
jetty-9.4.31.v20200723_CVE-2023-26049
Exploit code and analysis for CVE-2023-26049 targeting Jetty 9.4.31, demonstrating a vulnerability in the web server for security testing and…

Exploit code and analysis for CVE-2023-26049 targeting Jetty 9.4.31, demonstrating a vulnerability in the web server for security testing and…

Exploit for Apache Struts CVE-2017-9805, a remote code execution vulnerability in the REST plugin. Enables penetration testing and security…

Detailed CVE-2021-31856 report with PoC and code analysis for a SQL injection vulnerability in Meshery's pattern file API, enabling unauthenticated…

Proof-of-concept exploit for CVE-2020-0601 (CurveBall) demonstrating ECC certificate validation bypass to spoof trusted CA and sign arbitrary…

CVE-2024-56115 proof-of-concept for Amiro.CMS XSS and OS command injection vulnerabilities, enabling security researchers to test and validate…

Repository dedicated to CVE-2022-25313, a vulnerability in Expat 2.1.0, providing analysis and potential exploitation code.

Exploit for Jenkins CVE-2016-9299, a remote code execution vulnerability in the Jenkins CLI. Provides proof-of-concept code for security testing and…

GiveWP – Donation Plugin and Fundraising Platform <= 3.19.3 - Unauthenticated PHP Object Injection

Go-based proof-of-concept exploit for CVE-2018-6574, demonstrating directory traversal in Go's net/http package for security testing and…

Exploit for CVE-2019-3396, a path traversal and RCE vulnerability in Confluence Server, enabling unauthorized file read and remote code execution.

Proof-of-concept exploit demonstrating SQL injection in the Daily Habit Tracker App, enabling unauthorized database access and data extraction.

The WP Booking Calendar plugin for WordPress is vulnerable to SQL Injection via the 'calendar_request_params[dates_ddmmyy_csv]' parameter in all…

Spring4Shell is a critical RCE vulnerability in the Java Spring Framework and is one of three related vulnerabilities published on March 30

C library for VP8/VP9 video encoding and decoding, with a focus on security patching for CVE-2023-5217.

Ruby-based exploit for CVE-2020-15169, demonstrating a specific web application vulnerability with proof-of-concept code for security testing and…

Proof-of-concept exploit for SQL injection vulnerability in Online Timesheet App, demonstrating the attack and providing technical details for…

Proof of concept for SQL injection vulnerability in School Task Manager System, demonstrating exploitation and providing technical details for…

In-depth technical analysis of CVE-2021-25804, a VLC AVI parser vulnerability. Includes root cause, patch diff, and exploitation primitives for…