
codehaus-plexus__plexus-archiver_CVE-2018-1002200_3-5
Java library for creating and extracting archives (ZIP, TAR, JAR) with support for various compression formats. Note: version 3.5 contains a fix for…

Java library for creating and extracting archives (ZIP, TAR, JAR) with support for various compression formats. Note: version 3.5 contains a fix for…

C library for stream-oriented XML parsing, providing a fast and configurable parser with support for custom handlers and encoding options.

Java source code generator that creates calling classes for Oracle PL/SQL package procedures, supporting various parameter types and automatic type…

kadimus is a tool to check and exploit lfi vulnerability.

A fork of JSONPath from http://goessner.net/articles/JsonPath/

This is an intentionally vulnerable smart contract truffle deployment aimed at allowing those interested in smart contract security to exploit a wide…

This repository contains a POC of CVE-2025-55182, a critical (CVSS score 10.0) pre-authentication remote code execution vulnerability affecting React…

Educational PoC + lab for CVE-2026-63030 + CVE-2026-60137: pre-auth SQLi in WordPress core via REST batch-route confusion


Async RCE scanner for CVE-2025-55182 / CVE-2025-66478 — prototype-pollution → code execution via React Server Actions.

Secure expression evaluator - Drop-in replacement for expr-eval without CVE-2025-12735 vulnerability

Automate PowerShell script source code obfuscation & virtualization with a flexible Web API for Python (pip package).

CVE-2019-14900

A vulnerable version of Rails that follows the OWASP Top 10

The Secure Coding Dojo is a platform for delivering secure coding knowledge.

One command to fix CVE-2025-66478 (React 2 Shell RCE) in your Next.js / React RSC app.

find hardcoded strings from source code

Apache Log4j 1.2.X存在反序列化远程代码执行漏洞