
CVE-2025-5781
Proof-of-concept exploit for CVE-2025-57819 in FreePBX: SQL injection in the AJAX API to execute arbitrary PHP, create a persistent webshell, and…

Proof-of-concept exploit for CVE-2025-57819 in FreePBX: SQL injection in the AJAX API to execute arbitrary PHP, create a persistent webshell, and…

🛡️ CVE-2026-64638 - WordPress Security Assessment Suite (CVSS 8.9) | WordPress 4.7.0-7.0.2 pentest toolkit. Includes vulnerability assessment &…

CVE-2026-32941 PoC - Sliver Remote OOM

IBM Langflow Unauthenticated RCE via Auto-Login Bypass

PoC for Unauthenticated RCE in FortiSandbox via CVE-2026-39808

Unauthenticated RCE in dedoc/scramble — PoC, Nmap NSE & Nuclei template.

CVE-2026-41940

CVE-2021-22986 F5 BIG-IP iControl 命令执行漏洞

Reproduction of cve-2024-3400-panos_rce_reproduction


Some debug notes and exploit(not blind)


openDCIM install.php SQLi to RCE chain (CWE-862 + CWE-89 + CWE-78)

Remote code execution vulnerability in OpenEMR <8.0.0.2.

