
CVE-2023-22515
Confluence Unauthorized Administrator User Addition Exploitation Script

Confluence Unauthorized Administrator User Addition Exploitation Script

PoC: Grafana Editor role deletes protected contact points (CVE-2026-72585, Medium 6.5)

PoC: changedetection.io settings blind-merge mass assignment (CVE-2026-71204, Medium 6.3)

PoC: Shiori JWT CheckToken never re-validates account state (CVE-2026-71206, High 8.2)

Find the plaintext secrets on your Mac and move them behind Touch ID, injected just in time without breaking the tools that read them. Free and…

Docker lab reproducing CVE-2026-71362 Magento/Adobe Commerce account takeover via customer-session identity switch, with PoC and official-patch A/B/A…

This is an analysis for CVE-2025-32433 (Erlang OTP SSH Vulnerability). I did not write any of the code, I only wrote comments describing what the…

Exploit PoC for unauthenticated doctor/receptionist account creation in the KiviCare WordPress plugin via improper privilege management, providing…

PoC exploit for critical Budibase auth bypass: unanchored webhook regex lets attackers append ?/webhooks/trigger, reach protected APIs, and chain…

Audit program for AzureAD

Security research — PoC for local root privilege escalation on macOS Mavericks 10.9.

Exploit PoC for WordPress Burst Statistics authentication bypass allowing unauthenticated admin impersonation via crafted Authorization header.

Identity services for traditional infrastructure, applications and containers.

Burp plugin which supports in finding privilege escalation vulnerabilities

Repository contains description for CVE-2023-35794 discovered by Dodge Industrial Team for Dodge OPTIFY platfrom.


Synapse: Matrix homeserver written in Python/Twisted.
