
CVE-2023-4911
CVE-2023-4911 (Looney Tunables) analysis report and Docker reproduction lab

CVE-2023-4911 (Looney Tunables) analysis report and Docker reproduction lab

Node.js vm2 CVE-2023-29017 reproduction with Docker Compose and PoC

Aritifacts of docker env of CVE-2021-3975

Proof-of-concept exploit for CVE-2023-36664, a Ghostscript command injection vulnerability. Includes Docker lab environment, detailed analysis of…

POE code for CVE-2017-1000112 adapted to both funtion on a specific VM and Escape a Docker

Docker exploit

Self-contained Docker lab demonstrating CVE-2007-4559 (TarSlip) directory traversal via Python's tarfile module. Includes vulnerable and fixed APIs,…

Destructive Docker container escape exploit for CVE-2019-5736, overwriting host /usr/bin/docker-runc with a payload triggered via docker exec.

Docker image that lets me study the exploitation of the VIM exploit

ay 09 — CVE-2025-27520 (BentoML-style insecure deserialization) — Local Docker lab

Proof-of-concept exploit for CVE-2018-10933, demonstrating SSH authentication bypass via MSG_USERAUTH_SUCCESS injection. Includes Docker setup and…

Proof-of-concept exploit for CVE-2019-5736, appending a payload to the host runc binary via Docker container escape.

Proof-of-concept exploit for CVE-2019-5736, a Docker container escape via runc binary overwrite, enabling host shell access through libseccomp…

Proof-of-concept exploit for CVE-2019-5736, demonstrating Docker container escape via runC vulnerability with reverse shell payload injection.

End-to-end Docker lab reproducing Apache log4j2 #4255 — FilteredObjectInputStream allowlist bypass via java.rmi.MarshalledObject (unfiltered…

Ghidra is a software reverse engineering (SRE) framework


This repository provides a learning environment to understand how an Exim RCE exploit for CVE-2018-6789 works.