
CVE-2025-11844-smolagents
Educational sandbox and dynamic proof-of-concept scanner for CVE-2025-11844 XPath injection in Hugging Face smolagents library, enabling local data…

Educational sandbox and dynamic proof-of-concept scanner for CVE-2025-11844 XPath injection in Hugging Face smolagents library, enabling local data…

Multi-language detection scripts for CVE-2025-55182 (React2Shell) that scan package.json files to identify vulnerable React dependency versions and…

Proof-of-concept exploit for CVE-2025-55182, demonstrating remote code execution via prototype chain vulnerability in React Server Components.…

Educational CVE-2024-12877 exploit demo for PHP Object Injection in GiveWP WordPress plugin. Includes root cause analysis, regex bypass techniques,…

CVE-2022-1329 exploit for WordPress Elementor plugin (3.6.0-3.6.2) enabling authenticated remote code execution via missing capability check and…

Java library for string manipulation algorithms, packaged with a proof-of-concept exploit for CVE-2022-42889 to demonstrate and test the…

TinyXML 2.6.2 with fixes for CVE-2021-42260 and CVE-2023-34194

C library for parsing XML, specifically patched for CVE-2022-23990, providing a reference implementation for vulnerability analysis and secure coding…

Technical Java libraries providing common utilities and components for the XWiki platform, including security vulnerability fixes and code analysis…

Java utility library with a focus on a specific CVE vulnerability, providing code analysis and static analysis capabilities for security assessment.

Java library providing technical commons for XWiki projects, with a focus on vulnerability analysis and static code inspection for security testing.

Jenkins plugin providing Git APIs for automated repository operations including fetch, checkout, merge, and tag, with support for credential-based…

Technical libraries for XWiki projects, providing reusable components for vulnerability analysis, code analysis, and static analysis across…

C library for parsing XML, patched for CVE-2022-25235, providing stream-oriented parsing with handler registration and build configuration options.

test the CVE-2017-12852 in numpy v1.13.1 and v1.13.3 has fixed the bug

Java testing framework for unit, integration, and end-to-end tests with annotations, data-driven testing, and parallel execution support.

Educational repository demonstrating XSS vulnerabilities in Django Rest Framework applications. Contains intentionally vulnerable code to teach…

Java utility library with patched CVE-2022-4244 vulnerability, providing common helper classes for I/O, reflection, and CLI argument parsing in…