Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11117CVEs tracked
26011PoC repositories
12New in 24h
346PoC updated in 7 days
filters
All New Fresh PoC Hot Multi PoC Critical High

11117 results

CVSS 8.5 HIGH CWE-77, CWE-78 Published 2026-09-15 PoCs 1 ★ 0 Last push 2026-09-25 (2 weeks, 1 day ago)

A vulnerability was determined in EFM ipTIME C200E 1.094. The impacted element is an unknown function of the file iux_set.cgi of the component System Setup. This manipulation causes os command injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.

Show 1 repositories
shlln/CVE-2026-90847
★ 0 · 2026-09-25
PoCs 2 ★ 0 Last push 2026-09-25 (2 weeks, 1 day ago)

Fetching description from NVD…

Show 2 repositories
TamatahYT/CVE-2026-53576

Kestra Unauthenticated RCE Exploit (CVE-2026-53576)

★ 0 · 2026-08-01
AtlasVector/Kestra-cve-2026-53576

End-to-end reproduction and cross-layer detection of CVE-2026-53576, the unauthenticated RCE in Kestra - taken past the base PoC to show how a common Docker-so…

★ 0 · 2026-09-25
PoCs 1 ★ 210 Last push 2026-09-25 (2 weeks, 1 day ago)

Fetching description from NVD…

Show 1 repositories
jonaslejon/ad-autopwn

AD AutoPwn v4.13.0 — automated AD attack chain, zero-auth to Domain Admin. Discover/Kerberoast/AS-REP/AD CS ESC1-16/Shadow Creds/RBCD+KCD/Ghost-SPN/TGS-rewrite…

★ 210 · 2026-09-25
CVE-2023-25690
HOTMULTI PoC
PoCs 7 ★ 289 Last push 2026-09-25 (2 weeks, 1 day ago)

Fetching description from NVD…

Show 7 repositories
dhmosfunk/CVE-2023-25690-POC

CVE 2023 25690 Proof of concept - mod_proxy vulnerable configuration on Apache HTTP Server versions 2.4.0 - 2.4.55 leads to HTTP Request Smuggling vulnerabilit…

★ 289 · 2024-08-24
thanhlam-attt/CVE-2023-25690
★ 4 · 2023-12-05
oOCyginXOo/CVE-2023-25690-POC

CVE 2023 25690 Proof of concept - mod_proxy vulnerable configuration on Apache HTTP Server versions 2.4.0 - 2.4.55 leads to HTTP Request Smuggling vulnerabilit…

★ 2 · 2025-06-01
tbachvarova/linux-apache-fix-mod_rewrite-spaceInURL

Fix URL containing SPACES after Apache upgrade CVE-2023-25690

★ 1 · 2023-04-25
arnavps/CTF-Web-Exploitation

A comprehensive collection of 12 containerized web exploitation challenges covering CVE-2023-25690, WebAuthn bypasses, HTTP/3 smuggling, and advanced XSS/RCE c…

★ 1 · 2026-04-05
giordy0424/CVE-2023-25690_lab

HTTP Request Smuggling lab: Apache 2.4.55 CRLF injection

★ 0 · 2026-08-17
roshanrajbanshi/cve-2023-25690-smuggler

Python exploit for CVE-2023-25690 — Apache HTTP Request Smuggling via CRLF injection in mod_rewrite/mod_proxy. Built and tested against TryHackMe's Contrabando…

★ 0 · 2026-09-25
CVE-2026-89055
CRITICAL
CVSS 9.1 CRITICAL CWE-862 Published 2026-09-25 PoCs 1 ★ 0 Last push 2026-09-25 (2 weeks, 1 day ago)

The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 5.120.0. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for unauthenticated attackers to permanently delete arbitrary attachments from the Media Library — including administrator-owned product images, logos, and documents — by injecting their IDs into a review that is later trashed and purged. Exploitation requires a public review-form link (a 13-hex formId distributed to customers via e-mail), which exposes the nonce needed to reach the handler without any WordPress account or session.

Show 1 repositories
murrez/CVE-2026-89055

Unauthenticated authorization bypass in Customer Reviews for WooCommerce ≤ 5.120.0: holders of a public /cusrev/{formId}/ review link can POST cr_local_forms_s…

★ 0 · 2026-09-25
PoCs 1 ★ 0 Last push 2026-09-25 (2 weeks, 1 day ago)

Fetching description from NVD…

Show 1 repositories
sharma19d/CVE-2026-35678
★ 0 · 2026-09-25
PoCs 1 ★ 0 Last push 2026-09-25 (2 weeks, 1 day ago)

Fetching description from NVD…

Show 1 repositories
jvidhan/cve-2026-43687
★ 0 · 2026-09-25
CVSS 8.5 HIGH CWE-119, CWE-123 Published 2026-09-21 PoCs 1 ★ 4 Last push 2026-09-25 (2 weeks, 1 day ago)

A vulnerability was detected in BioStar VALKYRIE AURORA 2.10.2411.0800. This vulnerability affects the function sub_1105C of the file BS_RVSIO64.sys of the component IOCTL Handler. The manipulation of the argument PhysicalAddress results in write-what-where condition. The attack needs to be approached locally. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Show 1 repositories
lzty/CVE-2026-94129

A POC for CVE-2026-94129

★ 4 · 2026-09-25
CVSS 8.5 HIGH CWE-119, CWE-123 Published 2026-09-21 PoCs 1 ★ 7 Last push 2026-09-25 (2 weeks, 1 day ago)

A security vulnerability has been detected in BioStar VIVID LED DJ 4.0.2411.1500. This affects the function sub_1105C of the file BS_LED64.sys of the component IOCTL Handler. The manipulation of the argument AssociatedIrp leads to write-what-where condition. Local access is required to approach this attack. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Show 1 repositories
lzty/CVE-2026-94128

POC for CVE-2026-94128

★ 7 · 2026-09-25
PoCs 1 ★ 0 Last push 2026-09-25 (2 weeks, 1 day ago)

Fetching description from NVD…

Show 1 repositories
BiiTts/CVE-2026-72001-Pangolin-Cross-Org-Auth-Bypass

PoC for CVE-2026-72001 — Pangolin < 1.22.0 cross-organization resource authentication bypass via the share-link access-token endpoint (CWE-639, CVSS 8.1).

★ 0 · 2026-09-25
PoCs 1 ★ 0 Last push 2026-09-25 (2 weeks, 1 day ago)

Fetching description from NVD…

Show 1 repositories
connorjaydunn/CVE-2026-79417

CVE-2026-79417 PoC

★ 0 · 2026-09-25
PoCs 1 ★ 0 Last push 2026-09-24 (2 weeks, 1 day ago)

Fetching description from NVD…

Show 1 repositories
cduram/NotCVE-2026-0014

Path traversal vulnerability in Input-Leap

★ 0 · 2026-09-24
CVE-2026-8461
MULTI PoC
PoCs 5 ★ 16 Last push 2026-09-24 (2 weeks, 1 day ago)

Fetching description from NVD…

Show 5 repositories
Y5neKO/CVE-2026-8461-EXP
★ 16 · 2026-06-24
anyanything/CVE-2026-8461-PoC
★ 8 · 2026-06-23
0xBlackash/CVE-2026-8461

CVE-2026-8461

★ 5 · 2026-06-26
HORKimhab/CVE-2026-8461

CVE-2026-8461 - Draft

★ 1 · 2026-06-24
se1ims/PixelSmash

A lab setup to test cve-2026-8461

★ 0 · 2026-09-24
CVE-2026-94127
CRITICAL
CVSS 9.3 CRITICAL CWE-122 Published 2026-09-22 PoCs 2 ★ 15 Last push 2026-09-24 (2 weeks, 2 days ago)

When a BIG-IP APM access policy and an OAuth profile are configured on a virtual server, specific malicious traffic can lead to remote code execution (RCE). This vulnerability is only present when BIG-IP APM is configured as an OAuth Authorization Server. Deployments using APM strictly as an OAuth Client / Resource Server (without OAuth authorization server profiles configured) are not affected by this vulnerability. Impact: This vulnerability allows an unauthenticated attacker to perform remote code execution. The BIG-IP system in Appliance mode is also vulnerable. This is a data plane issue; there is no control plane exposure. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

Show 2 repositories
FurkanKAYAPINAR/CVE-2026-94127

CVE-2026-94127

★ 0 · 2026-09-23
PoCs 1 ★ 1 Last push 2026-09-24 (2 weeks, 2 days ago)

Fetching description from NVD…

Show 1 repositories
hakaioffsec/CVE-2026-16764

This repository contains the exploit for CVE-2026-16764.

★ 1 · 2026-09-24
CVSS 8.8 HIGH CWE-269, CWE-863 Published 2026-09-24 PoCs 1 ★ 0 Last push 2026-09-24 (2 weeks, 2 days ago)

authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, an account with delegated permission to manage a group, group membership, or a user can grant superuser status to an account or assign an existing role to a group without holding the permissions that gate those privileges. Group hierarchy checks do not consistently account for superuser status inherited from ancestor groups, and role assignment to a group lacks the required authorization check. Only deployments that delegate these management capabilities to accounts that are not full administrators are affected. This issue is fixed in versions 2026.2.7, 2026.5.7, and 2026.8.2.

Show 1 repositories
anthonyk2923/CVE-2026-94609

CVE-2026-94609: Writeup and POC

★ 0 · 2026-09-24
PoCs 1 ★ 1 Last push 2026-09-24 (2 weeks, 2 days ago)

Fetching description from NVD…

Show 1 repositories
x0jac0b0x/skullcandy-dime3-cve-2025-20701

Unauthorized Bluetooth Classic pairing behavior consistent with CVE-2025-20701 on Skullcandy Dime 3 earbuds.

★ 1 · 2026-09-24
CVE-2026-95675
CRITICAL
CVSS 9.3 CRITICAL CWE-78 Published 2026-09-22 PoCs 1 ★ 1 Last push 2026-09-24 (2 weeks, 2 days ago)

D-Link DAP-1360 firmware version 6.14 and earlier contains an unauthenticated remote code execution vulnerability that allows remote attackers to execute arbitrary commands as root by sending crafted requests to the device's web management interface without valid credentials. Attackers can fully compromise the device to persistently modify its configuration and use it as a pivot point into the local network.

Show 1 repositories
d6fault/CVE-2026-95675

CVE-2026-95675 · POC

★ 1 · 2026-09-24
CVE-2010-2075
MULTI PoC
PoCs 11 ★ 2 Last push 2026-09-24 (2 weeks, 2 days ago)

Fetching description from NVD…

Show 8 of 11 repositories
MFernstrom/OffensivePascal-CVE-2010-2075

FreePascal implementation of the UnrealIRCD CVE-2010-2075

★ 2 · 2022-05-29
FredBrave/CVE-2010-2075-UnrealIRCd-3.2.8.1

Exploit for CVE:2010-2075. This exploit allows remote command execution in UnrealIRCd 3.2.8.1.

★ 1 · 2023-05-31
Tc-XoNoR/CVE-2010-2075

CVE-2010-2075 exploit

★ 1 · 2026-04-16
chancej715/UnrealIRCd-3.2.8.1-Backdoor-Command-Execution

UnrealIRCd 3.2.8.1 backdoor command execution exploit in Python 3 (CVE-2010-2075).

★ 0 · 2023-04-25
JoseLRC97/UnrealIRCd-3.2.8.1-Backdoor-Command-Execution

Script that exploits the vulnerability that allows establishing a backdoor in the UnrealIRCd service with CVE-2010-2075

★ 0 · 2024-04-18
earthbendergara/unrealircd3.2.8.1-local-exploit

CVE-2010-2075

★ 0 · 2025-12-01
mishaqdev/cve-2010-2075-analysis

Technical writeup and penetration testing report for CVE-2010-2075, demonstrating UnrealIRCd backdoor exploitation and remediation.

★ 0 · 2026-06-18
Elazab2005/unrealircd-backdoor-pentest-report

Controlled PenTest lab report for UnrealIRCd 3.2.8.1 backdoor (CVE-2010-2075) on Metasploitable3 with remediation steps.

★ 0 · 2026-08-20
CVE-2023-49070
MULTI PoC
PoCs 7 ★ 61 Last push 2026-09-24 (2 weeks, 2 days ago)

Fetching description from NVD…

Show 7 repositories
D0g3-8Bit/OFBiz-Attack

A Tool For CVE-2023-49070/CVE-2023-51467 Attack

★ 18 · 2024-03-12
UserConnecting/Exploit-CVE-2023-49070-and-CVE-2023-51467-Apache-OFBiz

Authentication Bypass Vulnerability Apache OFBiz < 18.12.10.

★ 5 · 2025-02-05
0xrobiul/CVE-2023-49070

Exploit Of Pre-auth RCE in Apache Ofbiz!!

★ 1 · 2023-12-26
yukselberkay/CVE-2023-49070_CVE-2023-51467

CVE-2023-49070 exploit and CVE-2023-49070 & CVE-2023-51467 vulnerability scanner

★ 1 · 2024-01-12
GraySignal/Apache-OFBiz-Auth-Bypass-and-RCE-Exploit-CVE-2023-49070-CVE-2023-51467

This exploit scans whether the provided target is vulnerable to CVE-2023-49070/CVE-2023-51467 and also exploits it depending on the choice of the user.

★ 1 · 2024-01-25
BardLaudian/CVE-2023-49070

Apache OFBiz XML-RPC pre-auth deserialization RCE PoC (CVE-2023-49070) — auth bypass + ysoserial gadget chain via /webtools/control/xmlrpc

★ 0 · 2026-09-24
PoCs 2 ★ 1 Last push 2026-09-24 (2 weeks, 2 days ago)

Fetching description from NVD…

Show 2 repositories
roj1py/CVE-2024-47875-PhpSpreadsheet-XSS-PoC

This is a PoC/Exploit for the CVE-2024-47875 PhpSpreadsheet XSS Vuln

★ 1 · 2025-09-02
d154573r-4v3r73d/CVE-2024-47875
★ 0 · 2026-09-24
CVSS 6.8 MEDIUM CWE-522 Published 2026-09-24 PoCs 1 ★ 1 Last push 2026-09-24 (2 weeks, 2 days ago)

Araxis Merge for Windows version 2011.4074 through 2026.0 stores user-configured credentials for remote servers in the Windows registry and does not apply sufficient cryptographic protection. An authenticated, non-administrative attacker could retrieve and unencrypt all credentials the target user has stored in Merge.

Show 1 repositories
grepstrength/CVE-2026-92680

Proof-of-Concept for CVE-2026-92680, the insecurely protected credentials vulnerability affecting Araxis Merge.

★ 1 · 2026-09-24
PoCs 1 ★ 8 Last push 2026-09-24 (2 weeks, 2 days ago)

Fetching description from NVD…

Show 1 repositories
0xSemZ/Magento-CVE-2019-7139-SQLi-PoC

Proof-of-Concept (PoC) exploit for CVE-2019-7139, an unauthenticated SQL injection vulnerability in Magento (PRODSECBUG-2198). For educational and security res…

★ 8 · 2026-09-24
PoCs 1 ★ 0 Last push 2026-09-24 (2 weeks, 2 days ago)

Fetching description from NVD…

Show 1 repositories
learnerxuan/CVE-2026-29057-POC
★ 0 · 2026-09-24
CVE-2018-9276
MULTI PoC
PoCs 5 ★ 36 Last push 2026-09-24 (2 weeks, 2 days ago)

Fetching description from NVD…

Show 5 repositories
wildkindcc/CVE-2018-9276

CVE-2018-9276 PRTG < 18.2.39 Authenticated Command Injection (Reverse Shell)

★ 36 · 2020-12-03
andyfeili/CVE-2018-9276
★ 0 · 2021-01-02
alvinsmith-eroad/CVE-2018-9276

CVE-2018-9276 PRTG < 18.2.39 Reverse Shell (Python3 support)

★ 0 · 2021-07-29
BardLaudian/CVE-2018-9276

CVE-2018-9276 — PRTG Network Monitor < 18.2.39 Authenticated RCE. For educational purposes and authorized penetration testing only.

★ 0 · 2026-09-24
< Prev Page 24 / 445 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.