
CVE-2026-38192
pluck-CMS-4.7.20-code-injection-vulnerability

pluck-CMS-4.7.20-code-injection-vulnerability

Detect exposed API keys on GitHub commits.

Disclosure for CVE-2025-13156

Post Saint <= 1.3.1 plugin for WordPress Arbitrary File Upload

Proof of Concept for CVE-2020-14295.

PoC for CVE-2020-0601 - CryptoAPI exploit

The code for personally reproducing the corresponding vulnerability

Detect and patch vulnerable Apache Commons Text in Java JAR/WAR artifacts; fingerprint classes and scan bytecode for CVE-2022-42889 (Text4Shell) call…

Detection for CVE-2025-4427 and CVE-2025-4428

Additional resources for leaking and exploiting ObjRefs via HTTP .NET Remoting (CVE-2024-29059)

A fast, portable, and lightweight COSE + CBOR implementation for embedded systems. Supports PQC, FIPS 140-3, DO-178, and MISRA C. Powered by wolfSSL.

A simple PoC for WordPress RCE (author priviledge), refer to CVE-2019-8942 and CVE-2019-8943.

CVE-2023-46818 Python3 Exploit for ISPConfig <= 3.2.11 (language_edit.php) PHP Code Injection Vulnerability

GitHub Action for Offensive360 SAST scans and SARIF results. See the open-source program for eligibility and setup.

Proof-of-concept exploit for CVE-2024-4577, a PHP CGI argument injection vulnerability enabling remote code execution via crafted HTTP requests.

Educational examples porting Linux kernel vulnerabilities to Rust, featuring intentionally vulnerable code and exploits for learning kernel security…

Scripts for Analysis of a RCE in Moodle Calculated Questions (CVE-2024-43425)

PoC of CVE-2025-22710