
CVE-2026-42533
Proof-of-concept reproduction of an nginx heap overflow and info leak (CVE-2026-42533) with two attack surfaces, debug analysis, and a full RCE chain.

Proof-of-concept reproduction of an nginx heap overflow and info leak (CVE-2026-42533) with two attack surfaces, debug analysis, and a full RCE chain.

Reproducer for CVE-2026-46590: Apache Camel camel-pqc key-lifecycle unsafe deserialization (FileBasedKeyLifecycleManager legacy .key migration via…

PoC for CVE-2026-12191

Reproducer for CVE-2026-40859 — Apache Camel camel-netty-http / camel-vertx-http producer-side unsafe deserialization of HTTP response bodies (RCE)


Exploiting CVE-2022-0847 - written by : Antonius (w1sdom)



CVE-2025-43960 - PHP Object Injection en Adminer < 4.8.1 con Monolog (DoS)

Report and PoC of Global Buffer Overflow on SmallBASIC before 02364eff880ba62afac67bcceebafade2b40d21f

Report and PoC of Heap Buffer Overflow in Pepper Language before version 0.1.1, commit 961a5d9988c5986d563310275adad3fd181b2bb7

Tribell Edge Sandbox Escape - PoCs of Edge's legacy vulnerabilities BadgeUpdateManager / TileFlyoutUpdateManager / ToastNotificationManager to…

POC for RCE vulnerability in ParseExcel library, and ParseXLSX too, as a depending library

Threadless Module Stomping In Rust with some features (In memory of those murdered in the Nova party massacre)

Critical heap buffer overflow vulnerability in the handle_trace_request and parse_trace_request functions of the Fluent Bit HTTP server.

My experiments in weaponizing Nim (https://nim-lang.org/)

Critical use-after-free vulnerability discovered in Tinyproxy