
CVE-2022-24087
Proof-of-concept exploit for CVE-2022-24086 and CVE-2022-24087, demonstrating pre-authentication remote code execution in Magento/Adobe Commerce via…

Proof-of-concept exploit for CVE-2022-24086 and CVE-2022-24087, demonstrating pre-authentication remote code execution in Magento/Adobe Commerce via…

Proof-of-concept exploit for CVE-2024-21644, demonstrating remote code execution vulnerability with Python-based automation and colored output.

dol_eval_standard() whitelist bypass eval() RCE, affecting Dolibarr 23.0.0 and below by jiva (jivasecurity.com)

Exploit for CVE-2023-38890, an unauthenticated SQL injection to remote code execution in Online Shopping Portal 3.1, with a proof-of-concept and…

Exploit for CVE-2020-14343, targeting a specific vulnerability in web applications. Provides a proof-of-concept implementation for security testing…

Java-based proof-of-concept exploit for CVE-2018-12533 (RF-14310) targeting RichFaces deserialization vulnerability, with analysis reference and…

Proof-of-concept exploit for CVE-2024-56431 in libtheora, demonstrating a memory corruption vulnerability via fuzzing with AddressSanitizer and…

Proof-of-concept exploit for CVE-2024-24725, demonstrating a web application vulnerability with PHP-based exploitation code for security testing and…

Proof-of-concept exploit for CVE-2024-32019 vulnerability, written in C for testing and verification of the security flaw.

C-based exploit for CVE-2023-6546, providing proof-of-concept code to demonstrate and test the vulnerability in affected systems.

PoC exploit for Jenkins Script Security Pipeline plugin remote code execution vulnerability (CVE-2019-1003000), implemented in Python for penetration…

Technical analysis of CVE-2025-66628, an integer overflow in ImageMagick's TIM parser leading to out-of-bounds reads, with root cause, exploitation…

Proof-of-concept exploit for CVE-2018-16858, demonstrating the vulnerability and providing exploitation code for security testing and research.

Security research project on fuzzing libpng with OSS-Fuzz. Includes seed corpus analysis, custom read/write fuzzers, and a proof-of-concept exploit…

Enhanced fuzzing for tmux using OSS-Fuzz. Includes custom `cmd-fuzzer` and `argument-fuzzer` harnesses for improved code coverage and a PoC for…

Proof-of-concept exploit for CVE-2023-4634, a remote code execution vulnerability in the WordPress Media Library Assistant plugin. Includes a…

Proof-of-concept exploit for CVE-2025-51482, demonstrating remote code execution via unsafe exec() usage and sandbox bypass in the Letta AI agent…

Proof-of-concept for CVE-2025-60787, demonstrating remote code execution in MotionEye <= 0.43.1b4 via client-side validation bypass and command…