Fetching description from NVD…
Show 1 repositories
Patch: Heap overflow in SSL-VPN (Fortinet FortiOS)
Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.
monitoring live11128 results
Fetching description from NVD…
Patch: Heap overflow in SSL-VPN (Fortinet FortiOS)
Fetching description from NVD…
Patch: Command injection in GlobalProtect (Palo Alto PAN-OS)
Fetching description from NVD…
Patch: SSRF leading to RCE (Microsoft Exchange Server)
Fetching description from NVD…
Patch: Privilege escalation via web UI (Cisco IOS XE)
Fetching description from NVD…
Patch: Deserialization vulnerability (Oracle WebLogic Server)
Fetching description from NVD…
Patch: Remote code execution in SPL parsing (Splunk Enterprise)
Fetching description from NVD…
Patch: RCE via authentication bypass (Ivanti Connect Secure)
Fetching description from NVD…
Basic vulnerability scanning to see if web servers may be vulnerable to CVE-2023-44487
Tool for testing mitigations and exposure to Rapid Reset DDoS (CVE-2023-44487)
Proof of concept for DoS exploit
A python based exploit to test out rapid reset attack (CVE-2023-44487)
Examples for Implementing cve-2023-44487 ( HTTP/2 Rapid Reset Attack ) Concept
Highly configurable tool to check a server's vulnerability against CVE-2023-44487 by rapidly sending HEADERS and RST_STREAM frames and documenting the server's…
Fetching description from NVD…
Professional PHPMyAdmin 5.0.0 SQL Injection (CVE-2020-5504) exploitation framework with automated database enumeration, table extraction, and data dumping capa…
Fetching description from NVD…
PoC exploit chain for CVE-2026-15718: SpiderMonkey wasm baseline compiler array.fill missing-sync -> invalid pointer -> addrOf/fakeobj -> arbitrary R/W -> RCE
Fetching description from NVD…
Reproducible lab for CVE-2026-10053 (GitLab npm package-registry path traversal -> arbitrary file write as git). Vulnerable 19.2.1 vs patched 19.2.2, determini…
Fetching description from NVD…
IDOR + Stored XSS via Broken Object-Level Authorization in JoomGallery
Fetching description from NVD…
Password-Protected Category Bypass via JSON Format in JoomGallery
Fetching description from NVD…
Fetching description from NVD…
Rail-OT-Protector (ROP) — free, open-source cybersecurity scanning tool for rail and transit OT/SCADA networks. PowerShell + Bash scanners for CVE-2025-1727, R…
Fetching description from NVD…
Free BACnet/BMS vulnerability scanner for building automation systems. Detects CVE-2026-3611 (CVSS 10.0), CVE-2026-24060, and exposed HVAC/BAS controllers via …
Fetching description from NVD…
Exploit for Grafana arbitrary file-read and RCE (CVE-2024-9264)
Grafana RCE exploit (CVE-2024-9264)
File Read Proof of Concept for CVE-2024-9264
A go implementation for CVE-2024-9264 which effect grafana versions 11.0.x, 11.1.x, and 11.2.x.
Authenticated RCE in Grafana (v11.0) via SQL Expressions - PoC Exploit
Grafana RCE
Fetching description from NVD…
CVE-2026-0013 Android EoP PoC - Compiled artifacts for security research (Derivative of inforcqb/cve-2026-0013-exploit)
Fetching description from NVD…
Fetching description from NVD…
PoC for CVE-2026-75616, an authenticated OS command injection in TP-Link Archer C20 v6 firmware
Fetching description from NVD…
CVE-2026-47630 — NVIDIA Triton Inference Server: arbitrary dlopen via TRITON_BATCH_STRATEGY_PATH
Fetching description from NVD…
LiteSpeed Cache Privilege Escalation PoC
PoC for the CVE-2024 Litespeed Cache Privilege Escalation
LiteSpeed Cache Privilege Escalation PoC - CVE-2024-28000
CVE-2024-28000 Exploit for litespeed-cache =<6.3 allows Privilege Escalation with creation of administrator account
CVE-2024-28000 LiteSpeed Cache Privilege Escalation Scan&Exp
Hands-on exploit lab for CVE-2024-28000 — unauthenticated privilege escalation in LiteSpeed Cache (WordPress plugin, <=6.3.0.1). Spins up a vulnerable environm…
Hands-on reproduction of CVE-2024-28000 in LiteSpeed Cache using an isolated WordPress lab. Includes reconnaissance, vulnerable hash recovery, Administrator pr…
Fetching description from NVD…
Fetching description from NVD…
Apple MacOS Screen Sharing Arbitrary File read/write -> RCE
Read-only PoC for CVE-2026-65400 — macOS Screen Sharing (screensharingd) pre-auth SRP bypass giving root file read. Patched in macOS 26.6.1 / 15.7.9 / 14.8.9.
CVE-2026-65400
Fetching description from NVD…
CVE-2021-24092 - Draft or TODO
Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.