
CVE-2026-33454
Reproducer for CVE-2026-33454: Apache Camel camel-mail header injection to RCE via camel-exec

Reproducer for CVE-2026-33454: Apache Camel camel-mail header injection to RCE via camel-exec

test code for cve-2024-6387

Security Advisory: HTTP Response Splitting via Unvalidated Response Header Values (rouille)

PoC of CVE-2025-22352

Proof-of-concept exploit for CVE-2026-25924, demonstrating administrative remote code execution in Kanboard through a missing access control check on…

Oracle Identity Manager 远程代码执行漏洞CVE-2025-61757

Detaped is a Python disassembler and decompiler for Duktape. The intended use is for source code review and analysis in situations where you only…

PoC for CVE-2024-1512 in MasterStudy LMS WordPress Plugin.



Python exploit for CVE-2008-4687 targeting remote code execution in MantisBT via crafted sort parameter in manage_proj_page.php.

Proof-of-concept exploit for Jenkins CVE-2017-1000353, a remote code execution vulnerability via unsafe deserialization in the CLI interface.

Miro Desktop 0.8.18 on macOS allows Electron code injection.

Pivotal CRM's patch for an initial deserialization vulnerability was incomplete. The fix switched from BinaryFormatter to JSON.NET but left…

Chevereto - 1.0.0 Free - 1.1.4 Free, 3.13.4 Core, Remote Code Execution

PoC Magento Session Reaper - CVE-2025-54236

PoC reproducer for CVE-2026-53913 (Apache Camel camel-keycloak): KeycloakSecurityPolicy fails open in the Basic Setup — with no required…

Proof-of-concept exploit for CVE-2018-20718, a PHP object injection vulnerability in Pydio before 8.2.1 enabling unauthenticated remote code…