
Vulnerability_PoC
Collection of proof-of-concept exploits and technical analyses for high-impact CVEs, covering browser memory corruption, TCP/IP RCE, and web…

Collection of proof-of-concept exploits and technical analyses for high-impact CVEs, covering browser memory corruption, TCP/IP RCE, and web…

Educational demonstration of CVE-2017-5123 kernel exploit, ICMP-based rootkit command-and-control, and OS command injection vulnerable web…

Detailed analysis and proof-of-concept exploit for CVE-2017-9822, an XXE/insecure deserialization vulnerability in DotNetNuke CMS leading to remote…

Python exploit for CVE-2019-5096, a use-after-free vulnerability in GoAhead web server's upload handler, causing denial of service via double-free.

Chrome v8 1Day Exploit by István Kurucsai

Some V8 n-day exploits that I've written

Exploit for CVE-2022-4262, a Chromium browser vulnerability. Includes references to official bug report, in-the-wild exploit analysis, and root cause…


This is a Proof-of-Concept for the Blink CSS UAF vulnerability tracked as CVE-2026-6300.

Simple poc of CVE-2018-8353 Microsoft Scripting Engine Use After Free

CVE-2025-56708&CVE-2025-56709漏洞详解

for 供養

Proof-of-concept exploit for CVE-2025-51495, an integer overflow in Mongoose WebSocket's mg_ws_cb function leading to out-of-bounds memory access and…

A POC of a type confusion bug in chakracore framework that leads to code execute.

CVE-2002-0082

Exploit for CVE-2017-7529, a remote integer overflow vulnerability in Nginx, enabling denial of service or potential code execution.

clif is a command-line interface (CLI) application fuzzer, pretty much what wfuzz or ffuf are for web. It was inspired by sudo vulnerability…

Windows NT ioctl bruteforcer and modular fuzzer