Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11128CVEs tracked
26034PoC repositories
11New in 24h
354PoC updated in 7 days
filters
All New Fresh PoC Hot Multi PoC Critical High

11128 results

PoCs 1 ★ 0 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
PoCs 2 ★ 5 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 2 repositories
YonLiud/CVE-2026-76904

One-Day POC | GeoServer Unauthenticated SQL injection to complete RCE

★ 5 · 2026-08-22
bickZero93/CVE-2026-76904

PostGIS SQL Injection GeoTools

★ 1 · 2026-08-27
PoCs 1 ★ 0 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
CVE-2025-43529
HOTMULTI PoC
PoCs 7 ★ 113 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 7 repositories
0xjohnnydev/WebKit-UAF-ANGLE-OOB-Analysis

Analysis of CVE-2025-43529 (WebKit UAF) + CVE-2025-14174 (ANGLE OOB) exploit chain - iOS Safari

★ 113 · 2026-08-27
jir4vv1t/CVE-2025-43529

exploit for cve-2025-43529

★ 86 · 2026-01-05
GenericCoding/pois0nSword

A demonstration of read write using cve-2025-43529 and userland PAC bypass on iOS 26.1

★ 69 · 2026-08-04
bjrjk/CVE-2025-43529

Root Cause Analysis for CVE-2025-43529, a UAF vulnerability due to incorrect DFG StoreBarrierInsertionPhase in JavaScriptCore.

★ 18 · 2026-02-01
SimoesCTT/Convergent-Time-Theory-Enhanced-iOS-Safari-RCE-CVE-2025-43529-

CTT-Enhanced iOS Safari Exploit (based on CVE-2025-43529)

★ 1 · 2026-01-28
SimoesCTT/CTT-Apple-Silicon-Refraction

webkit_refraction.js (The 33-Layer WebGL Payload) ​This JavaScript payload uses the \alpha constant to create a high-frequency "Memory Shiver." It induces the …

★ 1 · 2026-01-30
kmeps4/bugtest

CVE-2025-43529 Test

★ 1 · 2026-03-02
PoCs 2 ★ 16 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 2 repositories
0xjohnnydev/CVE-2026-28992-IOHIDFamily-FastPathUserClient-Race-Conditions

UAF and AOP coprocessor panic in IOHIDEventServiceFastPathUserClient. No entitlements, reachable from app sandbox.

★ 16 · 2026-08-27
clogan9019-dotcom/IOHIDFamily-PoC-Research

CVE-2026-28992 IOHIDFamily FastPathUserClient race condition PoC — security research

★ 0 · 2026-07-10
PoCs 2 ★ 26 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 2 repositories
0xjohnnydev/CVE-2026-20687-AppleJPEGDriver-UAF

CVE-2026-20687: AppleJPEGDriver startDecoder Timeout UAF — iOS/macOS kernel vulnerability leading to deferred panic (A19 Pro, iOS 26.3 RC)

★ 26 · 2026-08-27
enfilade-labs/CVE-2026-20687-AppleJPEGDriver-UAF

CVE-2026-20687: AppleJPEGDriver startDecoder Timeout UAF — iOS/macOS kernel vulnerability leading to deferred panic (A19 Pro, iOS 26.3 RC)

★ 2 · 2026-04-22
PoCs 2 ★ 58 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 2 repositories
0xjohnnydev/CVE-2026-20637-AppleSEPKeyStore-UAF

CVE-2026-20637: AppleSEPKeyStore Use-After-Free — iOS/macOS kernel vulnerability (patched in 26.4)

★ 58 · 2026-08-27
enfilade-labs/CVE-2026-20637-AppleSEPKeyStore-UAF

CVE-2026-20637: AppleSEPKeyStore Use-After-Free — iOS/macOS kernel vulnerability (patched in 26.4)

★ 1 · 2026-04-22
PoCs 3 ★ 9 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 3 repositories
JohannesLks/CVE-2026-27654

NGINX `ngx_http_dav_module` Heap Buffer Overflow via `size_t` Underflow (Remote DoS / Potential RCE)

★ 9 · 2026-06-30
Debajyoti0-0/CVE-2026-27654-PoC

Proof-of-Concept and technical analysis for CVE-2026-27654, a heap-based buffer overflow vulnerability in the NGINX HTTP WebDAV module, including root cause an…

★ 2 · 2026-07-25
dead-lamer/CVE-2026-27654

Обзор n-day уязвимости на русском языке.

★ 0 · 2026-08-27
PoCs 1 ★ 0 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
e4zyy/Project-CVE-2026-65351

For educational purposes

★ 0 · 2026-08-27
PoCs 2 ★ 1 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 2 repositories
wingerbijay/CVE-2021-27876

Unauthenticated RCE exploit for Veritas Backup Exec Agent (CVE-2021-27876/77/78) — SHA auth bypass to SYSTEM via NDMP

★ 1 · 2026-06-18
hyderpwn/veritas-backup

Metasploit module: Veritas Backup Exec Agent SHA-auth NDMP remote code execution (CVE-2021-27876/27877/27878)

★ 1 · 2026-08-27
PoCs 1 ★ 0 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
JakeStone594/f_hid-4.14-backports

Backports of three published f_hid fixes (incl. CVE-2026-31721, CVE-2026-31606) to an EOL Linux 4.14.190 Android vendor kernel, with on-device verification rec…

★ 0 · 2026-08-27
CVE-2010-1240
MULTI PoC
PoCs 5 ★ 71 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 5 repositories
Jasmoon99/Embedded-PDF

This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists of embedd…

★ 71 · 2021-06-06
omarothmann/Embedded-Backdoor-Connection

This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists of embedde…

★ 8 · 2022-01-26
asepsaepdin/CVE-2010-1240
★ 1 · 2023-09-03
12345qwert123456/CVE-2010-1240

Python tool for CVE-2010-1240 research - generates malicious PDFs exploiting Adobe Reader Launch Actions

★ 0 · 2025-09-17
ocfagb/hacktivity-vulns-exploits-lab

Writeup + CVE analysis + countermeasures for the Hacktivity 'Vulnerabilities, Exploits, and Remote Access Payloads' lab (netcat shells, Metasploit, CVE-2010-12…

★ 0 · 2026-08-27
CVE-2025-54068
HOTMULTI PoC
PoCs 6 ★ 152 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 6 repositories
synacktiv/Livepyre

A tool designed to exploit CVE-2025-54068 and Remote Command Execution if the APP_KEY of the Livewire project is known.

★ 152 · 2026-07-16
HelgeSverre/livewire-honeypot

High-interaction honeypot mimicking a vulnerable Laravel/Livewire app. Captures RCE exploits and webshells targeting CVE-2024-47823, CVE-2025-54068, and CVE-20…

★ 6 · 2026-05-15
haxorstars/CVE-2025-54068

A tool designed to exploit CVE-2025-54068 and Remote Command Execution of the Livewire project.

★ 5 · 2026-03-12
e4zyy/Project-CVE-2025-54068

Fast Python scanner detects vulnerable Laravel Livewire v3 sites (CVE-2025-54068, CVSS 9.2). Separates risky sites into vuln.txt, safe sites into safe.txt.

★ 4 · 2026-08-27
flame-11/CVE-2025-54068-livewire
★ 1 · 2026-01-08
luisdalmolin/recon-test-livewire

Test target: fresh Laravel 12 app with Livewire pinned to vulnerable 3.6.3 (CVE-2025-54068) for recon scanning

★ 0 · 2026-07-07
PoCs 1 ★ 0 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
HORKimhab/CVE-2015-3246

CVE-2015-3246

★ 0 · 2026-08-27
PoCs 1 ★ 0 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
HORKimhab/CVE-2015-5287

CVE-2015-5287

★ 0 · 2026-08-27
CVE-2026-19478
MULTI PoC
PoCs 5 ★ 11 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 5 repositories
davkharrr/CVE-2026-19478-PoC

CVE-2026-19478 PoC . Unauthenticated remote code-injection in GitLab's GraphQL layer

★ 11 · 2026-08-18
dinosn/gitlab-cve-2026-19478-lab

Reproducible A/B lab + safe PoC for GitLab CVE-2026-19478 / CVE-2026-19650 (GraphQL @gl_introduced)

★ 11 · 2026-08-18
EQSTLab/CVE-2026-19478

GitLab Code injection

★ 4 · 2026-08-27
renzi25031469/CVE-2026-19478

Nuclei detection template for CVE-2026-19478, a critical (CVSS 9.4) unauthenticated arbitrary method invocation flaw in the GitLab GraphQL API,

★ 1 · 2026-08-19
n0xdaemon/cve-2026-19478

CVE-2026-19478: GitLab GraphQL Vulnerability PoC

★ 0 · 2026-08-20
PoCs 1 ★ 0 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
HORKimhab/Cisco-CVE-2026-20303-More

CVE-2026-20303, CVE-2026-20304, CVE-2026-20310, CVE-2026-20312, CVE-2026-20313

★ 0 · 2026-08-27
PoCs 1 ★ 0 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
HORKimhab/CVE-Ubiquiti

CVE-2026-77542, CVE-2026-77543, CVE-2026-77545, CVE-2026-77550, CVE-2026-77551, CVE-2026-77552, CVE-2026-77553, CVE-2026-77554, CVE-2026-77557 - Draft or TODO

★ 0 · 2026-08-27
PoCs 1 ★ 1 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
HORKimhab/CVE-2026-18431

CVE-2026-18431 - Draft or TODO

★ 1 · 2026-08-27
PoCs 3 ★ 28 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 3 repositories
casp3r0x0/CVE-2026-34159

0 Click RCE exploit for CVE-2026-34159 Lama.cpp RPC server

★ 28 · 2026-04-23
rohithronanki/CVE-2026-34159-Vulnerability-Research-Analysis-Detection

Critical buffer validation bypass in deserialize_tensor() (llama.cpp < b8492). Null tensor buffer skips bounds check, enabling unauthenticated arbitrary R/W vi…

★ 0 · 2026-05-04
TeamN4C/SG-2026-0021

CVE-2026-34159 PoC and exploit

★ 0 · 2026-08-27
PoCs 1 ★ 0 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
HORKimhab/CVE-2026-8467

CVE-2026-8467 - Draft or TODO

★ 0 · 2026-08-27
PoCs 1 ★ 0 Last push 2026-08-27 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
brynax/CVE-2026-50787

Security advisory for CVE-2026-50787: uncontrolled resource consumption in e-SIC Livre CAPTCHA generation leading to remote denial of service.

★ 0 · 2026-08-27
PoCs 1 ★ 0 Last push 2026-08-26 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
t3bik/CVE-2026-75898
★ 0 · 2026-08-26
PoCs 3 ★ 3 Last push 2026-08-26 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 3 repositories
Chocapikk/CVE-2022-29303

Python script to exploit CVE-2022-29303

★ 3 · 2022-05-31
1f3lse/CVE-2022-29303

Python script to exploit CVE-2022-29303

★ 0 · 2022-05-31
camgoering/solarview-ics-vulnerability-analysis

Threat model and vulnerability analysis of Contec SolarView Compact (CVE-2022-29303)

★ 0 · 2026-08-26
PoCs 1 ★ 0 Last push 2026-08-26 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
sergiofigueras/cve-2026-46858
★ 0 · 2026-08-26
< Prev Page 50 / 446 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.