
CVE-2024-45409
Ruby-SAML / GitLab Authentication Bypass (CVE-2024-45409) exploit

Ruby-SAML / GitLab Authentication Bypass (CVE-2024-45409) exploit

JetBrains TeamCity Authentication Bypass CVE-2023-42793 Exploit

POCs to demonstrate CVE-2026-42167 in ProFTPD

An authentication bypass vulnerability in the web component of Ivanti ICS 9.x, 22.x and Ivanti Policy Secure allows a remote attacker to access…

Polkit D-Bus Authentication Bypass Exploit

Ivanti Neurons for ITSM (On Premise) exploits

A remote code execution vulnerability exists in the iControl REST API feature of F5's BIG-IP product. An unauthenticated, remote attacker can exploit…

WordPress Pie Register ≤ 3.7.1.4 - Admin Privilege Escalation (Unauthenticated)

This vulnerability allows an attacker to gain unauthorized access to the firewall management space by bypassing authentication


The forgot-password endpoint in Flowise returns sensitive information including a valid password reset tempToken without authentication or…

TeamCity CVE-2023-42793 exploit written in Rust

CVE-2025-41646 - Critical Authentication bypass

This repository details an IDOR vulnerability in AbsysNet 2.3.1, which allows a remote attacker to brute-force session IDs via the /cgi-bin/ocap/…


Exploit for CVE-2022-46169

Docker lab reproducing CVE-2026-71362 Magento/Adobe Commerce account takeover via customer-session identity switch, with PoC and official-patch A/B/A…

→ poc for CVE-2025-29927