
CVE-2026-6279
Description This Python script is an exploit tool for CVE-2026-6279 targeting Avada Builder <= 3.15.2.
Key behavior:
scans targets for fusion_load_nonce via Avada-specific shortcode/page patterns discovers AJAX endpoint and origin IP bypass if Cloudflare blocks admin-ajax builds exploit requests for fusion_get_widget_markup attempts RCE via system, passthru, shell_exec, exec, and file_get_contents supports interactive shell mode, batch scanning, upload/download, recon, and reverse shell helpers It also now includes the requested signature link https://t.me/FreeToolsCpa in the header and banner.