
jsch
fork of the popular jsch library

fork of the popular jsch library

Admin-only terminal bootstrap routes checked only for login state, which let a normal team member drive Coolify's realtime terminal backend and…

POC for CVE-2026-30950 which allows session hijacking in AutoGpt

Wordpress SureTriggers <= 1.0.78 - Authorization Bypass due to Missing Empty Value Check to Unauthenticated Administrative User Creation

Wordpress SureTriggers <= 1.0.78 - Authorization Bypass due to Missing Empty Value Check to Unauthenticated Administrative User Creation



Burp Suite Extension useful to verify OAUTHv2 and OpenID security

This repository details an IDOR vulnerability in AbsysNet 2.3.1, which allows a remote attacker to brute-force session IDs via the /cgi-bin/ocap/…

Exploit for CVE-2022-46169


A POC for the all new CVE-2023-27524 which allows for authentication bypass and gaining access to the admin dashboard.

Apache Shiro CVE-2022-32532

Burp plugin which supports in finding privilege escalation vulnerabilities

ProxyToken (CVE-2021-33766) : An Authentication Bypass in Microsoft Exchange Server POC exploit

Discource POC

Exploit for CVE-2020-3952 in vCenter 6.7 https://www.guardicore.com/2020/04/pwning-vmware-vcenter-cve-2020-3952/

Exploit for CVE-2020-3952 in vCenter 6.7