
POC-CVE-2026-32621-Apollo-Federation-XSS-Vulnerability
api-securityexploitationvulnerability-analysis+1



Vulnerability Research



Use Exposed KongAPI to act like a proxy and get metadata urls or internal urls

Critical Unauthenticated API Access in vBulletin

PlaceOS authentication service and API gatekeeper.

PHP 8.4+ security library (mirror)


CVE-2022-24112_POC

The simple PoC of CVE-2023-27587

.json and .yaml files used to exploit CVE-2018-25031

This tool creates a custom signature set on F5 WAF and apply to policies in blocking mode

Alibab-Nacos-Unauthorized-Reset PWD


批量检测Spring Cloud Gateway 远程代码执行漏洞 Spring_Cloud_Gateway_RCE_POC-CVE-2022-22947

This vulnerability allows unauthenticated attackers who know a valid administrator username to impersonate that admin during REST API requests by…