Skip to content

GhostTroops/TOP

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

1,564 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Tweet Follow on Twitter GitHub Followers Top Langs

TOP

all Top Top Top_Codeql TOP All bugbounty pentesting CVE-2022- POC Exp Things

Table of Contents

2026

star updated_at name url des
3917 2026-05-29T11:25:52Z copy-fail-CVE-2026-31431 https://github.com/theori-io/copy-fail-CVE-2026-31431 Copy Fail (CVE-2026-31431): 9-year-old Linux kernel LPE found by Theori's Xint Code
821 2026-05-30T01:12:59Z Nginx-Rift https://github.com/DepthFirstDisclosures/Nginx-Rift exploit for CVE-2026-42945
561 2026-05-28T18:35:12Z cve_2026_31431 https://github.com/rootsecdev/cve_2026_31431 Exploit POC for CVE_2026_31431
159 2026-05-28T17:03:02Z next-16.2.4-pocs https://github.com/dwisiswant0/next-16.2.4-pocs Next.js v16.2.4 Security PoC Collection (CVE-2026-23870, CVE-2026-44575, CVE-2026-44579, CVE-2026-44574, CVE-2026-44578, CVE-2026-44573, CVE-2026-44581, CVE-2026-44580, CVE-2026-44577, CVE-2026-44576, CVE-2026-44582, CVE-2026-44572)
257 2026-05-16T20:20:56Z CVE-2026-21858 https://github.com/Chocapikk/CVE-2026-21858 n8n Ni8mare - Unauthenticated Arbitrary File Read to RCE Chain (CVSS 10.0)
208 2026-05-11T14:09:37Z CVE-2026-24061 https://github.com/SafeBreach-Labs/CVE-2026-24061 Exploitation of CVE-2026-24061
768 2026-05-29T19:07:16Z BYOVD https://github.com/BlackSnufkin/BYOVD BYOVD research use cases featuring vulnerable driver discovery and reverse engineering methodology. (CVE-2025-52915, CVE-2025-1055, CVE-2026-3609).
67 2026-05-25T09:59:01Z cve-2026-31431 https://github.com/adysec/cve-2026-31431 CVE-2026-31431: Copy Fail
205 2026-05-29T22:26:41Z CVE-2026-40369-EXPLOIT https://github.com/orinimron123/CVE-2026-40369-EXPLOIT Full exploit code for CVE-2026-40369 - A Windows kernel arbitrary write vulnerability that allows browser sandbox escape from all browsers render process sandbox
352 2026-05-28T08:58:10Z copyfail-go https://github.com/badsectorlabs/copyfail-go A Go implementation of copyfail (CVE-2026-31431)
447 2026-05-29T19:41:31Z cPanelSniper https://github.com/ynsmroztas/cPanelSniper CVE-2026-41940 — cPanel & WHM Authentication Bypass via Session-File CRLF Injection
125 2026-05-29T05:51:03Z CVE-2026-20817 https://github.com/oxfemale/CVE-2026-20817 Windows Error Reporting ALPC Elevation of Privilege (CVE-2026-20817) - Proof-of-Concept exploit demonstrating local privilege escalation via WER service.
108 2026-05-29T09:57:40Z CVE-2026-31431-Advanced-Exploit https://github.com/Sndav/CVE-2026-31431-Advanced-Exploit CVE-2026-31431 纯文件利用
88 2026-05-27T09:44:25Z CVE-2026-41651 https://github.com/Vozec/CVE-2026-41651
412 2026-05-29T19:32:03Z copy-fail-c https://github.com/tgies/copy-fail-c Cross-platform C port of the Copy Fail Linux LPE (CVE-2026-31431). Disclosed 2026-04-29 by Theori / Xint.
141 2026-05-03T06:45:07Z CVE-2026-20841-PoC https://github.com/BTtea/CVE-2026-20841-PoC PoC
124 2026-05-20T17:00:34Z CVE-2026-2441-PoC https://github.com/huseyinstif/CVE-2026-2441-PoC
72 2026-05-27T19:36:19Z CVE-2026-0073-Android-adbd-authentication-bypass-POC https://github.com/SecTestAnnaQuinn/CVE-2026-0073-Android-adbd-authentication-bypass-POC
163 2026-05-28T09:01:58Z Copy-Fail-CVE-2026-31431-Kubernetes-PoC https://github.com/Percivalll/Copy-Fail-CVE-2026-31431-Kubernetes-PoC PoC: fully unprivileged container escape to node-level code execution on Kubernetes via CVE-2026-31431 page-cache corruption + shared image layers. Validated on Alibaba Cloud ACK, Amazon EKS and Google GKE.
68 2026-05-27T06:02:15Z CVE-2026-34486 https://github.com/striga-ai/CVE-2026-34486 EncryptInterceptor fail-open bypass in Apache Tomcat Tribes clustering leading to unauthenticated RCE via Java deserialization.
95 2026-05-28T06:27:34Z Copy-Fail-Exploit-CVE-2026-31431 https://github.com/painoob/Copy-Fail-Exploit-CVE-2026-31431 Most Linux LPEs need a race window or a kernel-specific offset. Copy Fail is a straight-line logic flaw, it needs neither. The same 732-byte Python script (or .c elf) roots every Linux distribution shipped since 2017.
33 2026-05-21T08:32:36Z CVE-2026-31431 https://github.com/0xShe/CVE-2026-31431
10 2026-05-15T09:42:03Z Ashwesker-CVE-2026-21509 https://github.com/kimstars/Ashwesker-CVE-2026-21509 CVE-2026-21509
33 2026-05-27T08:25:15Z NGINX_RIFT_SCAN_CVE_2026_42945 https://github.com/friparia/NGINX_RIFT_SCAN_CVE_2026_42945 Nginx Rewrite CVE Scan(CVE-2026-42945 nginx-rift CVE-2026-9256)
51 2026-05-27T06:33:52Z CVE-2026-31431-Linux-Copy-Fail https://github.com/iss4cf0ng/CVE-2026-31431-Linux-Copy-Fail Rust implementation Exploit/PoC of CVE-2026-31431-Linux-Copy-Fail, allow executing customized shellcode (such as Meterpreter).
28 2026-05-28T23:56:44Z cve-2026-41940-poc https://github.com/adriyansyah-mf/cve-2026-41940-poc
66 2026-04-17T19:08:51Z CVE-2026-24061-POC https://github.com/JayGLXR/CVE-2026-24061-POC
26 2026-04-09T13:59:05Z cve-2026-32746 https://github.com/jeffaf/cve-2026-32746 CVE-2026-32746 - GNU InetUtils telnetd LINEMODE SLC Buffer Overflow PoC (pre-auth RCE, CVSS 9.8)
63 2026-05-17T14:36:08Z poc-cpanel-cve-2026-41940 https://github.com/XsanFlip/poc-cpanel-cve-2026-41940
28 2026-05-28T06:20:29Z CVE-2026-34159 https://github.com/casp3r0x0/CVE-2026-34159 0 Click RCE exploit for CVE-2026-34159 Lama.cpp RPC server

2025

star updated_at name url des
2450 2026-05-28T06:54:42Z react2shell-scanner https://github.com/assetnote/react2shell-scanner High Fidelity Detection Mechanism for RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)
1413 2026-05-29T21:15:32Z CVE-2025-55182 https://github.com/msanft/CVE-2025-55182 Explanation and full RCE PoC for CVE-2025-55182
797 2026-05-27T08:54:26Z CVE-2025-55182-research https://github.com/ejpir/CVE-2025-55182-research CVE-2025-55182 POC
492 2026-05-12T05:06:58Z CVE-2018-20250 https://github.com/WyAtu/CVE-2018-20250 exp for https://research.checkpoint.com/extracting-code-execution-from-winrar
702 2026-05-25T19:45:13Z CVE-2025-33073 https://github.com/mverschu/CVE-2025-33073 PoC Exploit for the NTLM reflection SMB flaw.
768 2026-05-29T19:07:16Z BYOVD https://github.com/BlackSnufkin/BYOVD BYOVD research use cases featuring vulnerable driver discovery and reverse engineering methodology. (CVE-2025-52915, CVE-2025-1055, CVE-2026-3609).
249 2026-05-18T14:03:20Z IngressNightmare-PoC https://github.com/hakaioffsec/IngressNightmare-PoC This is a PoC code to exploit the IngressNightmare vulnerabilities (CVE-2025-1097, CVE-2025-1098, CVE-2025-24514, and CVE-2025-1974).
528 2026-05-15T08:19:04Z CVE-2025-32463_chwoot https://github.com/pr0v3rbs/CVE-2025-32463_chwoot Escalation of Privilege to the root through sudo binary with chroot option. CVE-2025-32463
338 2026-05-26T22:55:58Z redis_exploit https://github.com/raminfp/redis_exploit CVE-2025-49844 (RediShell)
463 2026-05-29T18:48:35Z CVE-2025-32463 https://github.com/kh4sh3i/CVE-2025-32463 Local Privilege Escalation to Root via Sudo chroot in Linux
270 2026-05-17T06:53:12Z CVE-2025-48799 https://github.com/Wh04m1001/CVE-2025-48799
312 2026-05-24T04:01:21Z CVE-2025-53770-Exploit https://github.com/soltanali0/CVE-2025-53770-Exploit SharePoint WebPart Injection Exploit Tool
312 2026-05-22T12:17:13Z CVE-2025-55182 https://github.com/emredavut/CVE-2025-55182 RSC/Next.js RCE Vulnerability Detector & PoC Chrome Extension – CVE-2025-55182 & CVE-2025-66478
138 2026-05-29T09:17:15Z Nextjs_RCE_Exploit_Tool https://github.com/pyroxenites/Nextjs_RCE_Exploit_Tool Exploit for CVE-2025-55182 & CVE-2025-66478
1047 2026-05-29T03:24:04Z React2Shell-CVE-2025-55182-original-poc https://github.com/lachlan2k/React2Shell-CVE-2025-55182-original-poc Original Proof-of-Concepts for React2Shell CVE-2025-55182
162 2026-05-27T10:46:15Z AirBorne-PoC https://github.com/ekomsSavior/AirBorne-PoC poc for CVE-2025-24252 & CVE-2025-24132
402 2026-05-13T16:39:32Z CVE-2025-24071_PoC https://github.com/0x6rss/CVE-2025-24071_PoC CVE-2025-24071: NTLM Hash Leak via RAR/ZIP Extraction and .library-ms File
198 2026-03-30T06:27:36Z CVE-2025-21298 https://github.com/ynwarcs/CVE-2025-21298 Proof of concept & details for CVE-2025-21298
213 2026-05-25T16:26:46Z CVE-2025-32023 https://github.com/leesh3288/CVE-2025-32023 PoC & Exploit for CVE-2025-32023 / PlaidCTF 2025 "Zerodeo"
198 2026-05-07T15:00:22Z CVE-2025-30208-EXP https://github.com/ThumpBo/CVE-2025-30208-EXP CVE-2025-30208-EXP
198 2026-05-21T22:52:13Z iOS-Attack-Chain-CVE-2025-31200-CVE-2025-31201 https://github.com/JGoyd/iOS-Attack-Chain-CVE-2025-31200-CVE-2025-31201 CVE-2025-31200 is a zero-day, zero-click RCE in iOS CoreAudio’s AudioConverterService, triggered by a malicious audio file via iMessage/SMS. Exploitation bypassed Blastdoor, enabled kernel escalation (CVE-2025-31201), and allowed token theft until patched in iOS 18.4.1 (Apr 16, 2025).
425 2026-05-25T15:08:52Z Next.js-RSC-RCE-Scanner-CVE-2025-66478 https://github.com/Malayke/Next.js-RSC-RCE-Scanner-CVE-2025-66478 A command-line scanner for batch detection of Next.js application versions and determining if they are affected by CVE-2025-66478 vulnerability.
387 2026-05-29T03:02:56Z ColorOS-CVE-2025-10184 https://github.com/yuuouu/ColorOS-CVE-2025-10184 ColorOS短信漏洞,以及用户自救方案
190 2026-03-25T19:46:42Z RSC-Detect-CVE-2025-55182 https://github.com/alptexans/RSC-Detect-CVE-2025-55182 RSC Detect CVE 2025 55182
276 2026-05-24T21:53:38Z CVE-2025-55182-advanced-scanner- https://github.com/zack0x01/CVE-2025-55182-advanced-scanner-
150 2026-04-24T05:23:17Z CVE-2025-11001 https://github.com/pacbypass/CVE-2025-11001 Exploit for CVE-2025-11001 or CVE-2025-11002
194 2026-05-26T08:32:50Z POC-CVE-2025-24813 https://github.com/absholi7ly/POC-CVE-2025-24813 his repository contains an automated Proof of Concept (PoC) script for exploiting CVE-2025-24813, a Remote Code Execution (RCE) vulnerability in Apache Tomcat. The vulnerability allows an attacker to upload a malicious serialized payload to the server, leading to arbitrary code execution via deserialization when specific conditions are met.
90 2025-10-31T02:13:00Z IngressNightmare-POCs https://github.com/sandumjacob/IngressNightmare-POCs CVE-2025-1974
233 2026-04-30T07:10:37Z CVE-2025-21333-POC https://github.com/MrAle98/CVE-2025-21333-POC POC exploit for CVE-2025-21333 heap-based buffer overflow. It leverages WNF state data and I/O ring IOP_MC_BUFFER_ENTRY
355 2026-05-15T08:01:03Z o3_finds_cve-2025-37899 https://github.com/SeanHeelan/o3_finds_cve-2025-37899 Artefacts for blog post on finding CVE-2025-37899 with o3

2024

star updated_at name url des
2447 2026-05-29T06:47:38Z CVE-2024-1086 https://github.com/Notselwyn/CVE-2024-1086 Universal local privilege escalation Proof-of-Concept exploit for CVE-2024-1086, working on most Linux kernels between v5.14 and v6.6, including Debian, Ubuntu, and KernelCTF. The success rate is 99.4% in KernelCTF images.
696 2026-05-26T08:51:44Z CVE-2024-38063 https://github.com/ynwarcs/CVE-2024-38063 poc for CVE-2024-38063 (RCE in tcpip.sys)
494 2026-05-22T06:07:37Z cve-2024-6387-poc https://github.com/zgzhang/cve-2024-6387-poc a signal handler race condition in OpenSSH's server (sshd)
519 2026-05-05T12:41:18Z CVE-2024-49113 https://github.com/SafeBreach-Labs/CVE-2024-49113 LdapNightmare is a PoC tool that tests a vulnerable Windows Server against CVE-2024-49113
532 2026-05-20T23:12:04Z git_rce https://github.com/amalmurali47/git_rce Exploit PoC for CVE-2024-32002
524 2026-05-29T11:44:53Z CVE-2024-6387_Check https://github.com/xaitax/CVE-2024-6387_Check CVE-2024-6387_Check is a lightweight, efficient tool designed to identify servers running vulnerable versions of OpenSSH
226 2026-05-21T10:10:16Z CVE-2024-38077 https://github.com/qi4L/CVE-2024-38077 RDL的堆溢出导致的RCE
382 2026-04-10T03:38:38Z cve-2024-6387-poc https://github.com/acrono/cve-2024-6387-poc 32-bit PoC for CVE-2024-6387 — mirror of the original 7etsuo/cve-2024-6387-poc
332 2026-05-23T10:54:47Z CVE-2024-0044 https://github.com/0xbinder/CVE-2024-0044 CVE-2024-0044: a "run-as any app" high-severity vulnerability affecting Android versions 12 and 13
316 2026-05-17T02:27:30Z CVE-2024-4577 https://github.com/watchtowrlabs/CVE-2024-4577 PHP CGI Argument Injection (CVE-2024-4577) Remote Code Execution PoC
320 2026-05-20T12:28:16Z CVE-2024-21338 https://github.com/hakaioffsec/CVE-2024-21338 Local Privilege Escalation from Admin to Kernel vulnerability on Windows 10 and Windows 11 operating systems with HVCI enabled.
290 2026-05-21T10:14:12Z CVE-2024-30088 https://github.com/tykawaii98/CVE-2024-30088
253 2026-05-29T12:41:24Z CVE-2024-21413 https://github.com/CMNatic/CVE-2024-21413 CVE-2024-21413 PoC for THM Lab
3558 2026-05-28T03:07:54Z xzbot https://github.com/amlweems/xzbot notes, honeypot, and exploit demo for the xz backdoor (CVE-2024-3094)
204 2026-05-09T02:39:36Z CVE-2024-23897 https://github.com/h4x0r-dz/CVE-2024-23897 CVE-2024-23897
133 2026-05-22T13:53:15Z apache-vulnerability-testing https://github.com/mrmtwoj/apache-vulnerability-testing Apache HTTP Server Vulnerability Testing Tool
766 2026-05-11T09:34:05Z CVE-2024-21413-Microsoft-Outlook-Remote-Code-Execution-Vulnerability https://github.com/xaitax/CVE-2024-21413-Microsoft-Outlook-Remote-Code-Execution-Vulnerability Microsoft-Outlook-Remote-Code-Execution-Vulnerability
269 2026-05-20T16:20:52Z CVE-2024-49138-POC https://github.com/MrAle98/CVE-2024-49138-POC POC exploit for CVE-2024-49138
201 2026-05-22T05:56:24Z CVE-2024-4367-PoC https://github.com/LOURC0D3/CVE-2024-4367-PoC CVE-2024-4367 & CVE-2024-34342 Proof of Concept
9 2026-03-12T22:58:06Z CVE-2024-38077-POC https://github.com/SecStarBot/CVE-2024-38077-POC
179 2026-05-22T06:08:17Z CVE-2024-6387 https://github.com/Karmakstylez/CVE-2024-6387 Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (CVE-2024-6387)
238 2026-05-18T14:02:59Z CVE_2024_30078_POC_WIFI https://github.com/blkph0x/CVE_2024_30078_POC_WIFI basic concept for the latest windows wifi driver CVE
215 2026-05-13T19:50:08Z CVE-2024-21111 https://github.com/mansk1es/CVE-2024-21111 Oracle VirtualBox Elevation of Privilege (Local Privilege Escalation) Vulnerability
180 2026-04-13T09:05:26Z CVE-2024-25600 https://github.com/Chocapikk/CVE-2024-25600 Unauthenticated Remote Code Execution – Bricks <= 1.9.6
136 2026-01-12T15:22:25Z CVE-2024-7479_CVE-2024-7481 https://github.com/PeterGabaldon/CVE-2024-7479_CVE-2024-7481 TeamViewer User to Kernel Elevation of Privilege PoC. CVE-2024-7479 and CVE-2024-7481. ZDI-24-1289 and ZDI-24-1290. TV-2024-1006.
146 2026-04-30T10:00:22Z CVE-2024-38200 https://github.com/passtheticket/CVE-2024-38200 CVE-2024-38200 & CVE-2024-43609 - Microsoft Office NTLMv2 Disclosure Vulnerability
81 2026-02-10T18:53:01Z CVE-2024-30078- https://github.com/lvyitian/CVE-2024-30078- CVE-2024-30078 Detection and Command Execution Script
86 2026-05-21T10:11:28Z CVE-2024-40725-CVE-2024-40898 https://github.com/TAM-K592/CVE-2024-40725-CVE-2024-40898 CVE-2024-40725 and CVE-2024-40898, affecting Apache HTTP Server versions 2.4.0 through 2.4.61. These flaws pose significant risks to web servers worldwide, potentially leading to source code disclosure and server-side request forgery (SSRF) attacks.
157 2026-02-24T08:14:52Z CVE-2024-21413 https://github.com/duy-31/CVE-2024-21413 Microsoft Outlook Information Disclosure Vulnerability (leak password hash) - Expect Script POC
125 2026-03-30T15:21:23Z CVE-2024-30051 https://github.com/fortra/CVE-2024-30051

2023

star updated_at name url des
422 2026-05-18T14:02:15Z qq-tim-elevation https://github.com/vi3t1/qq-tim-elevation CVE-2023-34312
1487 2026-05-26T08:42:25Z cvelist https://github.com/CVEProject/cvelist Pilot program for CVE submission through GitHub. CVE Record Submission via Pilot PRs ending 6/30/2023
786 2026-05-23T10:54:30Z CVE-2023-38831-winrar-exploit https://github.com/b1tg/CVE-2023-38831-winrar-exploit CVE-2023-38831 winrar exploit generator
506 2026-05-29T07:29:46Z Windows_LPE_AFD_CVE-2023-21768 https://github.com/chompie1337/Windows_LPE_AFD_CVE-2023-21768 LPE exploit for CVE-2023-21768
375 2026-05-29T06:55:17Z CVE-2023-32233 https://github.com/Liuk3r/CVE-2023-32233 CVE-2023-32233: Linux内核中的安全漏洞
419 2026-05-23T07:50:02Z CVE-2023-0386 https://github.com/xkaneiki/CVE-2023-0386 CVE-2023-0386在ubuntu22.04上的提权
115 2026-05-27T11:48:54Z CVE-2023-21839 https://github.com/ASkyeye/CVE-2023-21839 Weblogic CVE-2023-21839 RCE (无需Java依赖一键RCE)
392 2026-05-18T14:02:34Z CVE-2023-4911 https://github.com/leesh3288/CVE-2023-4911 PoC for CVE-2023-4911
323 2026-05-27T18:08:41Z CVE-2023-21752 https://github.com/Wh04m1001/CVE-2023-21752
651 2026-05-20T23:26:50Z keepass-password-dumper https://github.com/vdohney/keepass-password-dumper Original PoC for CVE-2023-32784
283 2026-05-28T17:55:26Z CVE-2023-21608 https://github.com/hacksysteam/CVE-2023-21608 Adobe Acrobat Reader - CVE-2023-21608 - Remote Code Execution Exploit
317 2026-05-21T08:20:22Z CVE-2023-4863 https://github.com/mistymntncop/CVE-2023-4863
243 2026-05-28T08:03:05Z CVE-2023-36874 https://github.com/Wh04m1001/CVE-2023-36874
245 2026-05-24T00:19:09Z CVE-2023-44487 https://github.com/bcdannyboy/CVE-2023-44487 Basic vulnerability scanning to see if web servers may be vulnerable to CVE-2023-44487
246 2026-04-25T19:14:41Z CVE-2023-7028 https://github.com/Vozec/CVE-2023-7028 This repository presents a proof-of-concept of CVE-2023-7028
167 2026-05-20T11:31:47Z CVE-2023-36745 https://github.com/N1k0la-T/CVE-2023-36745
228 2026-05-12T01:21:45Z CVE-2023-3519 https://github.com/BishopFox/CVE-2023-3519 RCE exploit for CVE-2023-3519
345 2026-05-13T19:49:53Z CVE-2023-23397-POC-Powershell https://github.com/api0cradle/CVE-2023-23397-POC-Powershell
140 2026-02-16T22:04:04Z CVE-2023-34362 https://github.com/horizon3ai/CVE-2023-34362 MOVEit CVE-2023-34362
230 2026-05-20T11:31:45Z CVE-2023-20887 https://github.com/sinsinology/CVE-2023-20887 VMWare vRealize Network Insight Pre-Authenticated RCE (CVE-2023-20887)
181 2026-05-15T11:51:42Z CVE-2023-28252 https://github.com/fortra/CVE-2023-28252
134 2026-04-24T09:51:26Z CVE-2023-2640-CVE-2023-32629 https://github.com/g1vi/CVE-2023-2640-CVE-2023-32629 GameOver(lay) Ubuntu Privilege Escalation
286 2026-05-09T22:26:57Z CVE-2023-25690-POC https://github.com/dhmosfunk/CVE-2023-25690-POC CVE 2023 25690 Proof of concept - mod_proxy vulnerable configuration on Apache HTTP Server versions 2.4.0 - 2.4.55 leads to HTTP Request Smuggling vulnerability.
208 2026-05-18T02:43:59Z CVE-2023-46747-RCE https://github.com/W01fh4cker/CVE-2023-46747-RCE exploit for f5-big-ip RCE cve-2023-46747
238 2026-04-30T02:19:31Z Weblogic-CVE-2023-21839 https://github.com/DXask88MA/Weblogic-CVE-2023-21839
154 2026-05-22T01:05:23Z cve-2023-29360 https://github.com/Nero22k/cve-2023-29360 Exploit for CVE-2023-29360 targeting MSKSSRV.SYS driver
238 2026-05-24T12:19:38Z CVE-2023-29357 https://github.com/Chocapikk/CVE-2023-29357 Microsoft SharePoint Server Elevation of Privilege Vulnerability
170 2026-05-26T08:42:56Z CVE-2023-25157 https://github.com/win3zz/CVE-2023-25157 CVE-2023-25157 - GeoServer SQL Injection - PoC
166 2026-05-13T19:50:02Z Windows_MSKSSRV_LPE_CVE-2023-36802 https://github.com/chompie1337/Windows_MSKSSRV_LPE_CVE-2023-36802 LPE exploit for CVE-2023-36802
159 2026-04-03T13:37:27Z CVE-2023-23397_EXPLOIT_0DAY https://github.com/sqrtZeroKnowledge/CVE-2023-23397_EXPLOIT_0DAY Exploit for the CVE-2023-23397

2022

star updated_at name url des
436 2026-05-23T10:53:09Z CVE-2022-25636 https://github.com/Bonfee/CVE-2022-25636 CVE-2022-25636
462 2026-05-23T10:52:59Z CVE-2022-21882 https://github.com/KaLendsi/CVE-2022-21882 win32k LPE
1127 2026-05-25T14:10:22Z CVE-2022-0847-DirtyPipe-Exploit https://github.com/Arinerron/CVE-2022-0847-DirtyPipe-Exploit A root exploit for CVE-2022-0847 (Dirty Pipe)
373 2026-05-23T10:52:57Z CVE-2022-0185 https://github.com/Crusaders-of-Rust/CVE-2022-0185 CVE-2022-0185
672 2026-05-13T19:49:30Z CVE-2022-29072 https://github.com/kagancapar/CVE-2022-29072 7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the Help>Contents area.
500 2026-05-13T19:49:27Z CVE-2022-0995 https://github.com/Bonfee/CVE-2022-0995 CVE-2022-0995 exploit
577 2026-05-23T10:53:29Z CVE-2022-23222 https://github.com/tr3ee/CVE-2022-23222 CVE-2022-23222: Linux Kernel eBPF Local Privilege Escalation
223 2026-05-13T19:49:24Z Spring-Cloud-Gateway-CVE-2022-22947 https://github.com/lucksec/Spring-Cloud-Gateway-CVE-2022-22947 CVE-2022-22947
527 2026-04-05T11:55:14Z OpenSSL-2022 https://github.com/NCSC-NL/OpenSSL-2022 Operational information regarding CVE-2022-3602 and CVE-2022-3786, two vulnerabilities in OpenSSL 3
362 2026-05-13T19:49:18Z CVE-2022-21907 https://github.com/ZZ-SOCMAP/CVE-2022-21907 HTTP Protocol Stack Remote Code Execution Vulnerability CVE-2022-21907
376 2026-05-23T10:53:19Z CVE-2022-29464 https://github.com/hakivvi/CVE-2022-29464 WSO2 RCE (CVE-2022-29464) exploit and writeup.
720 2026-05-20T07:08:03Z CVE-2022-0847-DirtyPipe-Exploits https://github.com/AlexisAhmed/CVE-2022-0847-DirtyPipe-Exploits A collection of exploits and documentation that can be used to exploit the Linux Dirty Pipe vulnerability.
354 2026-05-18T02:43:57Z CVE-2022-40684 https://github.com/horizon3ai/CVE-2022-40684 A proof of concept exploit for CVE-2022-40684 affecting Fortinet FortiOS, FortiProxy, and FortiSwitchManager
490 2026-05-27T12:24:17Z CVE-2022-2588 https://github.com/Markakd/CVE-2022-2588 exploit for CVE-2022-2588
387 2026-05-27T07:41:06Z CVE-2022-39197 https://github.com/its-arun/CVE-2022-39197 CobaltStrike <= 4.7.1 RCE
417 2026-05-05T19:02:01Z CVE-2022-33679 https://github.com/Bdenneu/CVE-2022-33679 One day based on https://googleprojectzero.blogspot.com/2022/10/rc4-is-still-considered-harmful.html
280 2026-05-13T19:49:25Z CVE-2022-0847 https://github.com/r1is/CVE-2022-0847 CVE-2022-0847-DirtyPipe-Exploit CVE-2022-0847 是存在于 Linux内核 5.8 及之后版本中的本地提权漏洞。攻击者通过利用此漏洞,可覆盖重写任意可读文件中的数据,从而可将普通权限的用户提升到特权 root。 CVE-2022-0847 的漏洞原理类似于 CVE-2016-5195 脏牛漏洞(Dirty Cow),但它更容易被利用。漏洞作者将此漏洞命名为“Dirty Pipe”
466 2026-05-13T19:49:27Z CVE-2022-27254 https://github.com/nonamecoder/CVE-2022-27254 PoC for vulnerability in Honda's Remote Keyless System(CVE-2022-27254)
350 2026-05-23T10:53:44Z CVE-2022-21894 https://github.com/Wack0/CVE-2022-21894 baton drop (CVE-2022-21894): Secure Boot Security Feature Bypass Vulnerability
324 2026-05-23T10:53:14Z Spring4Shell-POC https://github.com/reznok/Spring4Shell-POC Dockerized Spring4Shell (CVE-2022-22965) PoC application and exploit
318 2026-05-23T10:53:54Z CVE-2022-39197-patch https://github.com/burpheart/CVE-2022-39197-patch CVE-2022-39197 漏洞补丁. CVE-2022-39197 Vulnerability Patch.
303 2026-05-13T19:49:23Z CVE-2022-21971 https://github.com/0vercl0k/CVE-2022-21971 PoC for CVE-2022-21971 "Windows Runtime Remote Code Execution Vulnerability"
558 2026-05-28T09:21:28Z CVE-2022-38694_unlock_bootloader https://github.com/TomKing062/CVE-2022-38694_unlock_bootloader This is a one-time signature verification bypass. For persistent signature verification bypass, check https://github.com/TomKing062/CVE-2022-38691_38692
284 2026-05-23T10:53:36Z cve-2022-27255 https://github.com/infobyte/cve-2022-27255
265 2026-04-05T11:55:32Z CVE-2022-39952 https://github.com/horizon3ai/CVE-2022-39952 POC for CVE-2022-39952
116 2026-05-13T19:49:28Z CVE-2022-22963 https://github.com/dinosn/CVE-2022-22963 CVE-2022-22963 PoC
195 2026-05-23T10:53:01Z CVE-2022-21882 https://github.com/L4ys/CVE-2022-21882
234 2026-05-20T23:31:35Z CVE-2022-30075 https://github.com/aaronsvk/CVE-2022-30075 Tp-Link Archer AX50 Authenticated RCE (CVE-2022-30075)
220 2026-05-23T10:53:42Z CVE-2022-34918 https://github.com/veritas501/CVE-2022-34918 CVE-2022-34918 netfilter nf_tables 本地提权 POC
237 2026-05-23T10:53:02Z CVE-2022-20699 https://github.com/Audiobahn/CVE-2022-20699 Cisco Anyconnect VPN unauth RCE (rwx stack)

2021

star updated_at name url des
1400 2026-05-28T03:09:02Z noPac https://github.com/cube0x0/noPac CVE-2021-42287/CVE-2021-42278 Scanner & Exploiter.
1983 2026-05-23T10:52:03Z CVE-2021-1675 https://github.com/cube0x0/CVE-2021-1675 C# and Impacket implementation of PrintNightmare CVE-2021-1675/CVE-2021-34527
2042 2026-05-28T01:07:22Z CVE-2021-4034 https://github.com/berdav/CVE-2021-4034 CVE-2021-4034 1day
1737 2026-05-26T00:28:02Z CVE-2021-40444 https://github.com/lockedbyte/CVE-2021-40444 CVE-2021-40444 PoC
1150 2026-05-26T16:02:34Z CVE-2021-4034 https://github.com/arthepsy/CVE-2021-4034 PoC for PwnKit: Local Privilege Escalation Vulnerability in polkit’s pkexec (CVE-2021-4034)
1012 2026-05-13T19:48:22Z CVE-2021-3156 https://github.com/blasty/CVE-2021-3156
1098 2026-05-25T16:12:47Z CVE-2021-1675 https://github.com/calebstewart/CVE-2021-1675 Pure PowerShell implementation of CVE-2021-1675 Print Spooler Local Privilege Escalation (PrintNightmare)
501 2026-05-13T19:48:27Z CVE-2021-21972 https://github.com/NS-Sp4ce/CVE-2021-21972 CVE-2021-21972 Exploit
1057 2026-05-26T08:42:40Z sam-the-admin https://github.com/safebuffer/sam-the-admin Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user
799 2026-05-29T01:27:02Z CVE-2021-3156 https://github.com/worawit/CVE-2021-3156 Sudo Baron Samedit Exploit
822 2026-05-23T10:52:25Z CVE-2021-40444 https://github.com/klezVirus/CVE-2021-40444 CVE-2021-40444 - Fully Weaponized Microsoft Office Word RCE Exploit
423 2026-05-27T07:45:27Z CVE-2021-1732-Exploit https://github.com/KaLendsi/CVE-2021-1732-Exploit CVE-2021-1732 Exploit
827 2026-05-13T19:48:40Z CVE-2021-31166 https://github.com/0vercl0k/CVE-2021-31166 Proof of concept for CVE-2021-31166, a remote HTTP.sys use-after-free triggered remotely.
1008 2026-05-29T20:12:08Z noPac https://github.com/Ridter/noPac Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user
861 2026-05-20T14:03:13Z CVE-2021-44228-Scanner https://github.com/logpresso/CVE-2021-44228-Scanner Vulnerability scanner and mitigation patch for Log4j2 CVE-2021-44228
1849 2026-05-26T22:38:04Z log4j-shell-poc https://github.com/kozmer/log4j-shell-poc A Proof-Of-Concept for the CVE-2021-44228 vulnerability.
444 2026-05-28T20:21:19Z CVE-2021-3493 https://github.com/briskets/CVE-2021-3493 Ubuntu OverlayFS Local Privesc
1144 2026-05-08T15:07:30Z log4shell-vulnerable-app https://github.com/christophetd/log4shell-vulnerable-app Spring Boot web application vulnerable to Log4Shell (CVE-2021-44228).
324 2026-05-23T10:52:04Z CVE-2021-1675-LPE https://github.com/hlldz/CVE-2021-1675-LPE Local Privilege Escalation Edition for CVE-2021-1675/CVE-2021-34527
185 2026-05-23T10:51:42Z exprolog https://github.com/herwonowr/exprolog ProxyLogon Full Exploit Chain PoC (CVE-2021–26855, CVE-2021–26857, CVE-2021–26858, CVE-2021–27065)
439 2026-04-13T11:59:57Z log4j-finder https://github.com/fox-it/log4j-finder Find vulnerable Log4j2 versions on disk and also inside Java Archive Files (Log4Shell CVE-2021-44228, CVE-2021-45046, CVE-2021-45105)
431 2026-05-13T19:48:22Z CVE-2021-3156 https://github.com/stong/CVE-2021-3156 PoC for CVE-2021-3156 (sudo heap overflow)
177 2026-05-04T18:18:28Z ProxyVulns https://github.com/hosch3n/ProxyVulns [ProxyLogon] CVE-2021-26855 & CVE-2021-27065 Fixed RawIdentity Bug Exploit. [ProxyOracle] CVE-2021-31195 & CVE-2021-31196 Exploit Chains. [ProxyShell] CVE-2021-34473 & CVE-2021-34523 & CVE-2021-31207 Exploit Chains.
286 2026-05-21T07:56:17Z CVE-2021-22205 https://github.com/Al1ex/CVE-2021-22205 CVE-2021-22205& GitLab CE/EE RCE
3431 2026-05-23T14:00:04Z log4j-scan https://github.com/fullhunt/log4j-scan A fully automated, accurate, and extensive scanner for finding log4j RCE CVE-2021-44228
270 2026-05-26T08:46:36Z CVE-2021-21972 https://github.com/horizon3ai/CVE-2021-21972 Proof of Concept Exploit for vCenter CVE-2021-21972
316 2026-05-25T05:02:33Z CVE-2021-34527 https://github.com/JohnHammond/CVE-2021-34527
292 2026-05-23T10:52:36Z CVE-2021-36260 https://github.com/Aiminsun/CVE-2021-36260 command injection vulnerability in the web server of some Hikvision product. Due to the insufficient input validation, attacker can exploit the vulnerability to launch a command injection attack by sending some messages with malicious commands.
147 2026-05-23T10:52:31Z CVE-2021-41773_CVE-2021-42013 https://github.com/inbug-team/CVE-2021-41773_CVE-2021-42013 CVE-2021-41773 CVE-2021-42013漏洞批量检测工具
121 2026-04-03T19:11:22Z proxyshell https://github.com/horizon3ai/proxyshell Proof of Concept for CVE-2021-34473, CVE-2021-34523, and CVE-2021-31207

2020

2020

2020

2020

Donation

Wechat Pay AliPay Paypal BTC Pay BCH Pay
paypal miracletalent@gmail.com

About

TOP All bugbounty pentesting CVE-2023- POC Exp RCE example payload Things

Topics

Resources

Stars

Watchers

Forks

Sponsor this project

Packages

 
 
 

Contributors

Languages