Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11128CVEs tracked
26034PoC repositories
11New in 24h
354PoC updated in 7 days
filters
All New Fresh PoC Hot Multi PoC Critical High

11128 results

CVE-2020-8597
MULTI PoC
PoCs 5 ★ 48 Last push 2026-08-29 (1 month, 1 week ago)

Fetching description from NVD…

Show 5 repositories
winmin/CVE-2020-8597

CVE-2020-8597 pppd buffer overflow poc

★ 48 · 2020-03-12
lakwsh/CVE-2020-8597

CVE-2020-8597 in RM2100

★ 5 · 2021-01-24
dointisme/CVE-2020-8597

CVE-2020-8597

★ 0 · 2020-03-05
anna-kravets/codeql-buffer-overflow-variant

Synthetic CWE-120 stack buffer overflow variant of CVE-2020-8597 (pppd EAP) as a CodeQL static-analysis target

★ 0 · 2026-08-29
PoCs 1 ★ 1 Last push 2026-08-29 (1 month, 1 week ago)

Fetching description from NVD…

Show 1 repositories
dinosn/cve-2026-23989-opencloud-lab

Reproduction lab (A/B Docker) for CVE-2026-23989 — OpenCloud / ownCloud Infinite Scale public-link scope-validation bypass in Reva

★ 1 · 2026-08-29
PoCs 1 ★ 0 Last push 2026-08-29 (1 month, 1 week ago)

Fetching description from NVD…

Show 1 repositories
danish1162/CVE-2026-2035703-x300

Tozed ZLT X300 5G CPE — Remote Root Code Execution via SDR Rogue Base Station (CVE-2026-2035703, CWE-78, CVSS 9.8) — Coordinated Disclosure

★ 0 · 2026-08-29
CVE-2022-2588
HOTMULTI PoC
PoCs 9 ★ 487 Last push 2026-08-29 (1 month, 1 week ago)

Fetching description from NVD…

Show 8 of 9 repositories
Markakd/CVE-2022-2588

exploit for CVE-2022-2588

★ 487 · 2023-03-04
BassamGraini/CVE-2022-2588
★ 12 · 2022-12-16
veritas501/CVE-2022-2588

CVE-2022-2588

★ 11 · 2023-08-22
pirenga/2022-LPE-UAF

CVE-2022-2588,CVE-2022-2586,CVE-2022-2585

★ 6 · 2022-08-23
konoha279/2022-LPE-UAF

CVE-2022-2588,CVE-2022-2586,CVE-2022-2585

★ 5 · 2022-08-23
LSinus/CacheMeIfYouCan

SLUBStick exploitation of CVE-2022-2588. Converting a DF into a cross-cache arbitrary memory R/W primitive through PTE manipulation.

★ 2 · 2026-08-29
ASkyeye/2022-LPE-UAF

CVE-2022-2588

★ 1 · 2022-08-22
dom4570/CVE-2022-2588
★ 0 · 2023-03-09
CVE-2026-3844
MULTI PoC
PoCs 10 ★ 5 Last push 2026-08-29 (1 month, 1 week ago)

Fetching description from NVD…

Show 8 of 10 repositories
dinosn/CVE-2026-3844

CVE-2026-3844: Breeze Cache <= 2.4.4 Unauthenticated Arbitrary File Upload to RCE (CVSS 9.8)

★ 5 · 2026-04-25
halilkirazkaya/CVE-2026-3844

CVE-2026-3844 — Breeze Cache Plugin RCE Exploit

★ 4 · 2026-04-30
tausifzaman/CVE-2026-3844

PoC exploit for CVE-2026-3844, a critical unauthenticated file upload vulnerability in the WordPress Breeze plugin leading to RCE.

★ 3 · 2026-04-24
AnggaTechI/CVE-2026-3844

CVE-2026-3844 — Unauthenticated Arbitrary File Upload to RCE in Breeze Cache (WordPress). CVSS 9.8 CRITICAL. Mass scanner + auto shell injector with multi-thr…

★ 2 · 2026-08-08
0xgh057r3c0n/CVE-2026-3844

WordPress - Breeze Cache <= 2.4.4 - Unauthenticated Arbitrary File Upload

★ 1 · 2026-04-24
im-hanzou/CVE-2026-3844

Breeze Cache WordPress <=2.4.4 allows unauthenticated file upload via fetch_gravatar_from_remote when local gravatar hosting is enabled.

★ 0 · 2026-04-24
sahmsec/CVE-2026-3844

CVE-2026-3844

★ 0 · 2026-05-07
CVE-2026-21962
MULTI PoC
PoCs 10 ★ 6 Last push 2026-08-29 (1 month, 1 week ago)

Fetching description from NVD…

Show 8 of 10 repositories
samael0x4/CVE-2026-21962

Unauthenticated vulnerability that may allow remote attackers to compromise confidentiality and integrity, potentially leading to full system compromise.

★ 6 · 2026-01-22
boroeurnprach/Ashwesker-CVE-2026-21962

CVE-2026-21962

★ 6 · 2026-01-21
gregk4sec/cve-2026-21962
★ 4 · 2026-03-09
George0Papasotiriou/CVE-2026-21962-Oracle-HTTP-Server-WebLogic-Proxy-Plug-in-Critical-

Oracle Fusion Middleware Oracle HTTP Server / WebLogic Server Proxy Plug-in has an easily exploitable, unauthenticated, network-reachable flaw allowing comprom…

★ 3 · 2026-02-10
zeetee1235/CVE-2026-21962
★ 3 · 2026-08-27
ThumpBo/CVE-2026-21962

CVE-2026-21962-EXP

★ 2 · 2026-01-26
0xBlackash/CVE-2026-21962

CVE-2026-21962

★ 2 · 2026-04-24
PoCs 1 ★ 0 Last push 2026-08-29 (1 month, 1 week ago)

Fetching description from NVD…

Show 1 repositories
CVE-2026-55040
MULTI PoC
PoCs 5 ★ 58 Last push 2026-08-29 (1 month, 1 week ago)

Fetching description from NVD…

Show 5 repositories
sfewer-r7/CVE-2026-55040

Microsoft SharePoint JWT Authentication Bypass (CVE-2026-55040)

★ 58 · 2026-08-10
l0ggg/CVE-2026-55040

Exploit code for CVE-2026-55040, it can create auth header for any validate account.

★ 3 · 2026-07-28
zenzue/CVE-2026-55040
★ 0 · 2026-08-26
maxprog-svg/CVE-2026-55040-Mass-Exploit

CVE-2026-55040

★ 0 · 2026-08-27
virologi-info/mssharepoint-scanner

A scanner for CVE-2026-55040 and CVE-2026-63520, designed to determine whether the server is affected by these two CVEs.

★ 0 · 2026-08-29
PoCs 1 ★ 0 Last push 2026-08-29 (1 month, 1 week ago)

Fetching description from NVD…

Show 1 repositories
virologi-info/chrome-vuln-scanner

Check for CVE-2026-79266. A use-after-free in the DevTools component allows arbitrary code execution inside the sandbox via a malicious Chrome extension levera…

★ 0 · 2026-08-29
PoCs 1 ★ 0 Last push 2026-08-29 (1 month, 1 week ago)

Fetching description from NVD…

Show 1 repositories
BiiTts/CVE-2026-82286-gpt-crawler-Arbitrary-File-Write

CVE-2026-82286 — gpt-crawler <=1.5.1 unauthenticated arbitrary file write via outputFileName (POST /crawl). PoC + self-contained Docker lab. CVSS 8.6, CWE-22.

★ 0 · 2026-08-29
PoCs 1 ★ 1 Last push 2026-08-28 (1 month, 1 week ago)

Fetching description from NVD…

Show 1 repositories
investigato/CVE-2026-76060_ZoneMinder_CommandInjection-PoC

CVE-2026-76060 PoC for a ZoneMinder vulnerability leading to RCE

★ 1 · 2026-08-28
PoCs 1 ★ 0 Last push 2026-08-28 (1 month, 1 week ago)

Fetching description from NVD…

Show 1 repositories
HORKimhab/CVE-2026-66384

CVE-2026-66384 - Draft or TODO

★ 0 · 2026-08-28
PoCs 1 ★ 0 Last push 2026-08-28 (1 month, 1 week ago)

Fetching description from NVD…

Show 1 repositories
SieBRUM/CVE-2026-23751-poc

Patched RemotingClient to exploit CVE-2026-23751 (Tungsten Automation - Kofax Capture Unauthenticated File Read/Write, Remote Code Execution and SMB coercion v…

★ 0 · 2026-08-28
PoCs 1 ★ 0 Last push 2026-08-28 (1 month, 1 week ago)

Fetching description from NVD…

Show 1 repositories
SaiTeja-Erukude/CVE-2026-10036-speechbrain-rce

SpeechBrain < 1.1.1 checkpoint metadata RCE via unsafe PyYAML parsing of CKPT.yaml.

★ 0 · 2026-08-28
PoCs 1 ★ 0 Last push 2026-08-28 (1 month, 1 week ago)

Fetching description from NVD…

Show 1 repositories
SimoesCTT/CTT-Enhanced-CVE-2026-46339-Exploit-Engine

A specialized Python framework that executes unauthenticated remote code execution via the 9Router Model Context Protocol (MCP) bridge by deploying a 33-layer …

★ 0 · 2026-08-28
PoCs 1 ★ 0 Last push 2026-08-28 (1 month, 1 week ago)

Fetching description from NVD…

Show 1 repositories
Khashayarnzk/CVE-2025-10952-ml-logger-AFR

PoC for CVE-2025-10952 — ml-logger unauthenticated arbitrary file read. CVSS 5.3

★ 0 · 2026-08-28
CVE-2023-27350
MULTI PoC
PoCs 14 ★ 57 Last push 2026-08-28 (1 month, 1 week ago)

Fetching description from NVD…

Show 8 of 14 repositories
horizon3ai/CVE-2023-27350

Proof of Concept Exploit for PaperCut CVE-2023-27350

★ 57 · 2023-05-01
adhikara13/CVE-2023-27350

Exploit for Papercut CVE-2023-27350. [+] Reverse shell [+] Mass checking

★ 9 · 2023-04-25
MaanVader/CVE-2023-27350-POC

A simple python script to check if a service is vulnerable

★ 5 · 2023-05-12
monke443/CVE-2023-27350

Unauthenticated remote command execution in Papercut service allows an attacker to execute commands due to improper access controls in the SetupCompleted Java …

★ 4 · 2025-03-09
Ap0dexMe0/CVE-2023-27350

Perfom With Massive Authentication Bypass In PaperCut MF/NG

★ 2 · 2023-07-24
Jenderal92/CVE-2023-27350

Python 2.7

★ 0 · 2026-05-30
ASG-CASTLE/CVE-2023-27350
★ 0 · 2024-04-19
PoCs 1 ★ 0 Last push 2026-08-28 (1 month, 1 week ago)

Fetching description from NVD…

Show 1 repositories
I3IT/CVE-2026-18322
★ 0 · 2026-08-28
PoCs 1 ★ 0 Last push 2026-08-28 (1 month, 1 week ago)

Fetching description from NVD…

Show 1 repositories
Fyyre/CVE-2026-70463

Testing CVE-2026-70463 by Fyyre

★ 0 · 2026-08-28
PoCs 2 ★ 27 Last push 2026-08-28 (1 month, 1 week ago)

Fetching description from NVD…

Show 2 repositories
redteamfortress/CVE-2026-36425

CVE-2026-36425 OPSWAT AppRemover (ardrv.sys) improper access control advisory

★ 27 · 2026-07-17
gongchuang1089/EDRKiller

Use cve-2026-36425 killer edr,360 can killer

★ 1 · 2026-08-28
PoCs 4 ★ 4 Last push 2026-08-28 (1 month, 1 week ago)

Fetching description from NVD…

Show 4 repositories
umair-aziz025/CVE-2026-5281-Research-Toolkit

Chrome WebGPU Use-After-Free (CWE-416) This toolkit is for security research and defensive verification around CVE-2026-5281. Patched Chrome version: 146.0.76…

★ 4 · 2026-04-02
TheMalwareGuardian/CVE-2026-5281

CVE-2026-5281 (Chrome Dawn WebGPU UAF) analysis, lab validation tools, and reproducible environment for vulnerable vs patched builds.

★ 2 · 2026-04-07
jaf0rk/CVE-2026-5281
★ 0 · 2026-07-18
PoCs 2 ★ 42 Last push 2026-08-28 (1 month, 1 week ago)

Fetching description from NVD…

Show 2 repositories
ZZ-SOCMAP/CVE-2021-35587

Oracle Access Manager Unauthenticated Attacker Vulnerability CVE-2021-35587

★ 42 · 2022-03-14
Jwa7470/2025-Oracle-SSO-LDAP-Attack-Post-Incident-Written-Report

Post-incident report analyzing the Oracle Cloud SSO/LDAP supply chain attack (CVE-2021-35587). Details the exploitation of legacy server infrastructure, impact…

★ 0 · 2026-08-28
CVE-2026-20131
MULTI PoC
PoCs 5 ★ 3 Last push 2026-08-28 (1 month, 1 week ago)

Fetching description from NVD…

Show 5 repositories
sak110/CVE-2026-20131
★ 3 · 2026-03-11
Hassan-Pouladi/Cisco-FMC-honeypot

Originally a Honeypot for CVE-2026-20131

★ 2 · 2026-07-03
p3Nt3st3r-sTAr/CVE-2026-20131-POC
★ 0 · 2026-03-18
0xBlackash/CVE-2026-20131

CVE-2026-20131

★ 0 · 2026-05-10
Jwa7470/CVE-2026-20131-Post-Incident-Written-Report

Post-incident report on CVE-2026-20131 (CVSS 10.0), a Cisco FMC insecure deserialization vulnerability exploited by Interlock ransomware. Details root-cause an…

★ 0 · 2026-08-28
PoCs 1 ★ 4 Last push 2026-08-27 (1 month, 1 week ago)

Fetching description from NVD…

Show 1 repositories
OlivierLaflamme/UniBLEed

Unitree G1 RCE PoC & Scripts (CVE-2026-76639 / CVE-2026-76640) technical details at boschko.ca/g1-ble-rce/

★ 4 · 2026-08-27
PoCs 1 ★ 1 Last push 2026-08-27 (1 month, 1 week ago)

Fetching description from NVD…

Show 1 repositories
R3n3r0/CVE-2026-27280
★ 1 · 2026-08-27
< Prev Page 49 / 446 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.