
cve-2023-5044
Go-based proof-of-concept exploit for CVE-2023-5044 in ingress-nginx, enabling authenticated remote command execution by creating crafted Kubernetes…

Go-based proof-of-concept exploit for CVE-2023-5044 in ingress-nginx, enabling authenticated remote command execution by creating crafted Kubernetes…

CVE-2025-23266 – Fully Weaponized NVIDIA Container Toolkit Exploit

docker compose solution to run a vaccine environment for the log4j2 vulnerability CVE-2021-44228

POC for CVE-2024-4701

Vulnerability as a service: showcasing CVS-2015-5447, a DDoS condition in the bind9 software

Docker-based reproduction environment for CVE-2021-32804, a path traversal vulnerability in node-tar affecting npm, with step-by-step exploitation…

Docker simulating cve-2015-2208 vulnerability

Proof-of-concept exploit for CVE-2025-1974 (IngressNightmare) targeting Kubernetes Ingress-NGINX Admission Controller to achieve remote code…

Hands-on lab environment for exploiting CVE-2023-30212, a stored XSS vulnerability in OURPHP ≤7.2.0, using Docker containers for safe penetration…

Proof-of-concept demonstrating a Node.js permission model bypass (CVE-2026-21636) that allows network access via undici/fetch to local services,…

Copy Fail: 732 Bytes to Root on Every Major Linux Distribution.


Docker Model Runner container-to-host RCE / Escape: A critical vulnerability that allows for container-to-host code execution in the Docker Model…

Prisma Cloud Compute Admission rules to mitigate Kubernetes CVE-2020-8554

Docker images of Xpdf 4.04, vulnerable to CVE-2022-30524


Este script es para uso educativo y en entornos autorizados como HackTheBox. El uso contra sistemas sin permiso explícito es ilegal.

CVE-2026-40564: SSRF via FlinkSessionJob jarURI in apache/flink-kubernetes-operator. Self-contained reproducer that runs on a local kind cluster with…