
FUCKER
Penetration testing framework with AI-driven decision engine

Penetration testing framework with AI-driven decision engine
This is an exploit poc for CVE-2026-4480

Python exploit for CVE-2026-23744 in MCPJam Inspector 1.4.2, enabling remote code execution via reverse shell on target HTTP servers.

Python exploit for CVE-2025-32433 targeting Erlang SSH remote code execution with reverse shell and command execution capabilities.

Ruby-based exploit for CVE-2026-24061 that executes arbitrary commands on remote targets, supporting multi-threaded scanning and command injection…

Python exploit script for CVE-2019-9193, enabling remote code execution on vulnerable PostgreSQL databases via authenticated command injection.

Langflow 在对用户提交的“验证代码”做 AST 解析和编译时,在未做鉴权与沙箱限制的情况下调用了 Python 的 compile()/exec()(以及在编译阶段会评估函数默认参数与装饰器),攻击者可把恶意载荷放在参数默认值或装饰器里,借此在服务器上下文中执行任意语句(反弹…

This is an exploit for CVE-2024-23346 that acts as a "terminal" (tested on chemistry.htb)

Ray OS Command Injection RCE(Unauthorized)

Unauthenticated Blind Command injection in the enable_user function of DroboAccess v 2.1

Reverse Shell for CVE-2022-1388

Spring Cloud Gateway Actuator API SpEL Code Injection (CVE-2022-22947)



Webmin <=1.920 RCE

CVE-2017-10271

Weblogic(CVE-2017-10271)