
CVE-2024-55211
Cookie-based authentication vulnerability on Tk-Rt-Wr135G

Cookie-based authentication vulnerability on Tk-Rt-Wr135G

Security research on Craft CMS authentication mechanism

Bot for Telegram on WooCommerce <= 1.2.4 - Authenticated (Subscriber+) Telegram Bot Token Disclosure to Authentication Bypass

Functional exploit for CVE-2025-29927, a critical Next.js middleware authorization bypass. Sends crafted HTTP requests with the…

While Fortinet's January 27, 2026 mitigation for **CVE-2026-24858** focuses on blocking specific accounts like `[email protected]`, it fails to…

Security research on Fortinet FortiWeb vulnerabilities (CVE-2025-64446, CVE-2025-58034)

Security research — PoC for local root privilege escalation on macOS Mavericks 10.9.

PoC for CVE-2025-29556 creating Security Officer accounts on ExaGrid EX10 backup appliances via a low-privilege API session, enabling privilege…

Papercut Vulnerability, Affected Versions are PaperCut MF or NG version 8.0 or later (excluding patched versions) on all OS platforms.

Modifed ver of the original exploit to save some times on password reseting for unprivileged user

Single Packet Authorization > Port Knocking

Review Access - kubectl plugin to show an access matrix for k8s server resources

DLL Injection tool to unlock guest VMs

Simple Secure Keeper for Secrets

cve-2022-23131

Zero-Trust SSH CA

Wordpress SureTriggers <= 1.0.78 - Authorization Bypass due to Missing Empty Value Check to Unauthenticated Administrative User Creation

ManageEngine Service Desk Plus 10.0 Privilaged account Hijacking