


Applications that reproduce CVE-2021-22119

eMagicOne Store Manager for WooCommerce <= 1.2.5 - Unauthenticated Arbitrary File Deletion

CVE-2021-24647 Pie Register < 3.7.1.6 - Unauthenticated Arbitrary Login

listmonk’s Session Persistence After Password Reset and Password Change

CVE-2019-14830

Zeek detection logic for CVE-2022-30216.

CVE-2025-59390 and ThreadLocalRandom Inverse

Tenda AC15 cookie exposure

An implementation of CVE-2015-3306

vmware authentication bypass

CVE-2025-4094 – WordPress Digits Plugin < 8.4.6.1 - OTP Authentication Bypass

A proof of concept for CVE-2025-31161, using mangled HTTP header to perform unauthenticated impersonation of any user in Crush FTP server.