



This script exploits the CVE-2024-40094 vulnerability in graphql-java

[CVE-2016-4014] SAP Netweaver AS JAVA UDDI Component XML External Entity (XXE)

CVE-2023-23752 nuclei template

Insecure Permissions WeDayCare

FOSSBilling CVE-2026-53647 & CVE-2026-53646 PoC — Unauthenticated API key disclosure & password reset token reuse

CVE-2026-24136 | Lab khai thác lỗ hổng IDOR trên Saleor GraphQL - query order() không kiểm tra xác thực, lộ toàn bộ PII (email, địa chỉ, SĐT) của…

Zap Extension for collaboration in Faraday

SQL Injection in 3CX CRM Integration


Detection scanner for CVE-2026-48710 - Host-header auth bypass in Starlette/FastAPI


Validation target: minimal WordPress core slice reproducing the wp2shell (CVE-2026-63030 + CVE-2026-60137) REST-to-SQLi chain

Apache APISIX 2.12.1 Remote Code Execution by IP restriction bypass and using default admin AIP token

Ultimate Gift Cards for WooCommerce <= 3.0.6 - Missing Authorization to Infinite Money Glitch

演示 Next.js 中的 Middleware 授權繞過漏洞 (CVE-2025-29927) 允許未經授權的用戶存取受保護的資訊。