PoC Archive PoC Archive

tag

Local

Barrier 2.4.0 — barrierd.exe Unauthenticated IPC → SYSTEM Privilege Escalation (NotCVE-2026-0010)
NotCVE-2026-0010 (disputed CVE assignment — author contests the identifier) binary Unverified
NotCVE-2026-0010binaryHIGHUnverified2026-08-01Windows WalletService Known-Folder Redirection → ESE Persisted-Callback DLL Load Local Privilege Escalation (CVE-2026-49176)
CVE-2026-49176 binary Patched
CVE-2026-49176binaryHIGH 7.8Patched2026-07-27GreatXML — WinRE / Defender Offline-Scan Trust-Boundary Abuse → BitLocker Bypass (No CVE)
N/A (no CVE assigned, no Microsoft advisory as of 2026-07-27) binary Unpatched
N/AbinaryHIGHUnpatched2026-07-27Linux Kernel rtmutex Priority-Inheritance Stack-UAF — "GhostLock" (CVE-2026-43499, Nebula Security weaponized variant)
CVE-2026-43499 (aka "GhostLock") binary Patched
CVE-2026-43499binaryHIGH 7.8Patched2026-07-08Windows Kernel Local Privilege Escalation via SeDebugPrivilege Bit Corruption (CVE-2026-40369)
CVE-2026-40369 binary Unverified
CVE-2026-40369binaryHIGHUnverified2026-07-05PinTheft: RDS zcopy Refcount-Steal Double-Free LPE — Pure NASM Rewrite (CVE-2026-43494)
CVE-2026-43494 binary Patched
CVE-2026-43494binaryHIGHPatched2026-07-05Linux Kernel Futex-PI rtmutex remove_waiter() Use-After-Free (CVE-2026-43499)
CVE-2026-43499 binary Patched
CVE-2026-43499binaryHIGH 7.8Patched2026-07-05RoguePlanet — Windows Defender LPE via ISO Mount + Task Scheduler Race Condition EPSS 11%
CVE-2026-50656 binary Unpatched
CVE-2026-50656binaryHIGH 7.8Unpatched2026-06-10Notepad++ <= 8.9.6 Multiple Vulnerabilities (CVE-2026-48770, CVE-2026-48778, CVE-2026-48800)
CVE-2026-48770, CVE-2026-48778, CVE-2026-48800 binary Patched
CVE-2026-48770, CVE-2026-48778, CVE-2026-48800binaryHIGH 5Patched2026-05-28PinTheft: RDS Double-Free → LPE
binary Unverified
—binaryHIGHUnverified2026-05-20Copy Fail Linux Kernel Local Privilege Escalation (CVE-2026-31431) KEV EPSS 100%
CVE-2026-31431 binary Patched
CVE-2026-31431binaryHIGHPatched2026-05-17QEMUtiny - QEMU CXL Type-3 Memory Corruption Chain
binary Unverified
—binaryCRITICALUnverified2026-05-16Dirty Frag: Linux XFRM/RxRPC Page Cache Write Chain LPE EPSS 93%
CVE-2026-43500, CVE-2026-43284 binary Patched
CVE-2026-43500, CVE-2026-43284binaryCRITICAL 7.8Patched2026-05-14