Fetching description from NVD…
Show 5 repositories
CVE-2020-8597 pppd buffer overflow poc
CVE-2020-8597 in RM2100
CVE-2020-8597
Synthetic CWE-120 stack buffer overflow variant of CVE-2020-8597 (pppd EAP) as a CodeQL static-analysis target
Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.
monitoring live11128 results
Fetching description from NVD…
CVE-2020-8597 pppd buffer overflow poc
CVE-2020-8597 in RM2100
CVE-2020-8597
Synthetic CWE-120 stack buffer overflow variant of CVE-2020-8597 (pppd EAP) as a CodeQL static-analysis target
Fetching description from NVD…
Reproduction lab (A/B Docker) for CVE-2026-23989 — OpenCloud / ownCloud Infinite Scale public-link scope-validation bypass in Reva
Fetching description from NVD…
Tozed ZLT X300 5G CPE — Remote Root Code Execution via SDR Rogue Base Station (CVE-2026-2035703, CWE-78, CVSS 9.8) — Coordinated Disclosure
Fetching description from NVD…
exploit for CVE-2022-2588
CVE-2022-2588
CVE-2022-2588,CVE-2022-2586,CVE-2022-2585
CVE-2022-2588,CVE-2022-2586,CVE-2022-2585
SLUBStick exploitation of CVE-2022-2588. Converting a DF into a cross-cache arbitrary memory R/W primitive through PTE manipulation.
CVE-2022-2588
Fetching description from NVD…
CVE-2026-3844: Breeze Cache <= 2.4.4 Unauthenticated Arbitrary File Upload to RCE (CVSS 9.8)
CVE-2026-3844 — Breeze Cache Plugin RCE Exploit
PoC exploit for CVE-2026-3844, a critical unauthenticated file upload vulnerability in the WordPress Breeze plugin leading to RCE.
CVE-2026-3844 — Unauthenticated Arbitrary File Upload to RCE in Breeze Cache (WordPress). CVSS 9.8 CRITICAL. Mass scanner + auto shell injector with multi-thr…
WordPress - Breeze Cache <= 2.4.4 - Unauthenticated Arbitrary File Upload
Breeze Cache WordPress <=2.4.4 allows unauthenticated file upload via fetch_gravatar_from_remote when local gravatar hosting is enabled.
CVE-2026-3844
Fetching description from NVD…
Unauthenticated vulnerability that may allow remote attackers to compromise confidentiality and integrity, potentially leading to full system compromise.
CVE-2026-21962
Oracle Fusion Middleware Oracle HTTP Server / WebLogic Server Proxy Plug-in has an easily exploitable, unauthenticated, network-reachable flaw allowing comprom…
CVE-2026-21962-EXP
CVE-2026-21962
Fetching description from NVD…
Fetching description from NVD…
Microsoft SharePoint JWT Authentication Bypass (CVE-2026-55040)
Exploit code for CVE-2026-55040, it can create auth header for any validate account.
CVE-2026-55040
A scanner for CVE-2026-55040 and CVE-2026-63520, designed to determine whether the server is affected by these two CVEs.
Fetching description from NVD…
Check for CVE-2026-79266. A use-after-free in the DevTools component allows arbitrary code execution inside the sandbox via a malicious Chrome extension levera…
Fetching description from NVD…
CVE-2026-82286 — gpt-crawler <=1.5.1 unauthenticated arbitrary file write via outputFileName (POST /crawl). PoC + self-contained Docker lab. CVSS 8.6, CWE-22.
Fetching description from NVD…
CVE-2026-76060 PoC for a ZoneMinder vulnerability leading to RCE
Fetching description from NVD…
CVE-2026-66384 - Draft or TODO
Fetching description from NVD…
Patched RemotingClient to exploit CVE-2026-23751 (Tungsten Automation - Kofax Capture Unauthenticated File Read/Write, Remote Code Execution and SMB coercion v…
Fetching description from NVD…
SpeechBrain < 1.1.1 checkpoint metadata RCE via unsafe PyYAML parsing of CKPT.yaml.
Fetching description from NVD…
A specialized Python framework that executes unauthenticated remote code execution via the 9Router Model Context Protocol (MCP) bridge by deploying a 33-layer …
Fetching description from NVD…
PoC for CVE-2025-10952 — ml-logger unauthenticated arbitrary file read. CVSS 5.3
Fetching description from NVD…
Proof of Concept Exploit for PaperCut CVE-2023-27350
Exploit for Papercut CVE-2023-27350. [+] Reverse shell [+] Mass checking
A simple python script to check if a service is vulnerable
Unauthenticated remote command execution in Papercut service allows an attacker to execute commands due to improper access controls in the SetupCompleted Java …
Perfom With Massive Authentication Bypass In PaperCut MF/NG
Python 2.7
Fetching description from NVD…
Fetching description from NVD…
Testing CVE-2026-70463 by Fyyre
Fetching description from NVD…
CVE-2026-36425 OPSWAT AppRemover (ardrv.sys) improper access control advisory
Use cve-2026-36425 killer edr,360 can killer
Fetching description from NVD…
Chrome WebGPU Use-After-Free (CWE-416) This toolkit is for security research and defensive verification around CVE-2026-5281. Patched Chrome version: 146.0.76…
CVE-2026-5281 (Chrome Dawn WebGPU UAF) analysis, lab validation tools, and reproducible environment for vulnerable vs patched builds.
Fetching description from NVD…
Oracle Access Manager Unauthenticated Attacker Vulnerability CVE-2021-35587
Post-incident report analyzing the Oracle Cloud SSO/LDAP supply chain attack (CVE-2021-35587). Details the exploitation of legacy server infrastructure, impact…
Fetching description from NVD…
Originally a Honeypot for CVE-2026-20131
CVE-2026-20131
Post-incident report on CVE-2026-20131 (CVSS 10.0), a Cisco FMC insecure deserialization vulnerability exploited by Interlock ransomware. Details root-cause an…
Fetching description from NVD…
Unitree G1 RCE PoC & Scripts (CVE-2026-76639 / CVE-2026-76640) technical details at boschko.ca/g1-ble-rce/
Fetching description from NVD…
Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.