Proof-of-Concept files for vulnerabilities found by Codean Labs
☆22Jun 16, 2026Updated last month
Alternatives and similar repositories for pocs
Users that are interested in pocs are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Publishing advisories for CVEs found by POST Cyberforce☆13Jan 7, 2025Updated last year
- Proof of Concept for CVE-2026-23745: Arbitrary File Overwrite vulnerability in node-tar (versions < 7.5.3).☆22Jan 17, 2026Updated 6 months ago
- Cleo Unrestricted file upload and download PoC (CVE-2024-50623)☆25Dec 11, 2024Updated last year
- ☆28Mar 14, 2026Updated 4 months ago
- ☠️ Code for the Hackfest Workshop☆10Oct 12, 2024Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- CVE-2024-40725 and CVE-2024-40898, affecting Apache HTTP Server versions 2.4.0 through 2.4.61. These flaws pose significant risks to web …☆86Jul 19, 2024Updated 2 years ago
- ☆17Jan 6, 2025Updated last year
- ☆16Jun 14, 2023Updated 3 years ago
- CVE-2024-40431+CVE-2022-25479 chain for EOP(DATA ONLY ATTACK)☆49Oct 16, 2024Updated last year
- Default locations for files on various Linux distros.☆10May 12, 2021Updated 5 years ago
- EncryptInterceptor fail-open bypass in Apache Tomcat Tribes clustering leading to unauthenticated RCE via Java deserialization.☆69May 11, 2026Updated 2 months ago
- Exploit code for CVE-2023-42914 / pwn2own Vancouver 2023☆16Nov 22, 2024Updated last year
- Arbitrary File Delete in Windows Installer before 10.0.19045.2193☆30Nov 6, 2022Updated 3 years ago
- ☆22Jul 15, 2023Updated 3 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- This is an advanced ASMI bypass that is currently undetected by Windows Defender and all the Antivirus software's on virustotal.☆27Jun 10, 2025Updated last year
- Shared library implementations that transform the containing process into a shell when loaded (useful for privilege escalation, argument …☆27Feb 15, 2024Updated 2 years ago
- CVE-2023-21823 PoC☆14Apr 20, 2023Updated 3 years ago
- POC-CVE-2026-1357☆16Feb 11, 2026Updated 5 months ago
- ☆94Aug 26, 2025Updated 11 months ago
- Detection for CVE-2025-68613☆28Dec 22, 2025Updated 7 months ago
- Progress Telerik Report Server pre-authenticated RCE chain (CVE-2024-4358/CVE-2024-1800)☆79Jun 6, 2024Updated 2 years ago
- This is a proof of concept for CVE-2024-20356, a Command Injection vulnerability in Cisco's CIMC.☆55Apr 18, 2024Updated 2 years ago
- Fake MySQL Server that attempts to steal files from clients.☆24Aug 5, 2020Updated 6 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- UAC bypass abusing WinSxS in "wusa.exe". Referred from and similar to: https://github.com/L3cr0f/DccwBypassUAC , Kudos to L3cr0f and Fuz…☆31Jun 30, 2021Updated 5 years ago
- CVE-2023-6063 (WP Fastest Cache < 1.2.2 - UnAuth SQL Injection)☆29Nov 15, 2023Updated 2 years ago
- Proof of Concept for Path Traversal in Apache Struts ("CVE-2023-50164")☆57Dec 18, 2023Updated 2 years ago
- ☆12Sep 15, 2024Updated last year
- POCs for CVE-2025-50154 and CVE-2025-59214, zero day vulnerabilities on windows file explorer disclosing NTLMv2-SSP without user interact…☆55Oct 16, 2025Updated 9 months ago
- ☆28Feb 6, 2024Updated 2 years ago
- This PoC demonstrates a race condition in the Windows kernel leading to a double-free vulnerability, allowing local privilege escalation …☆19Nov 18, 2025Updated 8 months ago
- CVE-2024-0012 PAN-OS: Authentication Bypass in the Management Web Interface (PAN-SA-2024-0015) RCE POC☆21Nov 19, 2024Updated last year
- ☆19Jan 8, 2026Updated 7 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Compiled executables for @splinter_code and @decoder_it's TcbElevation☆29Apr 19, 2024Updated 2 years ago
- ☆11Dec 22, 2023Updated 2 years ago
- birthday wish to hack font camera☆14Oct 18, 2025Updated 9 months ago
- Fortinet FortiClient EMS SQL Injection☆54Mar 20, 2024Updated 2 years ago
- A fast, safe and headless automatic exploit thrower for Attack/Defense Capture the Flag (CTF) competitions.☆21Aug 13, 2025Updated 11 months ago
- ☆81Apr 9, 2024Updated 2 years ago
- NodeJS File Write to RCE on a read-only filesystem using a ROP chain in libuv☆44Oct 13, 2024Updated last year