
platform_art_CVE-2021-0394
Analyzes and demonstrates the Android Runtime vulnerability CVE-2021-0394, providing code-level insights for security researchers and developers.

Analyzes and demonstrates the Android Runtime vulnerability CVE-2021-0394, providing code-level insights for security researchers and developers.

Analyzes and patches Android AAC (Adaptive Audio Coding) library for CVE-2023-21282, focusing on vulnerability assessment and code-level fixes.

Proof-of-concept for CVE-2024-43018: SQL injection in Piwigo 13.8.0 via unsanitized max_level and min_register parameters, enabling information…

Remote code execution in Mediawiki Score


Proof-of-concept exploit for CVE-2025-53964: remote file read/write via malicious XDXF dictionary in GoldenDict 1.5.0/1.5.1, leveraging unsanitized…




Apache Struts2框架是一个用于开发Java EE网络应用程序的Web框架。Apache Struts于2020年12月08日披露 S2-061 Struts 远程代码执行漏洞(CVE-2020-17530),在使用某些tag等情况下可能存在OGNL表达式注入漏洞,从而造成远程代码执行,风…

Demo project to evaluate Log4j2 Vulnerability | CVE-2021-44228

OpenSSL toolkit providing TLS/SSL protocols and general-purpose cryptographic library with command-line tools for key generation, certificate…

Proof-of-concept exploit for CVE-2018-6574, a remote code execution vulnerability in Go's 'go get' command. Demonstrates exploitation via malicious…

Remote Code Execution (RCE) vulnerability exists in Sourcecodester Budget and Expense Tracker System 1.0 that allows a remote malicious user to…

OpenSSL 1.1.1g source snapshot, a robust TLS/SSL and general-purpose cryptographic library with command-line tools for key generation, certificate…

Exploit code for CVE-2023-40127, a vulnerability in Android MediaProvider, demonstrating the flaw for security research and testing.

Demonstrates exploitation of CVE-2017-8046 in a Spring Boot application, including a SpEL injection payload and dependency-check verification for…

OpenSSL 1.1.0g cryptographic library and TLS toolkit, providing encryption, decryption, certificate management, and SSL/TLS protocol support for…