{
  "generated": "2026-09-04T01:50:44.375718+00:00",
  "total_cves": 171094,
  "with_pocs": 82563,
  "items": [
    {
      "year": 2026,
      "stars": 6,
      "name": "CVE-2026-19490",
      "url": "https://github.com/TarPeg007/CVE-2026-19490",
      "desc": "NetScaler ADC/Gateway SAML unsigned-assertion bypass via HTTP-Redirect binding (CTX696939) - root cause analysis + PoC",
      "pushed": "2026-09-02T15:42:44Z",
      "created": "2026-09-02T15:43:53Z",
      "cve": "CVE-2026-19490",
      "kev": false
    },
    {
      "year": 2026,
      "stars": 3,
      "name": "CVE-2026-78904-Digital-Dinar-Drain",
      "url": "https://github.com/vxssroott/CVE-2026-78904-Digital-Dinar-Drain",
      "desc": "CBDC Infrastructure Vulnerability Research. CVE-2026-78904: Infinite mint and redemption bypass in central bank digital currency APIs.",
      "pushed": "2026-08-30T22:04:08Z",
      "created": "2026-08-30T21:57:18Z",
      "cve": "CVE-2026-78904",
      "kev": false
    },
    {
      "year": 2026,
      "stars": 15,
      "name": "givewp-cve-2026-82222-rce-lab",
      "url": "https://github.com/dinosn/givewp-cve-2026-82222-rce-lab",
      "desc": "Authorized Docker lab and clean PoC for validating CVE-2026-82222 RCE in GiveWP 4.16.5.1 and the 4.16.7.2 fix.",
      "pushed": "2026-08-30T05:18:46Z",
      "created": "2026-08-30T05:15:27Z",
      "cve": "CVE-2026-82222",
      "kev": false
    },
    {
      "year": 2026,
      "stars": 15,
      "name": "CVE-2026-62735",
      "url": "https://github.com/nhh9905/CVE-2026-62735",
      "desc": "CVE 1-day in http.sys",
      "pushed": "2026-08-27T09:13:10Z",
      "created": "2026-08-25T04:55:10Z",
      "cve": "CVE-2026-62735",
      "kev": false
    },
    {
      "year": 2026,
      "stars": 19,
      "name": "CVE-2026-72898",
      "url": "https://github.com/EQSTLab/CVE-2026-72898",
      "desc": "Metabase SQLi",
      "pushed": "2026-08-27T07:03:38Z",
      "created": "2026-08-27T06:51:58Z",
      "cve": "CVE-2026-72898",
      "kev": true
    },
    {
      "year": 2026,
      "stars": 4,
      "name": "CVE-2026-19478",
      "url": "https://github.com/EQSTLab/CVE-2026-19478",
      "desc": "GitLab Code injection",
      "pushed": "2026-08-27T06:35:52Z",
      "created": "2026-08-27T06:30:36Z",
      "cve": "CVE-2026-19478",
      "kev": false
    },
    {
      "year": 2026,
      "stars": 3,
      "name": "CVE-2026-21962",
      "url": "https://github.com/zeetee1235/CVE-2026-21962",
      "desc": "Vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware (component: Weblogic Server Proxy Plug-in for Apache HTTP Server, Weblogic Server Proxy Plug-in for IIS). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in. While the vulnerability is in Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in accessible data as well as unauthorized access to critical data or complete access to all Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in accessible data. Note: Affected version for Weblogic Server Proxy Plug-in for IIS is 12.2.1.4.0 only. CVSS 3.1 Base Score 10.0 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N).",
      "pushed": "2026-08-27T03:00:13Z",
      "created": "2026-08-27T02:59:01Z",
      "cve": "CVE-2026-21962",
      "kev": true
    },
    {
      "year": 2026,
      "stars": 4,
      "name": "CVE-2026-73570",
      "url": "https://github.com/gabrielunknown/CVE-2026-73570",
      "desc": "Zimbra SNMP Notification OS Command Injection - Unauthenticated RCE via SMTP exploit (Poc)",
      "pushed": "2026-08-26T03:33:12Z",
      "created": "2026-08-26T03:30:14Z",
      "cve": "CVE-2026-73570",
      "kev": true
    },
    {
      "year": 2026,
      "stars": 84,
      "name": "CVE-2026-75604-poc",
      "url": "https://github.com/rafabd1/CVE-2026-75604-poc",
      "desc": "CVE-2026-75604 Next.js Windows RCE poc",
      "pushed": "2026-08-26T02:23:55Z",
      "created": "2026-08-25T19:06:37Z",
      "cve": "CVE-2026-75604",
      "kev": false
    },
    {
      "year": 2026,
      "stars": 5,
      "name": "CVE-2026-73570",
      "url": "https://github.com/HORKimhab/CVE-2026-73570",
      "desc": "A remote code execution vulnerability exists in Zimbra Collaboration (ZCS) before 10.1.20 when the optional zimbra-snmp package is installed and SNMP notifications are enabled. Due to improper sanitization of untrusted input during SNMP notification processing, an unauthenticated attacker can send specially crafted SMTP requests that may result in execution of arbitrary operating system commands as the Zimbra user.",
      "pushed": "2026-08-25T19:39:26Z",
      "created": "2026-08-21T03:18:23Z",
      "cve": "CVE-2026-73570",
      "kev": true
    },
    {
      "year": 2026,
      "stars": 3,
      "name": "CVE-2026-32475-PoC",
      "url": "https://github.com/Boreas37/CVE-2026-32475-PoC",
      "desc": "PoC for CVE-2026-32475: Elementor Pro <=4.2.1 unauthenticated file upload to RCE. Stdlib-only Python.",
      "pushed": "2026-08-25T12:09:33Z",
      "created": "2026-08-25T01:20:49Z",
      "cve": "CVE-2026-32475",
      "kev": false
    },
    {
      "year": 2026,
      "stars": 13,
      "name": "Keycloak_CVE-2026-18963_PoC",
      "url": "https://github.com/prot0tw/Keycloak_CVE-2026-18963_PoC",
      "desc": "This repo is poc of cve-2026-18963. Please use it on legal products (lab, local,...).",
      "pushed": "2026-08-25T03:58:23Z",
      "created": "2026-08-25T02:28:04Z",
      "cve": "CVE-2026-18963",
      "kev": false
    },
    {
      "year": 2026,
      "stars": 19,
      "name": "CVE-2026-18963-keycloak",
      "url": "https://github.com/Red-Darkin/CVE-2026-18963-keycloak",
      "desc": "A flaw was found in the reset-credentials flow of the keycloak-services component, which is the core engine for identity and access management in Red Hat Build of Keycloak. The issue allows an unauthenticated attacker to force the password reset process for any user without needing to click the required email verification link. This can result in the attacker gaining full control over target user accounts by directly setting new credentials.",
      "pushed": "2026-08-24T23:44:49Z",
      "created": "2026-08-24T23:40:17Z",
      "cve": "CVE-2026-18963",
      "kev": false
    },
    {
      "year": 2026,
      "stars": 4,
      "name": "CVE-2026-20079",
      "url": "https://github.com/CyberAuth/CVE-2026-20079",
      "desc": "Python proof of concept for CVE-2026-20079 affecting Cisco Secure Firewall Management Center.",
      "pushed": "2026-08-24T16:58:50Z",
      "created": "2026-08-17T18:36:35Z",
      "cve": "CVE-2026-20079",
      "kev": false
    },
    {
      "year": 2026,
      "stars": 4,
      "name": "CVE-2026-65400",
      "url": "https://github.com/acheong08/CVE-2026-65400",
      "desc": "Apple MacOS Screen Sharing Arbitrary File read/write -> RCE",
      "pushed": "2026-08-22T08:56:04Z",
      "created": "2026-08-22T08:54:26Z",
      "cve": "CVE-2026-65400",
      "kev": true
    },
    {
      "year": 2026,
      "stars": 172,
      "name": "CVE-2026-62911",
      "url": "https://github.com/hypnguyen1209/CVE-2026-62911",
      "desc": "POC pre-auth RCE on Exchange",
      "pushed": "2026-08-22T04:49:54Z",
      "created": "2026-08-22T04:49:33Z",
      "cve": "CVE-2026-62911",
      "kev": false
    },
    {
      "year": 2026,
      "stars": 5,
      "name": "CVE-2026-65400-poc",
      "url": "https://github.com/panchocosil/CVE-2026-65400-poc",
      "desc": "Read-only PoC for CVE-2026-65400 - macOS Screen Sharing (screensharingd) pre-auth SRP bypass giving root file read. Patched in macOS 26.6.1 / 15.7.9 / 14.8.9.",
      "pushed": "2026-08-21T18:22:20Z",
      "created": "2026-08-21T18:22:37Z",
      "cve": "CVE-2026-65400",
      "kev": true
    },
    {
      "year": 2026,
      "stars": 7,
      "name": "CVE-2026-34910-PoC",
      "url": "https://github.com/Boreas37/CVE-2026-34910-PoC",
      "desc": "CVE-2026-34910/34909 - UniFi OS unauth RCE + file read via ..%2f auth bypass (CVSS 10.0, KEV, Mirai ITW)",
      "pushed": "2026-08-21T13:31:58Z",
      "created": "2026-08-09T16:58:00Z",
      "cve": "CVE-2026-34910",
      "kev": true
    },
    {
      "year": 2026,
      "stars": 53,
      "name": "CVE-2026-64638-PoC-XSS2Shell-",
      "url": "https://github.com/Boreas37/CVE-2026-64638-PoC-XSS2Shell-",
      "desc": "XSS2Shell (CVE-2026-64638) WordPress pre-auth XSS to RCE chain - PoC exploit + defensive audit tool + nuclei template",
      "pushed": "2026-08-21T13:31:56Z",
      "created": "2026-08-07T17:07:17Z",
      "cve": "CVE-2026-64638",
      "kev": false
    },
    {
      "year": 2026,
      "stars": 38,
      "name": "CVE-2026-18963-Exploit",
      "url": "https://github.com/Snizi/CVE-2026-18963-Exploit",
      "desc": "Exploit for KeyCloak CVE-2026-18963",
      "pushed": "2026-08-20T22:18:11Z",
      "created": "2026-08-20T22:01:11Z",
      "cve": "CVE-2026-18963",
      "kev": false
    },
    {
      "year": 2025,
      "stars": 6,
      "name": "vivo_iqoo_neo_9_root_research_on_CVE-2025-21479",
      "url": "https://github.com/linux-tools/vivo_iqoo_neo_9_root_research_on_CVE-2025-21479",
      "desc": "Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.",
      "pushed": "2026-08-27T07:13:42Z",
      "created": "2026-08-19T09:39:46Z",
      "cve": "CVE-2025-21479",
      "kev": true
    },
    {
      "year": 2025,
      "stars": 4,
      "name": "cve-2025-21479_iqooneo8",
      "url": "https://github.com/Qingizi7/cve-2025-21479_iqooneo8",
      "desc": "Local root exploit for CVE-2025-21479 (Adreno KGSL) on iQOO Neo8 (SM8475) - physical memory r/w, disables SELinux, spawns root shell",
      "pushed": "2026-08-20T01:33:10Z",
      "created": "2026-08-20T01:13:39Z",
      "cve": "CVE-2025-21479",
      "kev": true
    },
    {
      "year": 2025,
      "stars": 20,
      "name": "CVE-2025-7771",
      "url": "https://github.com/enessakircolak/CVE-2025-7771",
      "desc": "ThrottleStop.sys Arbitrary Physical Memory R/W",
      "pushed": "2026-08-10T23:15:22Z",
      "created": "2026-08-10T23:15:36Z",
      "cve": "CVE-2025-7771",
      "kev": false
    },
    {
      "year": 2025,
      "stars": 6,
      "name": "CVE-2025-8045",
      "url": "https://github.com/kuzeyardabulut/CVE-2025-8045",
      "desc": "Dirty Pagetable Exploit for CVE-2025-8045",
      "pushed": "2026-08-06T14:58:53Z",
      "created": "2026-08-06T13:52:33Z",
      "cve": "CVE-2025-8045",
      "kev": false
    },
    {
      "year": 2025,
      "stars": 7,
      "name": "SELinux-Permissive-Only-CVE-2025-21479",
      "url": "https://github.com/CamsShaft/SELinux-Permissive-Only-CVE-2025-21479",
      "desc": "This is an SELinux permissive version of the Cheese exploit also known as CVE-2025-21479 which affected the adreno kgsl on many devices including Samsung snapdragon devices",
      "pushed": "2026-08-02T06:48:32Z",
      "created": "2026-07-28T06:41:38Z",
      "cve": "CVE-2025-21479",
      "kev": true
    },
    {
      "year": 2025,
      "stars": 4,
      "name": "CVE-2025-32432",
      "url": "https://github.com/c0gnit00/CVE-2025-32432",
      "desc": "Exploit, POC for CVE-2025-32432, CraftCMS2Shell",
      "pushed": "2026-07-21T16:55:33Z",
      "created": "2026-07-21T16:52:22Z",
      "cve": "CVE-2025-32432",
      "kev": true
    },
    {
      "year": 2025,
      "stars": 4,
      "name": "CVE-2025-64512",
      "url": "https://github.com/matesz44/CVE-2025-64512",
      "desc": "CVE-2025-64512: pdfminer.six pickle deserialization rce; .pickle.gz + pdf generator w/ custom payloads",
      "pushed": "2026-07-19T11:00:00Z",
      "created": "2026-07-19T10:49:05Z",
      "cve": "CVE-2025-64512",
      "kev": false
    },
    {
      "year": 2025,
      "stars": 5,
      "name": "CVE-2025-8110-gogs-poc",
      "url": "https://github.com/Shirouuu/CVE-2025-8110-gogs-poc",
      "desc": "PoC for CVE-2025-8110 - Gogs arbitrary file write via symlink",
      "pushed": "2026-07-17T13:55:11Z",
      "created": "2026-07-17T13:46:16Z",
      "cve": "CVE-2025-8110",
      "kev": true
    },
    {
      "year": 2025,
      "stars": 7,
      "name": "CVE-2025-30065",
      "url": "https://github.com/h3st4k3r/CVE-2025-30065",
      "desc": "This PoC targets CVE-2025-30065, an RCE vulnerability in Apache Parquet via Avro schema deserialization. It abuses the getDefaultValue() mechanism to instantiate arbitrary record types during parsing, enabling code execution when untrusted data is processed without proper controls.",
      "pushed": "2026-07-08T08:01:25Z",
      "created": "2025-04-04T08:45:24Z",
      "cve": "CVE-2025-30065",
      "kev": false
    },
    {
      "year": 2025,
      "stars": 4,
      "name": "CVE-2025-69212-PoC",
      "url": "https://github.com/BridgerAlderson/CVE-2025-69212-PoC",
      "desc": "OpenSTAManager v2.9.8 and earlier versions contain a critical OS Command Injection vulnerability in the P7M (signed XML) file decoding function.",
      "pushed": "2026-07-02T20:41:12Z",
      "created": "2026-06-30T13:38:40Z",
      "cve": "CVE-2025-69212",
      "kev": false
    },
    {
      "year": 2025,
      "stars": 3,
      "name": "CVE-2025-57819",
      "url": "https://github.com/K3ysTr0K3R/CVE-2025-57819",
      "desc": "CVE-2025-57819 - FreePBX Unauthenticated Remote Code Execution (RCE)",
      "pushed": "2026-07-02T19:17:51Z",
      "created": "2026-07-02T19:07:36Z",
      "cve": "CVE-2025-57819",
      "kev": true
    },
    {
      "year": 2025,
      "stars": 4,
      "name": "CVE-2025-69212-PoC",
      "url": "https://github.com/tohib09/CVE-2025-69212-PoC",
      "desc": "OpenSTAManager is an open source management software for technical assistance and invoicing. In 2.9.8 and earlier, a critical OS Command Injection vulnerability exists in the P7M (signed XML) file decoding functionality. An authenticated attacker can upload a ZIP file containing a .p7m file with a malicious filename to execute arbitrary system commands on the server.",
      "pushed": "2026-06-27T23:56:25Z",
      "created": "2026-06-27T23:54:57Z",
      "cve": "CVE-2025-69212",
      "kev": false
    },
    {
      "year": 2025,
      "stars": 5,
      "name": "CVE-2025-8110",
      "url": "https://github.com/joaquinrrr/CVE-2025-8110",
      "desc": "PoC exploit for CVE-2025-8110",
      "pushed": "2026-06-25T16:53:11Z",
      "created": "2026-06-25T16:48:18Z",
      "cve": "CVE-2025-8110",
      "kev": true
    },
    {
      "year": 2025,
      "stars": 14,
      "name": "vulnerable-nextjs-14-CVE-2025-29927",
      "url": "https://github.com/lirantal/vulnerable-nextjs-14-CVE-2025-29927",
      "desc": "Next.js is a React framework for building full-stack web applications. Starting in version 1.11.4 and prior to versions 12.3.5, 13.5.9, 14.2.25, and 15.2.3, it is possible to bypass authorization checks within a Next.js application, if the authorization check occurs in middleware. If patching to a safe version is infeasible, it is recommend that you prevent external user requests which contain the x-middleware-subrequest header from reaching your Next.js application. This vulnerability is fixed in 12.3.5, 13.5.9, 14.2.25, and 15.2.3.",
      "pushed": "2026-06-12T09:41:28Z",
      "created": "2025-03-23T09:22:35Z",
      "cve": "CVE-2025-29927",
      "kev": false
    },
    {
      "year": 2025,
      "stars": 7,
      "name": "CVE-2025-57819-poc",
      "url": "https://github.com/b4sh2/CVE-2025-57819-poc",
      "desc": "CVE-2025-57819 -> rce",
      "pushed": "2026-06-06T20:21:04Z",
      "created": "2026-06-06T20:13:34Z",
      "cve": "CVE-2025-57819",
      "kev": true
    },
    {
      "year": 2024,
      "stars": 16,
      "name": "CVE-2024-56426",
      "url": "https://github.com/Creeeeger/CVE-2024-56426",
      "desc": "A PoC of the CVE-2024-56426 vulnerability.",
      "pushed": "2026-08-16T15:12:56Z",
      "created": "2026-04-07T12:02:52Z",
      "cve": "CVE-2024-56426",
      "kev": false
    },
    {
      "year": 2024,
      "stars": 3,
      "name": "CVE-2024-56426",
      "url": "https://github.com/xcracker000/CVE-2024-56426",
      "desc": "CVE-2024-56426 Exynos9830 Bootrom Exploit - SM-G985F",
      "pushed": "2026-08-15T06:21:41Z",
      "created": "2026-08-15T06:12:04Z",
      "cve": "CVE-2024-56426",
      "kev": false
    },
    {
      "year": 2024,
      "stars": 3,
      "name": "CVE-2024-36104-PoC",
      "url": "https://github.com/Groppoxx/CVE-2024-36104-PoC",
      "desc": "PoC for CVE-2024-36104 - unauthenticated Groovy RCE in Apache OFBiz (<18.12.14) via /%2e/%2e/ view path traversal to ProgramExport",
      "pushed": "2026-07-29T21:15:12Z",
      "created": "2026-07-29T19:59:36Z",
      "cve": "CVE-2024-36104",
      "kev": false
    },
    {
      "year": 2024,
      "stars": 3,
      "name": "CVE-2024-36991",
      "url": "https://github.com/0xFZin/CVE-2024-36991",
      "desc": "Exploit for CVE-2024-36991 , written by me, enumerates a handfull of things, not all, cause not needed.",
      "pushed": "2026-06-21T09:24:33Z",
      "created": "2025-07-06T03:50:13Z",
      "cve": "CVE-2024-36991",
      "kev": false
    },
    {
      "year": 2024,
      "stars": 7,
      "name": "CVE-2024-27983-nodejs-http2",
      "url": "https://github.com/lirantal/CVE-2024-27983-nodejs-http2",
      "desc": "CVE-2024-27983 this repository builds up a vulnerable HTTP2 Node.js server (`server-nossl.js`) based on CVE-2024-27983 which exploits a continuation flood vulnerability in HTTP2 servers.",
      "pushed": "2026-06-12T09:43:05Z",
      "created": "2024-04-14T11:34:52Z",
      "cve": "CVE-2024-27983",
      "kev": false
    },
    {
      "year": 2024,
      "stars": 4,
      "name": "CVE-2024-1065",
      "url": "https://github.com/kuzeyardabulut/CVE-2024-1065",
      "desc": "Page Cache Exploit for CVE-2024-1065",
      "pushed": "2026-06-06T14:00:55Z",
      "created": "2026-06-02T10:21:23Z",
      "cve": "CVE-2024-1065",
      "kev": false
    },
    {
      "year": 2023,
      "stars": 3,
      "name": "CVE-2023-52076-PoC",
      "url": "https://github.com/Groppoxx/CVE-2023-52076-PoC",
      "desc": "PoC exploit for CVE-2023-52076 - zip-slip path traversal in Atril/Xreader (MATE/Cinnamon) enabling arbitrary file write and RCE via crafted EPUB. Authorized security testing only.",
      "pushed": "2026-07-27T07:00:54Z",
      "created": "2026-07-27T06:51:21Z",
      "cve": "CVE-2023-52076",
      "kev": false
    },
    {
      "year": 2023,
      "stars": 5,
      "name": "CVE-2023-36003",
      "url": "https://github.com/johnnygreeme/CVE-2023-36003",
      "desc": "PoC for CVE-2023-36003: Windows Exploit Security Feature Bypass Vulnerability in Windows Defender.",
      "pushed": "2026-07-22T19:46:33Z",
      "created": "2026-07-22T19:43:34Z",
      "cve": "CVE-2023-36003",
      "kev": false
    },
    {
      "year": 2023,
      "stars": 3,
      "name": "cve-2023-4911-exploit-optimized",
      "url": "https://github.com/jarpex/cve-2023-4911-exploit-optimized",
      "desc": "Pure C exploit for CVE-2023-4911 (Looney Tunables) - x86_64 & aarch64 implementations. Multi-processing brute-forcing, dynamic calibration, integrated ELF parser.",
      "pushed": "2026-07-07T21:02:04Z",
      "created": "2026-06-29T21:05:09Z",
      "cve": "CVE-2023-4911",
      "kev": true
    },
    {
      "year": 2023,
      "stars": 15,
      "name": "CVE-2023-32315-EXPLOIT",
      "url": "https://github.com/K3ysTr0K3R/CVE-2023-32315-EXPLOIT",
      "desc": "A PoC exploit for CVE-2023-32315 - Openfire Authentication Bypass",
      "pushed": "2026-07-05T17:29:00Z",
      "created": "2023-12-15T16:30:51Z",
      "cve": "CVE-2023-32315",
      "kev": true
    },
    {
      "year": 2023,
      "stars": 6,
      "name": "CVE-2023-6019",
      "url": "https://github.com/joaquinrrr/CVE-2023-6019",
      "desc": "PoC exploit for CVE-2023-6019 - Remote Code Execution via unauthenticated Ray Dashboard Jobs API.",
      "pushed": "2026-06-19T19:09:34Z",
      "created": "2026-06-19T19:08:58Z",
      "cve": "CVE-2023-6019",
      "kev": false
    },
    {
      "year": 2022,
      "stars": 6,
      "name": "NimbusPWN-CVE-2022-29799-29800",
      "url": "https://github.com/joshuavanderpoll/NimbusPWN-CVE-2022-29799-29800",
      "desc": "NimbusPwn (CVE-2022-29799/29800) local privilege escalation PoC in C.",
      "pushed": "2026-06-17T20:06:02Z",
      "created": "2026-06-17T19:44:47Z",
      "cve": "CVE-2022-29799",
      "kev": false
    },
    {
      "year": 2026,
      "stars": 0,
      "name": "CVE-2026-31787",
      "url": "https://github.com/0xAtharv/CVE-2026-31787",
      "desc": "Linux kernel double free in Xen privcmd driver",
      "pushed": "2026-09-04T01:21:16Z",
      "created": "2026-09-04T01:08:31Z",
      "cve": "CVE-2026-31787",
      "kev": false,
      "landed": true
    },
    {
      "year": 2026,
      "stars": 51,
      "name": "CVE-2026-65343",
      "url": "https://github.com/ByteV0rtex/CVE-2026-65343",
      "desc": "CVE-2026-65343 PoC - AppleKeyStore OOB read → KASLR defeat (iOS 26.6 / 23G71)",
      "pushed": "2026-09-03T20:38:35Z",
      "created": "2026-09-02T20:12:10Z",
      "cve": "CVE-2026-65343",
      "kev": false,
      "landed": true
    },
    {
      "year": 2026,
      "stars": 0,
      "name": "CVE-2026-80428",
      "url": "https://github.com/Zipkoppie/CVE-2026-80428",
      "desc": "CVE-2026-80428 PoC",
      "pushed": "2026-09-03T13:39:57Z",
      "created": "2026-09-03T13:38:01Z",
      "cve": "CVE-2026-80428",
      "kev": false,
      "landed": true
    },
    {
      "year": 2026,
      "stars": 0,
      "name": "CVE-2026-78071",
      "url": "https://github.com/toanln-cov/CVE-2026-78071",
      "desc": "Stored XSS via Location Title in DPCalendar Free",
      "pushed": "2026-09-03T10:01:38Z",
      "created": "2026-09-03T10:01:02Z",
      "cve": "CVE-2026-78071",
      "kev": false,
      "landed": true
    },
    {
      "year": 2026,
      "stars": 2,
      "name": "CVE-2026-65349",
      "url": "https://github.com/ByteV0rtex/CVE-2026-65349",
      "desc": "CVE-2026-65349 PoC - getattrlist OOB write in vfs_attr_pack_internal (iOS 26.6 / 23G71)",
      "pushed": "2026-09-02T19:49:52Z",
      "created": "2026-09-02T20:12:31Z",
      "cve": "CVE-2026-65349",
      "kev": false,
      "landed": true
    },
    {
      "year": 2026,
      "stars": 3,
      "name": "CVE-2026-64788",
      "url": "https://github.com/ByteV0rtex/CVE-2026-64788",
      "desc": "CVE-2026-64788 PoC - IOGPUFamily Use-After-Free (iOS 26.6 / 23G71)",
      "pushed": "2026-09-02T19:49:24Z",
      "created": "2026-09-02T20:11:13Z",
      "cve": "CVE-2026-64788",
      "kev": false,
      "landed": true
    },
    {
      "year": 2025,
      "stars": 0,
      "name": "CVE-2025-6440",
      "url": "https://github.com/katranSefa/CVE-2025-6440",
      "desc": "The WooCommerce Designer Pro plugin for WordPress, used by the Pricom - Printing Company & Design Services WordPress theme, is vulnerable to arbitrary file uploads due to missing file type validation in the 'wcdp_save_canvas_design_ajax' function in all versions up to, and including, 1.9.26. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.",
      "pushed": "2026-09-02T14:46:39Z",
      "created": "2026-08-30T12:49:43Z",
      "cve": "CVE-2025-6440",
      "kev": false,
      "landed": true
    },
    {
      "year": 2025,
      "stars": 0,
      "name": "CVE-2025-29009",
      "url": "https://github.com/katranSefa/CVE-2025-29009",
      "desc": "Unrestricted Upload of File with Dangerous Type vulnerability in Webkul Medical Prescription Attachment Plugin for WooCommerce medical-prescription-attachment-plugin-for-woocommerce allows Upload a Web Shell to a Web Server.This issue affects Medical Prescription Attachment Plugin for WooCommerce: from n/a through <= 1.2.3.",
      "pushed": "2026-09-02T14:39:51Z",
      "created": "2026-09-02T14:39:37Z",
      "cve": "CVE-2025-29009",
      "kev": false,
      "landed": true
    },
    {
      "year": 2025,
      "stars": 0,
      "name": "CVE-2025-69080",
      "url": "https://github.com/AndrielSec/CVE-2025-69080",
      "desc": "Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in JanStudio Gecko gecko allows PHP Local File Inclusion.This issue affects Gecko: from n/a through <= 1.9.8.",
      "pushed": "2026-09-02T14:03:02Z",
      "created": "2026-08-31T21:00:26Z",
      "cve": "CVE-2025-69080",
      "kev": false,
      "landed": true
    },
    {
      "year": 2026,
      "stars": 2,
      "name": "CVE-2026-43499-poc",
      "url": "https://github.com/lkeld/CVE-2026-43499-poc",
      "desc": "In the Linux kernel, the following vulnerability has been resolved: rtmutex: Use waiter::task instead of current in remove_waiter() remove_waiter() is used by the slowlock paths, but it is also used for proxy-lock rollback in rt_mutex_start_proxy_lock() when invoked from futex_requeue(). In the latter case waiter::task is not current, but remove_waiter() operates on current for the dequeue operation. That results in several problems: 1) the rbtree dequeue happens without waiter::task::pi_lock being held 2) the waiter task's pi_blocked_on state is not cleared, which leaves a dangling pointer primed for UAF around. 3) rt_mutex_adjust_prio_chain() operates on the wrong top priority waiter task Use waiter::task instead of current in all related operations in remove_waiter() to cure those problems. [ tglx: Fixup rt_mutex_adjust_prio_chain(), add a comment and amend the changelog ]",
      "pushed": "2026-09-01T16:41:30Z",
      "created": "2026-09-01T07:34:56Z",
      "cve": "CVE-2026-43499",
      "kev": false,
      "landed": true
    }
  ]
}