Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11114CVEs tracked
26004PoC repositories
17New in 24h
361PoC updated in 7 days
filters
All New Fresh PoC Hot Multi PoC Critical High

11114 results

CVE-2014-3704
FRESH PoCMULTI PoC
PoCs 7 ★ 3 Last push 2026-10-09 (10 hours, 57 minutes ago)

Fetching description from NVD…

Show 7 repositories
Neldeborg/Drupalgeddon-Python3

An rewritten POC on the CVE-2014-3704

★ 3 · 2025-01-06
happynote3966/CVE-2014-3704
★ 1 · 2018-07-17
joaomorenorf/CVE-2014-3704

This code is taken from "Drupal 7.0 < 7.31 - 'Drupalgeddon' SQL Injection (Add Admin User)" and was converted to Python 3 to suit the exercise in Academy for M…

★ 1 · 2025-02-02
AleDiBen/Drupalgeddon

CVE-2014-3704 aka Drupalgeddon - Form-Cache Injection Method

★ 0 · 2022-10-18
fbm31/Audit-BlackBox-Web-to-Root

Audit de sécurité Black Box d'un serveur Drupal 7. Démonstration d'une Kill Chain complète : Injection SQL (CVE-2014-3704) ➔ RCE ➔ Reverse Shell ➔ Escalade ver…

★ 0 · 2025-12-31
adfortunato/metasploitable3-pentest-writeup

Full home-lab penetration test of Rapid7's Metasploitable3 (Ubuntu 14.04) from Parrot OS. Covers recon, Drupalgeddon (CVE-2014-3704) RCE, SSH credential reuse,…

★ 0 · 2026-09-13
CyberCTF/vulhub-drupal-cve-2014-3704

Vulhub drupal/CVE-2014-3704: Drupal 7.31 Drupalgeddon SQL Injection (CVE-2014-3704), run with Isoloom

★ 0 · 2026-10-09
CVE-2022-34265
FRESH PoCHOTMULTI PoC
PoCs 5 ★ 124 Last push 2026-10-09 (10 hours, 57 minutes ago)

Fetching description from NVD…

Show 5 repositories
aeyesec/CVE-2022-34265

PoC for CVE-2022-34265 (Django)

★ 124 · 2022-07-30
ZhaoQi99/CVE-2022-34265

PoC for CVE-2022-34265

★ 4 · 2022-08-26
traumatising/CVE-2022-34265

CVE-2022-34265 Vulnerability

★ 3 · 2022-07-13
CyberCTF/vulhub-django-cve-2022-34265

Vulhub django/CVE-2022-34265: Django Trunc and Extract SQL Injection (CVE-2022-34265), run with Isoloom

★ 0 · 2026-10-09
CVE-2017-12635
FRESH PoCMULTI PoC
PoCs 5 ★ 10 Last push 2026-10-09 (10 hours, 58 minutes ago)

Fetching description from NVD…

Show 5 repositories
assalielmehdi/CVE-2017-12635

Case study and POC of CVE-2017-12635: Apache CouchDB 1.7.0 / 2.x < 2.1.1 - Remote Privilege Escalation

★ 10 · 2019-12-15
Dungsocool/CVE-2017-12635_36
★ 0 · 2026-05-29
Darabium/couchdb-exploit

This tool exploits two critical vulnerabilities in Apache CouchDB: | CVE | Description | Severity | |-----|-------------|----------| | **CVE-2017-12635** | Pr…

★ 0 · 2026-09-19
CyberCTF/vulhub-couchdb-cve-2017-12635

Vulhub couchdb/CVE-2017-12635: Apache CouchDB Privilege Escalation (CVE-2017-12635), run with Isoloom

★ 0 · 2026-10-09
CVE-2010-2861
FRESH PoC
PoCs 2 ★ 0 Last push 2026-10-09 (10 hours, 58 minutes ago)

Fetching description from NVD…

Show 2 repositories
greysneakthief/14641-v2

Redux Python3 Version of CVE-2010-2861

★ 0 · 2025-10-22
CyberCTF/vulhub-coldfusion-cve-2010-2861

Vulhub coldfusion/CVE-2010-2861: Adobe ColdFusion 8 Directory Traversal (CVE-2010-2861), run with Isoloom

★ 0 · 2026-10-09
CVE-2022-46169
FRESH PoCMULTI PoC
PoCs 37 ★ 47 Last push 2026-10-09 (10 hours, 58 minutes ago)

Fetching description from NVD…

Show 8 of 37 repositories
0xf4n9x/CVE-2022-46169

CVE-2022-46169 Cacti remote_agent.php Unauthenticated Command Injection.

★ 47 · 2022-12-08
FredBrave/CVE-2022-46169-CACTI-1.2.22

This is a exploit of CVE-2022-46169 to cacti 1.2.22. This exploit allows through an RCE to obtain a reverse shell on your computer.

★ 42 · 2023-09-11
sAsPeCt488/CVE-2022-46169

PoC for CVE-2022-46169 - Unauthenticated RCE on Cacti <= 1.2.22

★ 29 · 2023-05-05
ariyaadinatha/cacti-cve-2022-46169-exploit

This is poc of CVE-2022-46169 authentication bypass and remote code execution

★ 15 · 2023-05-18
c3rrberu5/CVE-2022-46169

Exploit to CVE-2022-46169 vulnerability

★ 9 · 2023-01-16
sh4den/CVE-2022-46169

Cacti Unauthenticated Command Injection

★ 3 · 2026-07-06
N1arut/CVE-2022-46169_POC

RCE POC for CVE-2022-46169

★ 3 · 2023-01-17
icebreack/CVE-2022-46169

Fixed exploit for CVE-2022-46169 (originally from https://www.exploit-db.com/exploits/51166)

★ 3 · 2023-04-13
CVE-2014-6271
FRESH PoCHOTMULTI PoC
PoCs 95 ★ 232 Last push 2026-10-09 (10 hours, 58 minutes ago)

Fetching description from NVD…

Show 8 of 95 repositories
opsxcq/exploit-CVE-2014-6271

Shellshock exploit + vulnerable environment

★ 232 · 2023-05-11
scottjpack/shellshock_scanner

Python Scanner for "ShellShock" (CVE-2014-6271)

★ 46 · 2014-09-29
hmlio/vaas-cve-2014-6271

Vulnerability as a service: showcasing CVS-2014-6271, a.k.a. Shellshock

★ 22 · 2019-10-08
b4keSn4ke/CVE-2014-6271

Shellshock exploit aka CVE-2014-6271

★ 15 · 2022-04-01
cj1324/CGIShell

shellshock CVE-2014-6271 CGI Exploit, Use like Openssh via CGI

★ 13 · 2014-10-02
francisck/shellshock-cgi

A python script to enumerate CGI scripts vulnerable to CVE-2014-6271 on one specific server

★ 12 · 2015-06-19
indiandragon/Shellshock-Vulnerability-Scan

Android app to scan for bash Vulnerability - CVE-2014-6271 also known as Shellshock

★ 11 · 2021-08-31
npm/ansible-bashpocalypse

Patch for CVE-2014-6271

★ 6 · 2014-09-24
CVE-2018-8715
HIGHFRESH PoC
CVSS 8.1 HIGH CWE-287 Published 2018-03-15 PoCs 1 ★ 0 Last push 2026-10-09 (10 hours, 58 minutes ago) Discovered 2026-10-09 03:16

The Embedthis HTTP library, and Appweb versions before 7.0.3, have a logic flaw related to the authCondition function in http/httpLib.c. With a forged HTTP request, it is possible to bypass authentication for the form and digest login types.

Show 1 repositories
CyberCTF/vulhub-appweb-cve-2018-8715

Vulhub appweb/CVE-2018-8715: Appweb Digest Authentication Bypass (CVE-2018-8715), run with Isoloom

★ 0 · 2026-10-09
CVE-2020-13945
FRESH PoC
PoCs 2 ★ 8 Last push 2026-10-09 (10 hours, 58 minutes ago)

Fetching description from NVD…

Show 2 repositories
YutuSec/Apisix_Crack

Apisix系列漏洞:未授权漏洞(CVE-2021-45232)、默认秘钥(CVE-2020-13945)批量探测。

★ 8 · 2022-05-09
CyberCTF/vulhub-apisix-cve-2020-13945

Vulhub apisix/CVE-2020-13945: Apache APISIX Default Admin Token RCE (CVE-2020-13945), run with Isoloom

★ 0 · 2026-10-09
CVE-2021-25646
FRESH PoCHOTMULTI PoC
PoCs 13 ★ 1073 Last push 2026-10-09 (10 hours, 58 minutes ago)

Fetching description from NVD…

Show 8 of 13 repositories
1n7erface/PocList

Alibaba-Nacos-Unauthorized/ApacheDruid-RCE_CVE-2021-25646/MS-Exchange-SSRF-CVE-2021-26885/Oracle-WebLogic-CVE-2021-2109_RCE/RG-CNVD-2021-14536/RJ-SSL-VPN-Ultra…

★ 1073 · 2023-05-11
yaunsky/cve-2021-25646

Apache Druid 远程代码执行;检测脚本

★ 17 · 2021-02-03
j2ekim/CVE-2021-25646

Apache Druid remote code execution vulnerability - Apache Druid 远程代码执行漏洞利用 CVE-2021-25646

★ 4 · 2021-12-12
k7pro/CVE-2021-25646-exp

CVE-2021-25646 Apache Druid 远程代码执行 漏洞检测和利用工具

★ 4 · 2025-02-18
givemefivw/CVE-2021-25646

CVE-2021-25646 Apache Druid 远程代码执行漏洞 Wker脚本

★ 3 · 2021-04-15
lp008/CVE-2021-25646
★ 2 · 2021-02-03
Ormicron/CVE-2021-25646-GUI

CSharp CVE-2021-25646-GUI

★ 1 · 2021-02-05
CVE-2024-28752
FRESH PoC
PoCs 2 ★ 1 Last push 2026-10-09 (10 hours, 58 minutes ago)

Fetching description from NVD…

Show 2 repositories
ReaJason/CVE-2024-28752

Apache CXF SSRF CVE-2024-28752

★ 1 · 2025-05-10
CyberCTF/vulhub-apache-cxf-cve-2024-28752

Vulhub apache-cxf/CVE-2024-28752: Apache CXF Aegis DataBinding SSRF (CVE-2024-28752), run with Isoloom

★ 0 · 2026-10-09
CVE-2023-46604
FRESH PoCHOTMULTI PoC
PoCs 40 ★ 126 Last push 2026-10-09 (10 hours, 58 minutes ago)

Fetching description from NVD…

Show 8 of 40 repositories
SaumyajeetDas/CVE-2023-46604-RCE-Reverse-Shell-Apache-ActiveMQ

Achieving a Reverse Shell Exploit for Apache ActiveMQ (CVE_2023-46604)

★ 126 · 2024-01-20
Catherines77/ActiveMQ-EXPtools

Apache ActiveMQ漏洞综合利用工具(CVE-2015-5254,CVE-2016-3088,CVE-2022-41678,CVE-2023-46604,CVE-2024-32114,CVE-2026-34197,CVE-2026-40466, CVE-2026-42588)

★ 83 · 2026-06-27
Arlenhiack/ActiveMQ-RCE-Exploit

ActiveMQ RCE (CVE-2023-46604) 回显利用工具

★ 44 · 2024-09-13
evkl1d/CVE-2023-46604
★ 41 · 2023-11-06
trganda/ActiveMQ-RCE

CVE-2023-46604

★ 28 · 2023-10-26
duck-sec/CVE-2023-46604-ActiveMQ-RCE-pseudoshell

This script leverages CVE-2023046604 (Apache ActiveMQ) to generate a pseudo shell. The vulnerability allows for remote code execution due to unsafe deserializa…

★ 19 · 2024-01-24
justdoit-cai/CVE-2023-46604-Apache-ActiveMQ-RCE-exp

CVE-2023-46604 Apache ActiveMQ RCE exp 基于python

★ 5 · 2023-11-08
NKeshawarz/CVE-2023-46604-RCE
★ 4 · 2023-11-18
CVE-2016-3088
FRESH PoCMULTI PoC
PoCs 9 ★ 83 Last push 2026-10-09 (10 hours, 58 minutes ago)

Fetching description from NVD…

Show 8 of 9 repositories
Catherines77/ActiveMQ-EXPtools

Apache ActiveMQ漏洞综合利用工具(CVE-2015-5254,CVE-2016-3088,CVE-2022-41678,CVE-2023-46604,CVE-2024-32114,CVE-2026-34197,CVE-2026-40466, CVE-2026-42588)

★ 83 · 2026-06-27
YutuSec/ActiveMQ_Crack

ActiveMQ系列漏洞探测利用工具,包括ActiveMQ 默认口令漏洞及ActiveMQ任意文件写入漏洞(CVE-2016-3088),支持批量探测利用。

★ 18 · 2022-04-02
Ma1Dong/ActiveMQ_putshell-CVE-2016-3088

ActiveMQ_putshell直接获取webshell

★ 15 · 2020-08-01
cyberaguiar/CVE-2016-3088

Apache ActiveMQ Remote Code Execution Exploit

★ 5 · 2021-03-11
cl4ym0re/CVE-2016-3088

Apache ActiveMQ PUT RCE Scan

★ 4 · 2022-02-20
wood03mm/CVE-2016-3088
★ 0 · 2020-04-04
vonderchild/CVE-2016-3088
★ 0 · 2021-03-14
HeArtE4t3r/CVE-2016-3088

A Python-based Exploit Script for CVE-2016-3088

★ 0 · 2025-06-16
CVE-2021-39214
HIGHFRESH PoC
CVSS 8.1 HIGH CWE-444 Published 2021-09-16 PoCs 1 ★ 0 Last push 2026-10-09 (11 hours, 3 minutes ago) Discovered 2026-10-09 03:16

mitmproxy is an interactive, SSL/TLS-capable intercepting proxy. In mitmproxy 7.0.2 and below, a malicious client or server is able to perform HTTP request smuggling attacks through mitmproxy. This means that a malicious client/server could smuggle a request/response through mitmproxy as part of another request/response's HTTP message body. While a smuggled request is still captured as part of another request's body, it does not appear in the request list and does not go through the usual mitmproxy event hooks, where users may have implemented custom access control checks or input sanitization. Unless one uses mitmproxy to protect an HTTP/1 service, no action is required. The vulnerability has been fixed in mitmproxy 7.0.3 and above.

Show 1 repositories
CyberCTF/secdevlabs-golden-hat

secDevLabs Golden Hat Society: mitmproxy 5.3.0 request smuggling, CVE-2021-39214 (OWASP A06), run with Isoloom

★ 0 · 2026-10-09
CVE-2022-47966
FRESH PoCHOTMULTI PoC
PoCs 5 ★ 130 Last push 2026-10-09 (12 hours, 9 minutes ago)

Fetching description from NVD…

Show 5 repositories
horizon3ai/CVE-2022-47966

POC for CVE-2022-47966 affecting multiple ManageEngine products

★ 130 · 2023-01-19
vonahisec/CVE-2022-47966-Scan

Python scanner for CVE-2022-47966. Supports ~10 of the 24 affected products.

★ 28 · 2026-10-09
sh4den/CVE-2022-47966

The manage engine mass loader for CVE-2022-47966

★ 7 · 2026-07-06
ACE-Responder/CVE-2022-47966_checker

Run on your ManageEngine server

★ 2 · 2023-01-23
shameem-testing/PoC-for-ME-SAML-Vulnerability

PoC for cve-2022-47966

★ 0 · 2023-01-19
CVE-2022-42889
FRESH PoCMULTI PoC
PoCs 51 ★ 76 Last push 2026-10-09 (12 hours, 37 minutes ago)

Fetching description from NVD…

Show 8 of 51 repositories
karthikuj/cve-2022-42889-text4shell-docker

Dockerized POC for CVE-2022-42889 Text4Shell

★ 76 · 2022-11-14
kljunowsky/CVE-2022-42889-text4shell

Apache commons text - CVE-2022-42889 Text4Shell proof of concept exploit.

★ 58 · 2023-12-29
ClickCyber/cve-2022-42889

cve-2022-42889 Text4Shell CVE-2022-42889 affects Apache Commons Text versions 1.5 through 1.9. It has been patched as of Commons Text version 1.10.

★ 40 · 2022-10-18
SeanWrightSec/CVE-2022-42889-PoC

Proof of Concept for the Apache commons-text vulnerability CVE-2022-42889.

★ 35 · 2022-10-20
cxzero/CVE-2022-42889-text4shell

CVE-2022-42889 aka Text4Shell research & PoC

★ 20 · 2023-03-17
f0ng/text4shellburpscanner

text4shell(CVE-2022-42889) BurpSuite Scanner

★ 20 · 2022-12-09
cryxnet/CVE-2022-42889-RCE

Proof of Concept for CVE-2022-42889 (Text4Shell Vulnerability)

★ 15 · 2022-11-21
alealeluyah/CVE-2022-42889-Text4Shell-POC

This repository contains a Python script to automate the process of testing for a vulnerability known as Text4Shell, referenced under the CVE id: CVE-2022-4288…

★ 13 · 2023-06-27
CVE-2026-63030
FRESH PoCHOTMULTI PoC
PoCs 79 ★ 788 Last push 2026-10-09 (14 hours, 28 minutes ago)

Fetching description from NVD…

Show 8 of 79 repositories
Icex0/wp2shell-poc

wp2shell (CVE-2026-63030 & CVE-2026-60137) - full RCE chain

★ 788 · 2026-08-11
manpisetsu/wp2shell

CVE-2026-63030 + CVE-2026-60137 exploit RCE chain

★ 178 · 2026-10-09
0xsha/wp2shell

CVE-2026-63030 + CVE-2026-60137 - “wp2shell”: unauthenticated RCE in WordPress core

★ 115 · 2026-07-18
ZephrFish/wp2shell-scanner

CVE-2026-63030, CVE-2026-60137, wp2shell scanner

★ 66 · 2026-07-18
dinosn/wp2shell-lab

Non-destructive detector + Docker lab for wp2shell (CVE-2026-63030 REST /batch/v1 route confusion + CVE-2026-60137 author__not_in SQLi) in WordPress core 6.9.0…

★ 63 · 2026-07-22
NULL200OK/WP2Shell

WP2Shell - CVE-2026-63030 / CVE-2026-60137 This tool exploits a critical SQL injection vulnerability in the WordPress REST API `/wp-json/batch/v1` endpoint, al…

★ 17 · 2026-07-18
securelayer7/WordPresShell

Pre-auth RCE PoC for CVE-2026-63030 / CVE-2026-60137 (WordPress core)

★ 17 · 2026-07-18
47Cid/wp2shell-lab

Educational PoC + lab for CVE-2026-63030 + CVE-2026-60137: pre-auth SQLi in WordPress core via REST batch-route confusion

★ 15 · 2026-07-18
CVE-2026-93834
HIGHFRESH PoC
CVSS 8.8 HIGH CWE-416 Published 2026-09-25 PoCs 1 ★ 2 Last push 2026-10-09 (14 hours, 49 minutes ago)

A use-after-free vulnerability was found in QEMU's 9pfs subsystem. A race condition between the main thread and a worker thread when processing concurrent Tlcreate and Twalk requests allows a malicious guest user to craft a fid path containing stale heap data, bypassing directory traversal restrictions and escaping the shared directory boundary. This can lead to arbitrary host file read/write and code execution (VM escape) as the QEMU process user.

Show 1 repositories
suominen/CVE-2026-93834

Tracking the QEMU CVE-2026-93834 9pfs fid-path use-after-free guest-to-host escape

★ 2 · 2026-10-09
CVE-2026-46300
FRESH PoCMULTI PoC
PoCs 14 ★ 16 Last push 2026-10-09 (14 hours, 59 minutes ago)

Fetching description from NVD…

Show 8 of 14 repositories
0xBlackash/CVE-2026-46300

CVE-2026-46300

★ 16 · 2026-05-16
MadExploits/CVE-2026-46300

CVE-2026-43284 - CVE-2026-43500 - CVE-2026-46300 Variant of dirtyfrag exploit

★ 3 · 2026-06-30
HORKimhab/CVE-2026-46300

CVE-2026-46300

★ 2 · 2026-05-14
azilRababe/CVE-2026-46300

Technical analysis of CVE-2026-46300 (Fragnesia), a Linux kernel page-cache write vulnerability that enables local privilege escalation through SKBFL_SHARED_FR…

★ 2 · 2026-06-22
Sentebale/CVE-2026-46300
★ 1 · 2026-05-14
1neptune/Fragnesia

Add go CVE-2026-46300 (Fragnesia) local privilege escalation exploit

★ 1 · 2026-06-03
ExploitEoom/CVE-2026-46300

Linux kernel root exploit

★ 0 · 2026-05-17
First-John/cve_2026_frag_family_fix

CVE-2026-46300 / CVE-2026-43500 / CVE-2026-31431 / CVE-2026-43284 golang hotfix

★ 0 · 2026-10-09
CVE-2018-17240
FRESH PoC
PoCs 3 ★ 7 Last push 2026-10-09 (15 hours, 7 minutes ago)

Fetching description from NVD…

Show 3 repositories
Xewdy444/Netgrave

A tool for retrieving login credentials from Netwave IP cameras using a memory dump vulnerability (CVE-2018-17240)

★ 7 · 2026-10-09
FenrirSec/CVE-2018-17240_exploit

Bash exploit for the CVE-2018-17240 (Netwave Cameras Memory Leak)

★ 1 · 2025-01-07
BBge/CVE-2018-17240

CVE-2018-17240

★ 0 · 2022-06-10
CVE-2011-2523
FRESH PoCMULTI PoC
PoCs 68 ★ 15 Last push 2026-10-09 (15 hours, 14 minutes ago)

Fetching description from NVD…

Show 8 of 68 repositories
padsalatushal/CVE-2011-2523

Python exploit for vsftpd 2.3.4 - Backdoor Command Execution

★ 15 · 2023-01-08
Lynk4/CVE-2011-2523

Python exploit for vsftpd 2.3.4 - Backdoor Command Execution

★ 5 · 2023-05-09
Maalfer/CVE-2011-2523-vsftpd-2.3.4-exploit

Exploit para explotar la vulnerabilidad CVE-2011-2523 presente en la versión 2.3.4 de vsftpd.

★ 5 · 2026-10-09
4m3rr0r/CVE-2011-2523-poc

Python exploit for CVE-2011-2523 (VSFTPD 2.3.4 Backdoor Command Execution)

★ 4 · 2023-11-28
BolivarJ/CVE-2011-2523

Python exploit for vsftpd 2.3.4 - Backdoor Command Execution

★ 4 · 2025-08-11
nobodyatall648/CVE-2011-2523

vsftpd 2.3.4 Backdoor Exploit

★ 3 · 2021-06-25
MFernstrom/OffensivePascal-CVE-2011-2523

FreePascal implementation of the vsFTPD 2.3.4 CVE-2011-2523

★ 2 · 2022-05-28
cowsecurity/CVE-2011-2523

CVE-2011-2523 exploit

★ 2 · 2023-02-05
CVE-2024-21762
FRESH PoCHOTMULTI PoC
PoCs 13 ★ 150 Last push 2026-10-09 (15 hours, 50 minutes ago)

Fetching description from NVD…

Show 8 of 13 repositories
h4x0r-dz/CVE-2024-21762

out-of-bounds write in Fortinet FortiOS CVE-2024-21762 vulnerability

★ 150 · 2024-03-16
BishopFox/cve-2024-21762-check

Safely detect whether a FortiGate SSL VPN is vulnerable to CVE-2024-21762

★ 107 · 2024-07-05
r4p3c4/CVE-2024-21762-Exploit-PoC-Fortinet-SSL-VPN-Check

Chequea si tu firewall es vulnerable a CVE-2024-21762 (RCE sin autenticación)

★ 16 · 2025-06-29
d0rb/CVE-2024-21762

The PoC demonstrates the potential for remote code execution by exploiting the identified security flaw.

★ 12 · 2024-03-17
abrewer251/CVE-2024-21762_FortiNet_PoC

Proof-of-concept scanner targeting CVE-2024-21762 in FortiOS SSL VPN’s /remote/hostcheck_validate endpoint with reverse shell payload delivery.

★ 4 · 2025-05-22
rdoix/cve-2024-21762-checker
★ 1 · 2024-06-20
abraxas/Fortigate-SSL-VPN-Exploit-Kit

The FortiGate SSL-VPN pot of gold. CVE-2024-21762 and CVE-2023-27997. 79 working exploit clients. 53 hardware SKUs. 55 FortiOS builds.

★ 1 · 2026-09-01
deFr0ggy/CVE-2024-21762-Checker

This script performs vulnerability scanning for CVE-2024-21762, a Fortinet SSL VPN remote code execution vulnerability. It checks whether a given server is vul…

★ 0 · 2024-03-25
CVE-2023-27997
FRESH PoCHOTMULTI PoC
PoCs 12 ★ 134 Last push 2026-10-09 (15 hours, 50 minutes ago)

Fetching description from NVD…

Show 8 of 12 repositories
BishopFox/CVE-2023-27997-check

Safely detect whether a FortiGate SSL VPN instance is vulnerable to CVE-2023-27997 based on response timing

★ 134 · 2024-05-08
lexfo/xortigate-cve-2023-27997

xortigate-cve-2023-27997

★ 63 · 2023-10-12
rio128128/CVE-2023-27997-POC

POC FortiOS SSL-VPN buffer overflow vulnerability

★ 27 · 2023-06-16
delsploit/CVE-2023-27997
★ 9 · 2023-10-12
TechinsightsPro/ShodanFortiOS

Search vulnerable FortiOS devices via Shodan (CVE-2023-27997)

★ 2 · 2023-07-11
imbas007/CVE-2023-27997-Check
★ 1 · 2023-06-23
abraxas/Fortigate-SSL-VPN-Exploit-Kit

The FortiGate SSL-VPN pot of gold. CVE-2024-21762 and CVE-2023-27997. 79 working exploit clients. 53 hardware SKUs. 55 FortiOS builds.

★ 1 · 2026-09-01
puckiestyle/cve-2023-27997
★ 0 · 2023-06-23
CVE-2022-40684
FRESH PoCHOTMULTI PoC
PoCs 31 ★ 358 Last push 2026-10-09 (15 hours, 50 minutes ago)

Fetching description from NVD…

Show 8 of 31 repositories
horizon3ai/CVE-2022-40684

A proof of concept exploit for CVE-2022-40684 affecting Fortinet FortiOS, FortiProxy, and FortiSwitchManager

★ 358 · 2022-10-13
carlosevieira/CVE-2022-40684

PoC for CVE-2022-40684 - Authentication bypass lead to Full device takeover (Read-only)

★ 87 · 2022-10-13
arsolutioner/fortigate-belsen-leak

Research repository tracking affected IPs from the Fortigate CVE-2022-40684 configuration leak by Belsen Group

★ 87 · 2025-01-16
Filiplain/Fortinet-PoC-Auth-Bypass

Bash PoC for Fortinet Auth Bypass - CVE-2022-40684

★ 16 · 2023-04-02
kljunowsky/CVE-2022-40684-POC

Exploit for CVE-2022-40684 affecting Fortinet FortiOS, FortiProxy, and FortiSwitchManager

★ 16 · 2023-01-21
TaroballzChen/CVE-2022-40684-metasploit-scanner

An authentication bypass using an alternate path or channel in Fortinet product

★ 14 · 2022-10-27
hughink/CVE-2022-40684
★ 11 · 2022-10-28
qingsiweisan/CVE-2022-40684
★ 9 · 2022-10-26
CVE-2018-13379
FRESH PoCHOTMULTI PoC
PoCs 14 ★ 253 Last push 2026-10-09 (15 hours, 50 minutes ago)

Fetching description from NVD…

Show 8 of 14 repositories
milo2012/CVE-2018-13379

CVE-2018-13379

★ 253 · 2019-08-14
Blazz3/cve2018-13379-nmap-script

CVE-2018-13379 Script for Nmap NSE.

★ 12 · 2020-09-09
Zeop-CyberSec/fortios_vpnssl_traversal_leak

This module massively scan and exploit a path traversal vulnerability in the FortiOS SSL VPN web portal may allow an unauthenticated attacker to download Forti…

★ 9 · 2021-02-26
B1anda0/CVE-2018-13379

Fortinet FortiOS路径遍历漏洞 (CVE-2018-13379)批量检测脚本

★ 9 · 2020-12-14
0xHunter/FortiOS-Credentials-Disclosure

CVE-2018-13379 Exploit

★ 6 · 2019-09-24
k4nfr3/CVE-2018-13379-Fortinet

FortiVuln

★ 6 · 2020-11-19
jpiechowka/at-doom-fortigate

Fortigate CVE-2018-13379 - Tool to search for vulnerable Fortigate hosts in Rapid7 Project Sonar data anonymously through The Tor network.

★ 5 · 2024-01-23
Zierax/CVE-2018-13379

CVE-2018-13379 fortiOS vulnerability POC

★ 2 · 2026-02-15
CVE-2026-64560
FRESH PoCMULTI PoC
PoCs 10 ★ 73 Last push 2026-10-09 (16 hours, 19 minutes ago)

Fetching description from NVD…

Show 8 of 10 repositories
quyicheng03-boop/xiaomi15-dada-cve-2026-64560

Device-bound CVE-2026-64560 adaptation for Xiaomi 15 dada OS4.0.0.8

★ 21 · 2026-09-05
a23bc/op13-cve-2026-64560
★ 11 · 2026-09-27
qingle009/opace6-cve-2026-64560

OnePlus Ace 6 temporary root tool (CVE-2026-64560) - device-verified port with corrected bootidParent address

★ 7 · 2026-09-29
imkidz0/CVE-2026-64560-exploit

Exploit of CVE-2026-64560 for kernelCTF, LTS-6.12.95

★ 2 · 2026-10-03
Become-ILLUSORY/cve-2026-64560-a16

CVE-2026-64560 toolkit: Go single-binary toolchain + realme RMX5010 (A16, SM8750) target port

★ 1 · 2026-09-26
Wangs-official/opace6-cve-2026-64560

针对 OnePlus Ace6 设备的 cve-2026-64560 复现

★ 1 · 2026-09-25
< Prev Page 5 / 445 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.