


CVE-2021-46071 - A Stored Cross Site Scripting (XSS) vulnerability exists in Vehicle Service Management System 1.0 via the Category List Section in…


Proof-of-concept exploit for CVE-2025-48384, demonstrating remote code execution via a crafted git clone operation on vulnerable Git versions.

Rails 3 PoC of CVE-2019-5418

Java security library providing contextual encoders and sanitizers to automatically remediate vulnerabilities like XSS, path traversal, and command…

Proof-of-concept exploit for CVE-2018-7211 targeting iDashboards 9.6b. Python script for encrypting/decrypting strings to demonstrate the…

Proof-of-concept exploit for CVE-2018-6574 targeting a Go web server vulnerability. Demonstrates remote code execution via crafted HTTP requests.

CVE-2017-13286 Poc(can not use)

OGNL Injection in Confluence server version < 7.12.5

PowerShellProfiler

Remote command execution in Golang go get command allows an attacker to gain code execution on a system by installing a malicious library.

Proof-of-concept exploit for CVE-2023-1999 targeting the WebP codec library on Android 10 (r33). Demonstrates a heap buffer overflow vulnerability in…


Proof-of-concept exploit for CVE-2013-3900, a WinVerifyTrust signature validation vulnerability enabling arbitrary code execution via crafted…

Arbitrary deserialization that can be used to trigger SQL injection and even Code execution

A fix for the batchOverflow bug https://medium.com/@peckshield/alert-new-batchoverflow-bug-in-multiple-erc20-smart-contracts-cve-2018-10299-511067db65…

Fix for ECDSA and EDDSA signature verification in Wycheproof project, addressing missing length checks that allowed zero-byte manipulation during…