
CVE-2025-56643
Public reference for CVE-2025-56643 – Wiki.js 2.5.307 JWT Session Vulnerability

Public reference for CVE-2025-56643 – Wiki.js 2.5.307 JWT Session Vulnerability

CVE-2023-41508 - A hard-coded password in Super Store Finder v3.6 allows attackers to access the administration panel.

CVE-2026-20079

Jwt Bruteforcer with CVE-2018-1000531 Test


Technical disclosure of a predictable session cookie vulnerability (CVE-2025-48461) in Advantech WISE-4060 IoT portal, enabling bruteforce…

Apache Tomcat - Session fixation via rewrite valve

A python3 multithreaded SSH dictionary attack tool

Proof-of-concept exploit for GNU Inetutils telnetd authentication bypass (CVE-2026-24061) that spawns a root shell via crafted NEW-ENVIRON USER…

Proof-of-concept for an authentication bypass in PerfexCRM prior to 3.3.1, demonstrating how empty credentials can grant unauthorized admin access.

CVE-2025-14269 PoC exploit

ThinVNC 1.0b1 is vulnerable to arbitrary file read, which leads to a compromise of the VNC server. The vulnerability exists even when authentication…

It is the details of CVE-2025-45466

Authenticated API Key Exposure in Nagios Log Server 2024R1.3.1

CVE-2026-46376 - FreePBX Unauthenticated UCP Access via Hard-Coded Credentials

CVE-2025-60375 — Authentication bypass / incorrect access control in PerfexCRM < 3.3.1 (admin login)

CVE-2025-63587

authz test (CVE-2026-1999 siblings)