
CVE-2018-10933
Leveraging it is a simple matter of presenting the server with the SSH2_MSG_USERAUTH_SUCCESS message, which shows that the login already occurred…

Leveraging it is a simple matter of presenting the server with the SSH2_MSG_USERAUTH_SUCCESS message, which shows that the login already occurred…

Brute-force tool for WordPress Plugin Limit Login Attempts Reloaded >=2.13.0 - Login Limit Bypass (CVE-2020-35590)


SpringBlade框架JWT认证的漏洞检测工具

poc of CVE-2022-33679



CVE-2026-10520 - CVE-2026-10523 - Ivanti Sentry

CVE-2025-0364: BigAnt Server RCE Exploit

i'm noob with saml and keycloak . J4f

PoC for CVE-2025-65945 (Improper Verification of Cryptographic Signature in node-jws)

WordPress Plugin MasterStudy LMS 2.7.5 - Unauthenticated Admin Account Creation

The script in this repository only checks whether the vulnerabilities specified in the Ivanti Connect Secure product exist.

CVE-2026-8181 PoC: Burst Statistics (3.4.0–3.4.1.1) authentication bypass. Python tool — single & multi-target scans, threaded workers, TXT reports.…

CVE-2025-58434 and CVE-2025-59528 chain POC

CVE-2024-43468 SCCM SQL Injection Exploit (mTLS unextractable client cert from MacOS keychain version)

CVE-2026-5415 WP Captcha PRO Authenticated Authentication Bypass Exploit