
CVE-2019-6340-Drupal-8.6.9-REST-Auth-Bypass
CVE-2019-6340 Drupal 8.6.9 REST Auth Bypass examples
Tools for testing, exploiting, and securing web applications and APIs.

CVE-2019-6340 Drupal 8.6.9 REST Auth Bypass examples

PoC DoS CVE-2020-36109

😱 Python library and utility for CVE-2014-6271 (aka. "shellshock")

PoC of HTTP Request Smuggling in nodejs (CVE-2020-8287)

A CLI tool that exploits vulnerabilities in React Server Components and Server Actions (CVE-2025-55182, CVE-2025-66478) to achieve remote code…

Simple honeypot for CVE-2021-41773 vulnerability


Essay (and PoCs) about CVE-2021-41773, a remote code execution vulnerability in Apache 2.4.49 🕸️

Mass, multithreaded testing for servers against Heartbleed (CVE-2014-0160).

Exploit demonstrating an authentication bypass vulnerability in the web interface of Belkin F9K1009 and F9K1010 routers.

Exploit SQL injection in projectworlds Online Admissions System v1.0

A repository containing a PoC exploit for CVE‑2025‑8191 in Swagger UI, leveraging XSS injection to exfiltrate session cookies.

Proof‑of‑concept exploit for CVE‑2025‑7840 that injects malicious payloads into the Firstname parameter of a reservation form to trigger XSS

Proof-of-Concept exploit for CVE-2025-7795 – A buffer overflow vulnerability affecting certain Tenda routers. The exploit sends crafted POST requests…

PoC Exploit for CVE-2025-7753 — Time-Based SQL Injection in Online Appointment Booking System 1.0 via the username parameter. Exploit written in C…

A proof‑of‑concept command‑line tool in C for detecting the SQL injection vulnerability .

C PoC language for emulating path traversal vulnerability (CVE-2025-5964) in M-Files25.6.14925.0

A C‑based proof‑of‑concept exploit for CVE‑2025‑54769, automating the creation and upload of a malicious Perl CGI script to LPAR2RRD’s upgrade…