Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11128CVEs tracked
26034PoC repositories
11New in 24h
354PoC updated in 7 days
filters
All New Fresh PoC Hot Multi PoC Critical High

11128 results

PoCs 1 ★ 0 Last push 2026-08-24 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
gduma-phData/patch-CVE-2026-12087

Patch: Heap overflow in SSL-VPN (Fortinet FortiOS)

★ 0 · 2026-08-24
PoCs 1 ★ 0 Last push 2026-08-24 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
gduma-phData/patch-CVE-2026-14290

Patch: Command injection in GlobalProtect (Palo Alto PAN-OS)

★ 0 · 2026-08-24
PoCs 1 ★ 0 Last push 2026-08-24 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
gduma-phData/patch-CVE-2026-15502

Patch: SSRF leading to RCE (Microsoft Exchange Server)

★ 0 · 2026-08-24
PoCs 1 ★ 0 Last push 2026-08-24 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
gduma-phData/patch-CVE-2026-19843

Patch: Privilege escalation via web UI (Cisco IOS XE)

★ 0 · 2026-08-24
PoCs 1 ★ 0 Last push 2026-08-24 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
gduma-phData/patch-CVE-2026-22024

Patch: Deserialization vulnerability (Oracle WebLogic Server)

★ 0 · 2026-08-24
PoCs 1 ★ 0 Last push 2026-08-24 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
gduma-phData/patch-CVE-2026-28001

Patch: Remote code execution in SPL parsing (Splunk Enterprise)

★ 0 · 2026-08-24
PoCs 1 ★ 0 Last push 2026-08-24 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
gduma-phData/patch-CVE-2026-31337

Patch: RCE via authentication bypass (Ivanti Connect Secure)

★ 0 · 2026-08-24
CVE-2023-44487
HOTMULTI PoC
PoCs 26 ★ 248 Last push 2026-08-24 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 8 of 26 repositories
bcdannyboy/CVE-2023-44487

Basic vulnerability scanning to see if web servers may be vulnerable to CVE-2023-44487

★ 248 · 2024-01-08
secengjeff/rapidresetclient

Tool for testing mitigations and exposure to Rapid Reset DDoS (CVE-2023-44487)

★ 76 · 2023-10-30
imabee101/CVE-2023-44487

Proof of concept for DoS exploit

★ 56 · 2023-10-13
studiogangster/CVE-2023-44487

A python based exploit to test out rapid reset attack (CVE-2023-44487)

★ 22 · 2023-10-16
nxenon/cve-2023-44487

Examples for Implementing cve-2023-44487 ( HTTP/2 Rapid Reset Attack ) Concept

★ 15 · 2023-11-10
ndrscodes/http2-rst-stream-attacker

Highly configurable tool to check a server's vulnerability against CVE-2023-44487 by rapidly sending HEADERS and RST_STREAM frames and documenting the server's…

★ 6 · 2024-01-11
ReToCode/golang-CVE-2023-44487
★ 2 · 2023-10-26
PoCs 2 ★ 1 Last push 2026-08-23 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 2 repositories
CerberusMrXi/phpMyAdmin-CVE-2020-5504-Exploit

Professional PHPMyAdmin 5.0.0 SQL Injection (CVE-2020-5504) exploitation framework with automated database enumeration, table extraction, and data dumping capa…

★ 0 · 2026-08-23
PoCs 1 ★ 1 Last push 2026-08-23 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
SneakyNachos/CVE-2026-15718-who-put-ptrs-in-my-wasm

PoC exploit chain for CVE-2026-15718: SpiderMonkey wasm baseline compiler array.fill missing-sync -> invalid pointer -> addrOf/fakeobj -> arbitrary R/W -> RCE

★ 1 · 2026-08-23
PoCs 1 ★ 4 Last push 2026-08-23 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
dinosn/CVE-2026-10053-lab

Reproducible lab for CVE-2026-10053 (GitLab npm package-registry path traversal -> arbitrary file write as git). Vulnerable 19.2.1 vs patched 19.2.2, determini…

★ 4 · 2026-08-23
PoCs 1 ★ 0 Last push 2026-08-23 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
toanln-cov/CVE-2026-66917

IDOR + Stored XSS via Broken Object-Level Authorization in JoomGallery

★ 0 · 2026-08-23
PoCs 1 ★ 0 Last push 2026-08-23 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
toanln-cov/CVE-2026-66916

Password-Protected Category Bypass via JSON Format in JoomGallery

★ 0 · 2026-08-23
PoCs 1 ★ 0 Last push 2026-08-23 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
h00die/POC-CVE-2026-19681
★ 0 · 2026-08-23
PoCs 1 ★ 1 Last push 2026-08-23 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
spinfosecurity/Rail-OT-Protector

Rail-OT-Protector (ROP) — free, open-source cybersecurity scanning tool for rail and transit OT/SCADA networks. PowerShell + Bash scanners for CVE-2025-1727, R…

★ 1 · 2026-08-23
PoCs 1 ★ 1 Last push 2026-08-23 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
spinfosecurity/BAS-Guardian

Free BACnet/BMS vulnerability scanner for building automation systems. Detects CVE-2026-3611 (CVSS 10.0), CVE-2026-24060, and exposed HVAC/BAS controllers via …

★ 1 · 2026-08-23
CVE-2024-9264
HOTMULTI PoC
PoCs 13 ★ 131 Last push 2026-08-23 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 8 of 13 repositories
nollium/CVE-2024-9264

Exploit for Grafana arbitrary file-read and RCE (CVE-2024-9264)

★ 131 · 2024-12-16
z3k0sec/CVE-2024-9264-RCE-Exploit

Grafana RCE exploit (CVE-2024-9264)

★ 38 · 2024-10-21
z3k0sec/File-Read-CVE-2024-9264

File Read Proof of Concept for CVE-2024-9264

★ 8 · 2024-10-20
Cythonic1/CVE-2024-9264

A go implementation for CVE-2024-9264 which effect grafana versions 11.0.x, 11.1.x, and 11.2.x.

★ 3 · 2025-06-05
rvzsec/CVE-2024-9264

Authenticated RCE in Grafana (v11.0) via SQL Expressions - PoC Exploit

★ 2 · 2025-07-07
Exerrdev/CVE-2024-9264-Fixed
★ 0 · 2025-06-15
Royall-Researchers/CVE-2024-9264
★ 0 · 2025-07-05
ruizii/CVE-2024-9264

Grafana RCE

★ 0 · 2025-07-05
PoCs 2 ★ 1 Last push 2026-08-23 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 2 repositories
inforcqb/cve-2026-0013-exploit
★ 1 · 2026-05-31
XiaoBaiLovesStirring/cve-2026-0013-poc

CVE-2026-0013 Android EoP PoC - Compiled artifacts for security research (Derivative of inforcqb/cve-2026-0013-exploit)

★ 1 · 2026-08-23
PoCs 1 ★ 0 Last push 2026-08-23 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
Legendile7/CVE-2026-78122-POC
★ 0 · 2026-08-23
PoCs 1 ★ 1 Last push 2026-08-22 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
totekuh/CVE-2026-75616

PoC for CVE-2026-75616, an authenticated OS command injection in TP-Link Archer C20 v6 firmware

★ 1 · 2026-08-22
PoCs 1 ★ 0 Last push 2026-08-22 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
s1ko/CVE-2026-47630

CVE-2026-47630 — NVIDIA Triton Inference Server: arbitrary dlopen via TRITON_BATCH_STRATEGY_PATH

★ 0 · 2026-08-22
CVE-2024-28000
MULTI PoC
PoCs 7 ★ 23 Last push 2026-08-22 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 7 repositories
Alucard0x1/CVE-2024-28000

LiteSpeed Cache Privilege Escalation PoC

★ 23 · 2024-08-25
arch1m3d/CVE-2024-28000

PoC for the CVE-2024 Litespeed Cache Privilege Escalation

★ 7 · 2025-04-16
ebrasha/CVE-2024-28000

LiteSpeed Cache Privilege Escalation PoC - CVE-2024-28000

★ 5 · 2025-11-06
JohnDoeAnonITA/CVE-2024-28000

CVE-2024-28000 Exploit for litespeed-cache =<6.3 allows Privilege Escalation with creation of administrator account

★ 5 · 2025-03-18
SSSSuperX/CVE-2024-28000

CVE-2024-28000 LiteSpeed Cache Privilege Escalation Scan&Exp

★ 1 · 2024-09-09
AliHzSec/CVE-2024-28000

Hands-on exploit lab for CVE-2024-28000 — unauthenticated privilege escalation in LiteSpeed Cache (WordPress plugin, <=6.3.0.1). Spins up a vulnerable environm…

★ 0 · 2026-07-30
shawnng078-ops/CVE-2024-28000-Exploit-Lab

Hands-on reproduction of CVE-2024-28000 in LiteSpeed Cache using an isolated WordPress lab. Includes reconnaissance, vulnerable hash recovery, Administrator pr…

★ 0 · 2026-08-22
PoCs 1 ★ 0 Last push 2026-08-22 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
MinhHK68/CVE-2026-13736
★ 0 · 2026-08-22
PoCs 3 ★ 8 Last push 2026-08-22 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 3 repositories
acheong08/CVE-2026-65400

Apple MacOS Screen Sharing Arbitrary File read/write -> RCE

★ 8 · 2026-08-22
panchocosil/CVE-2026-65400-poc

Read-only PoC for CVE-2026-65400 — macOS Screen Sharing (screensharingd) pre-auth SRP bypass giving root file read. Patched in macOS 26.6.1 / 15.7.9 / 14.8.9.

★ 7 · 2026-08-22
HORKimhab/CVE-2026-65400

CVE-2026-65400

★ 3 · 2026-08-18
PoCs 1 ★ 0 Last push 2026-08-22 (1 month, 2 weeks ago)

Fetching description from NVD…

Show 1 repositories
HORKimhab/CVE-2021-24092

CVE-2021-24092 - Draft or TODO

★ 0 · 2026-08-22
< Prev Page 55 / 446 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.