
CVE-2025-1974-poc
PoC of CVE-2025-1974, modified from the world-first PoC~

PoC of CVE-2025-1974, modified from the world-first PoC~

Dockerized proof-of-concept exploit for Ghostscript -dSAFER sandbox bypass vulnerability (CVE-2018-16509), enabling remote code execution via…

Proof-of-concept demonstrating CVE-2024-23653, a BuildKit container escape via a malicious Dockerfile frontend, using buildctl to inspect process…

XZ Utils CVE-2024-3094 POC for Kubernetes

PoC for CVE-2026-44848: Portainer missing authorization on Docker plugin endpoints -> host RCE (GHSA-rrmm-9v76-h3p4). Stdlib-only Python.

PoC for CVE-2026-58455: Dockwatch <=0.6.567 unauthenticated RCE. Stdlib-only Python.

Reproduction of CVE-2019-18634, a sudo privilege escalation exploit via buffer overflow in pwfeedback. Includes Docker-based environment for…

Log4Shell Docker Env

Docker API CVE-2025-9074 PoC (Proof-Of-Concept). A sophisticated exploitation framework for CVE-2025-9074, targeting unauthenticated Docker API…

Dockerized proof-of-concept for Joomla unauthorized access vulnerability (CVE-2023-23752) enabling database credential extraction via API endpoint.

Exploit for CVE-2019-11881 (Rancher 2.1.4 Web Parameter Tampering)

Dockerfile containing all the necessary setup files to demo the exploit

Step-by-step tutorial for detecting CVE-2024-3094 (XZ Backdoor) in container images using Trend Micro Vision One TMAS CLI, with automated scanning…

本项目基于 Docker 搭建了一个用于复现和测试 sudo 本地权限提升漏洞 CVE-2025-32463 的实验环境。

This repository includes everything needed to run a PoC exploit for CVE-2025-32375 in a Docker environment. It runs the latest vulnerable version of…

CVE-2022-0492-Container-Escape

Nuclio Dashboard (NOP mode) accepts unauthenticated POST /api/functions. The spec.handler field isn't path-validated, so…

Proof-of-concept demonstrating an authorization bypass in Traefik's Kubernetes Gateway provider (CVE-2026-54761) via a crossProviderNamespaces…