
CVE-2026-51954
Vulnerability Research

Vulnerability Research
CVE-2026-8206: Kirki Customizer Framework - Unauthenticated Account Takeover (CVSS 9.8)

OWASP Raider: a novel framework for manipulating the HTTP processes of persistent sessions

Remote Kerberos Relay made easy! Advanced Kerberos Relay Framework

web2py/web2py @ e94946d

cobaltstrike4.5版本破解、去除checksum8特征、bypass BeaconEye、修复错误路径泄漏stage、增加totp双因子验证、修复CVE-2022-39197等

Automated Exploit Toolkit for CVE-2015-6095 and CVE-2016-0049

A minimal authenticated reverse shell framework for reaching hosts with outbound internet access.

A proof of concept exploit for CVE-2022-40684 affecting Fortinet FortiOS, FortiProxy, and FortiSwitchManager

Serverless AITM Simulation Framework for Entra ID and M365


An authentication bypass using an alternate path or channel in Fortinet product


Fork of laravel/framework 10.50.2 with CVE-2026-48019 (CRLF injection in default email rule) backported into ValidatesAttributes::validateEmail.…

A attempt at cryptographic framework for Baochip-1x .

Bug-bounty audit scripts — API key validation, OAuth misconfig checks, password-reset auditing.

PLEASE USE NEW VERSION: https://github.com/kgretzky/evilginx2

CredSniper is a phishing framework written with the Python micro-framework Flask and Jinja2 templating which supports capturing 2FA tokens.