PoC Archive PoC Archive

tag

Arbitrary-Code-Execution

  • CVE-2025-12735 misc CRITICAL 9.8

    safe-expr-eval: Mitigation Library for the expr-eval Unsafe eval() RCE (CVE-2025-12735)

    CVE-2025-12735 is a critical arbitrary code execution vulnerability in the expr-eval npm package: instead of tokenizing and walking expressions through a restricted interpreter, expr-eval's evaluation path ultimately reaches JavaScript's eval()/Function()…

    Patched 2026-07-06
  • CVE-2026-23947 misc HIGH

    Orval OpenAPI Codegen Arbitrary Code Execution via Malicious Spec (CVE-2026-23947)

    Orval generates TypeScript client code from OpenAPI specifications, and it copies certain vendor-extension fields — specifically x-enumDescriptions and x-enumNames — directly into generated source as comments/string literals without escaping. By crafting an…

    Patched 2026-07-05
  • None assigned as of 2026-07-03 binary MEDIUM

    Ghidra 12.1.2 Conditional Swift Demangler ACE (plus TraceRMI RCE and SevenZipJBinding Reachability)

    This entry packages three conditional, defensively-scoped findings against Ghidra 12.1.2 rather than a single unconditional exploit. First, the Swift demangler analyzer builds and launches a swift-demangle executable from a program/analyzer-controlled tool…

    Unverified 2026-07-03