
JAW
JAW: A Graph-based Security Analysis Framework for Client-side JavaScript

JAW: A Graph-based Security Analysis Framework for Client-side JavaScript

Qiskit-based resource estimation framework for space-efficient quantum modular inversion and affine point-addition circuits used in elliptic-curve…

Proof-of-concept exploit for CVE-2025-3248, an unauthenticated remote code execution vulnerability in Langflow, demonstrating code injection via the…

Detection for CVE-2025-53690

Automated PoC script for CVE-2023-36845, exploiting a PHP flaw in Juniper Junos OS J-Web to remotely modify PHPRC and achieve code injection on…

Reproducer for CVE-2026-46455 — Apache Camel camel-keycloak missing TokenVerifier.IS_ACTIVE check (expired access tokens accepted)

Exploit on the default cache of superset by using pickle

Proof-of-concept exploit for SQL injection vulnerability in Online Timesheet App, demonstrating the attack and providing technical details for…

Unpack and deobfuscate VMProtect 2 protected binaries with an emulation-based VM explorer, handler profiler, and experimental LLVM recompiler for…

Scanners for Jar files that may be vulnerable to CVE-2021-44228

Find, verify, and analyze leaked credentials

OWASP Thick Client Application Security Verification Standard

Unauthenticated RCE PoC for CVE-2026-48908 — SP Page Builder for Joomla (≤ 6.6.1): arbitrary file upload via asset.uploadCustomIcon. Self-cleaning,…


This repo stores source code of the vulnerable program.

A complete framework for exploiting the vulnerability CVE-2025-55182

PoC for CVE-2026-12191

Reproducer for CVE-2026-46590: Apache Camel camel-pqc key-lifecycle unsafe deserialization (FileBasedKeyLifecycleManager legacy .key migration via…