
Hippoo-Mobile-App-For-WooCommerce-CVE-Report
Disclosure for CVE-2025-13339

Disclosure for CVE-2025-13339

Cross-Site Scripting (XSS) Vulnerability in Fiora Chat Application

Demo for https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-8970

Proof-of-concept demonstrating CVE-2007-4559 path traversal in Python's tarfile module, allowing arbitrary file overwrite via malicious TAR archives.

This is an OpenSSL Vulnerability Detection Script for CVE-2022-2274

SQL Injection vulnerability discovered in Grocery Store Management System 1.0

authz research - CVE-2026-3306 fix coverage

Hands-on exploitation lab for Roundcube Webmail CVE-2025-49113 (authenticated PHP object deserialization → RCE) to read /secret.txt.

Exploit Title: Node.JS - 'node-serialize' Remote Code Execution (2), Version: 0.0.4, CVE: CVE-2017-5941

Reproduction of a high severty security problem that allows XXE (XML eXternal Entity) attacks on Ktor's XML serialization.

authz test (CVE-2026-1999 siblings)

Exploit for CVE-2022-22965 (Spring4Shell) targeting Spring Framework versions vulnerable to remote code execution via classLoader manipulation.

CVE-2022-33171: TypeORM SQL Injection Vulnerability

CLI scanner that detects whether a target website runs a vulnerable Next.js version affected by CVE-2025-66478 RCE in React Server Components.

Proof-of-concept exploit for CVE-2026-11551, an unauthenticated privilege escalation vulnerability in the Branda White Label plugin for WordPress,…

check if vulnerable python-django version to CVE-2025-64459 bug

CVE-2025-51458 - DB-GPT Pre-Auth SQL Injection PoC

Secure fork of Startklar Elementor Addons. Patched CVE-2024-5153 & File Upload vulnerabilities.