
cve-2026-71362-magento-lab
Docker lab reproducing CVE-2026-71362 Magento/Adobe Commerce account takeover via customer-session identity switch, with PoC and official-patch A/B/A…

Docker lab reproducing CVE-2026-71362 Magento/Adobe Commerce account takeover via customer-session identity switch, with PoC and official-patch A/B/A…

Dahua IPC/VTH/VTO devices auth bypass exploit

Exploit for CVE-2025-47227 - ScriptCase Password Reset (Pre-Auth)

Exploit PoC for WordPress Burst Statistics authentication bypass allowing unauthenticated admin impersonation via crafted Authorization header.

Proof-of-concept exploit for CVE-2019-10915 targeting an authentication bypass in Siemens TIA Administrator, enabling remote command execution via…

Python script for CVE-2024-0012 / CVE-2024-9474 exploit

Exploiting CVE-2016-10277 for Secure Boot and Device Locking bypass

CVE-2017-14322 Interspire Email Marketer (emailmarketer) Exploit

Non-destructive PoC and technical write-up for CVE-2026-73673, an unauthenticated firmware-update flaw in Netis NC63 router, with reproduction and…

A Go library for using zeek broker's websocket API

Docker setup for CVE-2026-24061

CVE Reproduction: cve-2024-0012_9474-panos_authbypass_reproduction

Zabbix Frontend Authentication Bypass Vulnerability

Security Advisory: Insufficient Access Controls Allow for Unauthorized File Downloads (Let's Chat)

Python proof-of-concept demonstrating an authentication bypass in pac4j JWT by crafting a JWE token with an unsigned inner JWT, allowing privilege…

Proof-of-concept exploit client for InfluxDB authentication bypass (CVE-2019-20933). Executes arbitrary queries against vulnerable InfluxDB instances…

WordPress Plugin Digits < 8.4.6.1 - OTP Auth Bypass via Bruteforce (CVE-2025-4094)

gRPC-Go RBAC Authorization Policy Bypass via Missing `:path` Slash (Auth Bypass)