Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11114CVEs tracked
26004PoC repositories
17New in 24h
360PoC updated in 7 days
filters
All New Fresh PoC Hot Multi PoC Critical High

11114 results

CVE-2007-2447
FRESH PoCMULTI PoC
PoCs 44 ★ 61 Last push 2026-10-08 (1 day, 21 hours ago)

Fetching description from NVD…

Show 8 of 44 repositories
amriunix/CVE-2007-2447

CVE-2007-2447 - Samba usermap script

★ 61 · 2020-08-16
h3x0v3rl0rd/CVE-2007-2447

Exploit Samba smbd 3.0.20-Debian

★ 5 · 2025-06-05
Unix13/metasploitable2

PHP-CGI-REMOTE_CVE-2012-1823, UnrealIRCd, MySQL, PostgreSQL and SSH bruteforce, VSFTPD2.3.4, samba CVE-2007-2447, JAVA RMI Server, distcc daemon, misconfigured…

★ 4 · 2018-07-11
Ziemni/CVE-2007-2447-in-Python

Python implementation of 'Username' map script' RCE Exploit for Samba 3.0.20 < 3.0.25rc3 (CVE-2007-2447).

★ 3 · 2021-02-22
Alien0ne/CVE-2007-2447

CVE-2007-2447 - Samba usermap script

★ 3 · 2021-06-30
xbufu/CVE-2007-2447

Exploit code for CVE-2007-2447 written in Python3.

★ 2 · 2021-10-03
JoseBarrios/CVE-2007-2447

Remote Command Injection Vulnerability (CVE-2007-2447), allows remote attackers to execute arbitrary commands by specifying a Samba username containing shell m…

★ 1 · 2020-01-20
3x1t1um/CVE-2007-2447
★ 1 · 2020-08-04
CVE-2026-18963
FRESH PoCHOTMULTI PoC
PoCs 17 ★ 114 Last push 2026-10-08 (1 day, 23 hours ago)

Fetching description from NVD…

Show 8 of 17 repositories
ynsmroztas/KeySniper

**CVE-2026-18963** — unauthenticated Keycloak account takeover via the reset-credentials flow.

★ 114 · 2026-09-06
Snizi/CVE-2026-18963-Exploit

Exploit for KeyCloak CVE-2026-18963

★ 46 · 2026-08-20
Red-Darkin/CVE-2026-18963-keycloak

CVE-2026-18963

★ 20 · 2026-08-25
EQSTLab/CVE-2026-18963

Keycloak reset-credentials flow bypass

★ 17 · 2026-09-28
kyos-public/keycloak-cve-2026-18963-hunt

Hunt for CVE-2026-18963 exploitation traces (Keycloak unauthenticated account takeover) in the Keycloak database

★ 16 · 2026-08-24
prot0tw/Keycloak_CVE-2026-18963_PoC

This repo is poc of cve-2026-18963. Please use it on legal products (lab, local,...).

★ 15 · 2026-08-26
T0w0T/POC-CVE-2026-18963
★ 4 · 2026-08-24
alt3kx/CVE-2026-18963

CVE-2026-18963 Keycloak Reset-Credentials State Bypass Detector

★ 4 · 2026-08-28
CVE-2023-3776
FRESH PoC
PoCs 1 ★ 2 Last push 2026-10-08 (1 day, 23 hours ago)

Fetching description from NVD…

Show 1 repositories
CVE-2025-9974
FRESH PoC
PoCs 2 ★ 0 Last push 2026-10-08 (1 day, 23 hours ago)

Fetching description from NVD…

Show 2 repositories
HORKimhab/CVE-2025-9974

CVE-2025-9974 - Draft or TODO

★ 0 · 2026-09-25
xxs-2/Beacon10-Getshell

疑似(CVE-2025-9974)

★ 0 · 2026-10-08
CVE-2025-68664
FRESH PoC
PoCs 4 ★ 3 Last push 2026-10-08 (1 day, 23 hours ago)

Fetching description from NVD…

Show 4 repositories
Ak-cybe/CVE-2025-68664-LangGrinch-PoC

A testing framework to identify and demonstrate deserialization vulnerabilities in LangChain Core (<0.3.81). Educational use only

★ 3 · 2025-12-27
comerc/CVE-2025-68664
★ 0 · 2026-01-10
Johnnyzhou666/langgrinch-cve-2025-68664-analysis

Technical analysis of the LangChain serialization injection vulnerability CVE-2025-68664.

★ 0 · 2026-05-10
t-sorger/cve-2025-68664-langgrinch

LangGrinch - CVE-2025-68664 demo

★ 0 · 2026-10-08
CVE-2026-31857
FRESH PoCMULTI PoC
PoCs 5 ★ 1 Last push 2026-10-08 (1 day, 23 hours ago)

Fetching description from NVD…

Show 5 repositories
0Asylum/CVE-2026-31857

CraftCMS has an RCE vulnerability via relational conditionals in the control panel

★ 1 · 2026-09-30
0xTatsuki/CVE-2026-31857

Craft CMS RCE via relational conditionals in the control panel

★ 0 · 2026-10-01
WhiteMachin3/CVE-2026-31857

CVE-2026-31857 - Craft CMS authenticated RCE timing verifier.

★ 0 · 2026-10-05
kaizoku73/CVE-2026-31857-PoC

Proof of Concept for CVE-2026-31857, an authenticated Remote Code Execution vulnerability in Craft CMS caused by unsafe processing of user-controlled Twig expr…

★ 0 · 2026-10-08
CVE-2017-0199
FRESH PoCHOTMULTI PoC
PoCs 23 ★ 725 Last push 2026-10-08 (1 day, 23 hours ago)

Fetching description from NVD…

Show 8 of 23 repositories
bhdresh/CVE-2017-0199

Exploit toolkit CVE-2017-0199 - v4.0 is a handy python script which provides pentesters and security researchers a quick and effective way to test Microsoft Of…

★ 725 · 2017-11-19
haibara3839/CVE-2017-0199-master

CVE-2017-0199

★ 16 · 2017-04-19
NotAwful/CVE-2017-0199-Fix

Quick and dirty fix to OLE2 executing code via .hta

★ 13 · 2017-04-24
SyFi/cve-2017-0199
★ 12 · 2017-04-13
Exploit-install/CVE-2017-0199

Exploit toolkit CVE-2017-0199 - v2.0 is a handy python script which provides a quick and effective way to exploit Microsoft RTF RCE. It could generate a malici…

★ 7 · 2017-04-22
jacobsoo/RTF-Cleaner

RTF Cleaner, tries to extract URL from malicious RTF samples using CVE-2017-0199 & CVE-2017-8759

★ 3 · 2017-12-08
mzakyz666/PoC-CVE-2017-0199

Exploit toolkit for vulnerability RCE Microsoft RTF

★ 2 · 2017-04-22
n1shant-sinha/CVE-2017-0199

Exploit toolkit CVE-2017-0199 - v2.0 is a handy python script which provides a quick and effective way to exploit Microsoft RTF RCE. It could generate a malici…

★ 2 · 2017-04-23
CVE-2026-42978
FRESH PoCMULTI PoC
PoCs 5 ★ 68 Last push 2026-10-08 (2 days, 1 hour ago)

Fetching description from NVD…

Show 5 repositories
SyntaxMethod/CVE-2026-42978-PoC-Research

CVE-2026-42978 Windows Push Notifications (WpnService) Use-After-Free & Race Condition PoC research, diagnostic scanner, and security audit module for AI Secur…

★ 68 · 2026-09-11
grizzzer/CVE-2026-42978-PoC-Research

CVE-2026-42978 — Use-After-Free race condition in Windows Push Notifications (WpnService). Patch diff, root cause analysis, TOCTOU lab, Sysmon/ETW detection ru…

★ 28 · 2026-06-23
coactionbrittlemaidenhair51/CVE-2026-42978-PoC-Research

Exploit and analyze CVE-2026-42978 with a Windows Push Notifications module for AI security, multi-protocol terminal, and autonomous agent suite.

★ 0 · 2026-10-08
coactionbrittlemaidenhair51/coactionbrittlemaidenhair51.github.io

Explore and validate CVE-2026-42978 PoC with an integrated AI security tool, multi-protocol terminal, and autonomous agent suite for Windows Push Notifications.

★ 0 · 2026-09-28
CVE-2025-66398
FRESH PoC
PoCs 2 ★ 3 Last push 2026-10-08 (2 days, 2 hours ago)

Fetching description from NVD…

Show 2 repositories
joshuavanderpoll/cve-2025-66398

CVE-2025-66398 — Signal K Server ≤ 2.18.0 RCE PoC

★ 3 · 2026-03-11
showy-headteacher114/cve-2025-66398

Demonstrate exploitation of Signal K Server CVE-2025-66398 allowing unauthenticated attackers to inject backdoor and enable remote code execution.

★ 1 · 2026-10-08
CVE-2026-24061
FRESH PoCHOTMULTI PoC
PoCs 70 ★ 208 Last push 2026-10-08 (2 days, 2 hours ago)

Fetching description from NVD…

Show 8 of 70 repositories
SafeBreach-Labs/CVE-2026-24061

Exploitation of CVE-2026-24061

★ 208 · 2026-01-22
JayGLXR/CVE-2026-24061-POC
★ 68 · 2026-01-22
ZeroDayEvil/CVE-2026-24061
★ 22 · 2026-09-28
parameciumzhang/Tell-Me-Root

基于cve-2026-24061 telnet远程认证绕过漏洞的批量检测利用工具

★ 21 · 2026-01-23
Lingzesec/CVE-2026-24061-GUI

CVE-2026-24061 GNU Inetutils telnetd 身份验证绕过漏洞检测与利用 GUI 工具

★ 17 · 2026-01-28
leonjza/inetutils-telnetd-auth-bypass

A small docker lab to play with cve-2026-24061, the inetutils-telnetd authentication bypass.

★ 12 · 2026-01-22
Chocapikk/CVE-2026-24061
★ 12 · 2026-01-22
ekomsSavior/telnet_scan

scanner/exploiter CVE-2026-24061 & CVE-2026-32746

★ 12 · 2026-05-22
CVE-2025-54424
FRESH PoC
PoCs 3 ★ 58 Last push 2026-10-08 (2 days, 2 hours ago)

Fetching description from NVD…

Show 3 repositories
Mr-xn/CVE-2025-54424

CVE-2025-54424:1Panel 客户端证书绕过RCE漏洞 一体化工具 (扫描+利用)

★ 58 · 2025-08-05
hophtien/CVE-2025-54424

CVE-2025-54424: 1Panel TLS client cert bypass enables RCE via forged CN 'panel_client' using a bundled scanning and exploitation tool. Affected: <= v2.0.5. 🔐

★ 3 · 2026-10-08
CVE-2026-105192
FRESH PoC
PoCs 1 ★ 0 Last push 2026-10-08 (2 days, 3 hours ago)

Fetching description from NVD…

Show 1 repositories
rxsklife/CVE-2026-105192

CVE-2026-105192 is a critical (CVSS 9.8) vulnerability in LMCache, an open-source distributed key-value cache for LLM inference engines like vLLM.

★ 0 · 2026-10-08
CVE-2026-61424
FRESH PoC
PoCs 2 ★ 1 Last push 2026-10-08 (2 days, 4 hours ago)

Fetching description from NVD…

Show 2 repositories
shinthink/CVE-2026-61424

DJ-Classifieds Joomla Component Unauthenticated File Upload RCE. 3-string filter bypass via PHP short tags. CVSS 10.0 | CWE-434 | com_djclassifieds < 3.11.2

★ 1 · 2026-07-30
theendofabbys/CVE-2026-61424
★ 0 · 2026-10-08
CVE-2026-49049
FRESH PoCMULTI PoC
PoCs 8 ★ 4 Last push 2026-10-08 (2 days, 5 hours ago)

Fetching description from NVD…

Show 8 repositories
shinthink/CVE-2026-49049

Read-only vulnerability scanner for CVE-2026-49049 — Helix3 Joomla plugin unauthenticated AJAX handler

★ 4 · 2026-07-04
frada321/asdsadsadasdasdsadsad

 CVE-2026-49049 - Unauthenticated File Deletion, Arbitrary Write & XSS Injection for Helix3 Joomla Extension

★ 0 · 2026-07-05
Dr-D25/CVE-2026-49049
★ 0 · 2026-07-10
ExDev994/CVE-2026-49049

CVE-2026-49049 Helix3 (JoomShaper) Joomla Unauthenticated AJAX RCE Scanner

★ 0 · 2026-07-13
6ickzone/Helix3-Mass-Exploiter

Mass Exploiter for CVE-2026-49049

★ 0 · 2026-09-21
Jenderal92/CVE-2026-49049

Mass vulnerability scanner for CVE-2026-49049 – Unauthenticated Remote Code Execution in Joomla Helix3 plugin. Multi‑threaded, detects both executed and raw PH…

★ 0 · 2026-08-02
MataKucing-OFC/CVE-2026-49049
★ 0 · 2026-09-12
theendofabbys/CVE-2026-49049
★ 0 · 2026-10-08
CVE-2026-56291
FRESH PoCMULTI PoC
PoCs 5 ★ 2 Last push 2026-10-08 (2 days, 5 hours ago)

Fetching description from NVD…

Show 5 repositories
shinthink/CVE-2026-56291

Balbooa Forms (com_baforms) < 2.4.1 — Unauthenticated File Upload to RCE via form.uploadAttachmentFile | CVSS 9.8 | CISA KEV

★ 2 · 2026-07-11
0xdenis77/CVE-2026-56291

Mendeteksi versi (passive detection) & Exploitation CVE POC

★ 1 · 2026-07-13
rimbadirgantara/CVE-2026-56291.yaml

nuclei template for CVE-2026-56291

★ 0 · 2026-07-13
ChiefYoru/CVE-2026-56291_PoC

The Joomla extension Balbooa Forms is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to full RCE.

★ 0 · 2026-07-18
theendofabbys/CVE-2026-56291
★ 0 · 2026-10-08
CVE-2026-48907
FRESH PoCMULTI PoC
PoCs 20 ★ 64 Last push 2026-10-08 (2 days, 5 hours ago)

Fetching description from NVD…

Show 8 of 20 repositories
gh1mau/masta-cve-2026-48907

cve-2026-48907 scanner

★ 64 · 2026-06-27
ywh-jfellus/CVE-2026-48907

PoC for CVE-2026-48907 - Joomla! JCE extension < 2.9.99.5 unauthenticated RCE

★ 16 · 2026-06-11
0xBlackash/CVE-2026-48907

CVE-2026-48907

★ 3 · 2026-06-12
0xgh057r3c0n/CVE-2026-48907

CVE-2025-48907 - Unauthenticated RCE exploit for Joomla JCE < 2.9.99.5

★ 3 · 2026-06-27
g0thamRabb1t/CVE-2026-48907-Joomla-JCE-detection

Defensive lab validation and SOC detection guidance for CVE-2026-48907 in Joomla JCE <= 2.9.99.4, including Apache/Joomla/auditd telemetry, webshell artifacts,…

★ 1 · 2026-06-18
sec0x/CVE-2026-48907
★ 1 · 2026-08-05
pssec-io/CVE-2026-48907

POC for CVE-2026-48907

★ 1 · 2026-06-30
bayu06802/CVE-2026-48907

Python & template nuclei

★ 1 · 2026-07-04
CVE-2026-107268
FRESH PoC
PoCs 1 ★ 0 Last push 2026-10-08 (2 days, 5 hours ago)

Fetching description from NVD…

Show 1 repositories
yuwkaaa/CVE-2026-107268

Drupal-miniorange_2fa

★ 0 · 2026-10-08
CVE-2022-29078
FRESH PoCMULTI PoC
PoCs 9 ★ 8 Last push 2026-10-08 (2 days, 7 hours ago)

Fetching description from NVD…

Show 8 of 9 repositories
miko550/CVE-2022-29078

vuln ejs 3.1.6 docker

★ 8 · 2022-09-07
l0n3m4n/CVE-2022-29078

Serverside Template Injection (SSTI) RCE - THM challenge "whiterose"

★ 3 · 2024-11-08
chuckdu21/CVE-2022-29078

PoC for CVE-2022-29078

★ 0 · 2025-01-07
AlonNavon/npm-demo

Browser demo: EJS template injection (CVE-2022-29078) with Seal Security remediation

★ 0 · 2026-02-15
amusedx/CVE-2022-29078
★ 0 · 2026-04-12
test-avm-714877d2df585126/vuln-ejs-critical

npm repo with ejs CVE-2022-29078 (CVSS 9.8, EPSS 32%) for Dependabot automerge testing

★ 0 · 2026-07-02
test-avm-714877d2df585126/C-test-2

Dependabot security automerge test - ejs CVE-2022-29078

★ 0 · 2026-10-08
CVE-2025-58226
FRESH PoC
PoCs 1 ★ 0 Last push 2026-10-07 (2 days, 8 hours ago)

Fetching description from NVD…

Show 1 repositories
QASIM1401/CVE-2025-58226-PoC

CVE-2025-58226 — 3D FlipBook <= 1.16.16 unauthenticated sensitive data exposure: two-stage PoC (enumerate -> leak file URLs -> download) + nuclei template

★ 0 · 2026-10-07
CVE-2026-97332
FRESH PoC
CVSS 5.3 MEDIUM CWE-284 Published 2026-10-04 PoCs 1 ★ 4 Last push 2026-10-07 (2 days, 11 hours ago)

The User Private Files WordPress plugin before 2.2.0 does not properly protect its stored private files on multisite installations, where the rewrite rule it relies on to route file requests through its access check is never reached, allowing unauthenticated users to retrieve other users' private files directly.

Show 1 repositories
Kolya080808/CVE-2026-97332-PoC

Independent PoC and reproducible lab for CVE-2026-97332 — User Private Files < 2.2.0 unauthenticated private file disclosure on WordPress Multisite.

★ 4 · 2026-10-07
CVE-2026-83548
FRESH PoC
PoCs 3 ★ 0 Last push 2026-10-07 (2 days, 12 hours ago)

Fetching description from NVD…

Show 3 repositories
xoessie/CVE-2026-83548-SonicWall-SMA1000-Analysis

Vulnerability Analysis of CVE-2026-83548 affecting SonicWall SMA1000 security systems.

★ 0 · 2026-09-03
xcoy0te/CVE-2026-83548-checker

Non-intrusive detector for SonicWall SMA 1000 exposure to CVE-2026-83548/-83549 (version/patch-state check; no exploitation)

★ 0 · 2026-10-07
HORKimhab/CVE-2026-83548-CVE-2026-83549

CVE-2026-83548, CVE-2026-83549, - Draft or TODO - https://github.com/rapid7/metasploit-framework/pull/21883

★ 0 · 2026-09-08
CVE-2026-33150
FRESH PoC
PoCs 1 ★ 0 Last push 2026-10-07 (2 days, 12 hours ago)

Fetching description from NVD…

Show 1 repositories
abhinavagarwal07/abhinavagarwal07.github.io

RingWraith: CVE-2026-33150 and CVE-2026-33179 — Use-After-Free and NULL Dereference in libfuse io_uring

★ 0 · 2026-10-07
CVE-2026-105844
FRESH PoC
PoCs 1 ★ 2 Last push 2026-10-07 (2 days, 12 hours ago)

Fetching description from NVD…

Show 1 repositories
murrez/CVE-2026-105844

CVE-2026-105844 — Payload CMS @payloadcms/plugin-import-export <3.88.0 unauth prototype pollution (CWE-1321, CVSS 4.0 9.3). PoCbit PoC: POST /api/exports/expor…

★ 2 · 2026-10-07
CVE-2026-102782
FRESH PoC
PoCs 1 ★ 1 Last push 2026-10-07 (2 days, 12 hours ago)

Fetching description from NVD…

Show 1 repositories
murrez/CVE-2026-102782

CVE-2026-102782 — OrdaSoft Joomla Simple Membership <7.4.0 unauth SQLi (CWE-89, CVSS 4.0 9.3). PoCbit PoC: checkLoginPass + login param extractvalue error leak…

★ 1 · 2026-10-07
CVE-2026-43284
FRESH PoCMULTI PoC
PoCs 40 ★ 31 Last push 2026-10-07 (2 days, 14 hours ago)

Fetching description from NVD…

Show 8 of 40 repositories
linnemanlabs/dirtyfrag-arm64

arm64/aarch64 port of V4bel/dirtyfrag (CVE-2026-43284). ESP-only - rxrpc path kernel-oopses on arm64 due to flush_dcache_page

★ 31 · 2026-05-13
ankitrawatgit/DirtyFrag-Android-Root-Jailbreak

DirtyFrag Android Root is an Android app and helper module chain based on DirtyFrag (CVE-2026-43284). Tested on iQOO Z9 5G.

★ 24 · 2026-10-05
0xBlackash/CVE-2026-43284

CVE-2026-43284

★ 23 · 2026-05-08
Percivalll/Dirty-Frag-Kubernetes-PoC

A proof-of-concept demonstrating how a default, unprivileged Kubernetes Pod can achieve node-level code execution on Amazon EKS by exploiting the Dirty Frag (C…

★ 16 · 2026-05-08
liamromanis101/DirtyFrag-Detector

CVE-2026-43284/CVE-2026-43500 'DirtyFrag' Benign patch & mitigation detection script

★ 16 · 2026-05-12
haydenjames/dirty-frag-check

Read-only checker for CVE-2026-43284 / CVE-2026-43500 (Dirty Frag) Linux kernel local-root vulns

★ 7 · 2026-05-12
a2333c/DFRoot

三星 Galaxy S25 Ultra(SM-S938B)适配版 DFRoot:开机自动获取 root(DirtyFrag CVE-2026-43284 + CVE-2026-43499 双链路),全中文界面,fork 自 diabl0w/DFRoot

★ 5 · 2026-09-28
mym0us3r/DIRTY-FRAG-Detection-with-Wazuh-4.14.4

Wazuh 4.14.4 detection rules for CVE-2026-43284 / CVE-2026-43500 (Dirty Frag) - Linux Local Privilege Escalation via page cache write

★ 3 · 2026-05-17
< Prev Page 8 / 445 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.