
jackson-CVE-2020-36180
Proof-of-concept exploit for CVE-2020-36180, a Jackson-databind deserialization vulnerability enabling remote code execution via crafted JSON…

Proof-of-concept exploit for CVE-2020-36180, a Jackson-databind deserialization vulnerability enabling remote code execution via crafted JSON…

Reproducible example demonstrating CVE-2024-26308 vulnerability detection during Docker builds, with Maven dependency tree analysis and remediation…

An attempt to understand the log4j vulnerability by looking through the code

jee web project with sanitised log4shell (CVE-2021-44228) vulnerability

CVE-2025-27607 fix

Fix open source package uses tough-cookie 2.5.0 - CVE-2023-26136,

Secure coding project, research on CVE-2019-17498 and implement a player score function written in C.

Ruby script to fix quote attribution vulnerability (CVE-2023-45806) in Discourse forums by searching and patching malformed quote blocks with…

Exploit for CVE-2022-25845 targeting FastJSON deserialization vulnerability in Java applications. Enables remote code execution via crafted JSON…

go CVE-2023-24538 patch issue resolver - Dunfell


Exploit for CVE-2018-6574, a Go command injection vulnerability. Provides a targeted payload for testing and validating the flaw in affected systems.

Demonstrates CVE-2015-10034 in a vulnerable Java application, including SARIF analysis results from J-TAS Action for educational security testing.

Reproducible CVE-2015-6748 vulnerability example in jsoup HTML parser, demonstrating XSS prevention bypass and DOM-based parsing flaws for security…

Vulnerable svg-to-png service

Patch for zlib addressing CVE-2018-25032 in AOSP10 r33, providing a fix for the identified vulnerability.

Reimplementation of CVE-2017-15361 checker in C

Analyzes and demonstrates the webpack CVE-2024-43788 vulnerability, providing detection and exploitation insights for security researchers.