2023-05-20
mstxq17/CVE-2021-1675_RDL_LPE

PrintNightMare LPE提权漏洞的CS 反射加载插件。开箱即用、通过内存加载、混淆加载的驱动名称来ByPass Defender/EDR。

★ 144 · 2021-09-01
sailay1996/PrintNightmare-LPE

CVE-2021-1675 (PrintNightmare)

★ 75 · 2021-07-05
evilashz/CVE-2021-1675-LPE-EXP

PrintNightmare , Local Privilege Escalation of CVE-2021-1675 or CVE-2021-34527

★ 56 · 2021-07-02
< Prev Page 23 / 445 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.