


PoC for CVE-2025-55319

Full black-box penetration test against SecOS:1 (VulnHub) — CSRF exploitation, privilege escalation via CVE-2015-1328 (OverlayFS), post-exploitation

# CVE-2025-27591 PoC — Below Local Privilege Escalation This repository contains a Proof of Concept (PoC) demonstrating the local privilege…

Spring4Shell (CVE-2022-22965) 漏洞環境搭建與 CTF 題目

ubuntu new PrivEsc race condition vulnerability


Serverside Template Injection (SSTI) RCE - THM challenge "whiterose"

CVE-2025-4138 - Python Arbitrary file write outside extraction directory


Proof of Concept exploit for the Joomla 3.7.0 com_fields SQL injection vulnerability (CVE-2017-8917), demonstrating detection, enumeration, and data…

powerfull rust cve-2025-55182-scanner used for ctf & ethical purpose only

CVE-2025-27591 – Meta below symlink following local privilege escalation (HackTheBox CTF)

CVE-2025-49113 – Roundcube ≤1.6.10 post-auth RCE via PHP object deserialization (HackTheBox CTF)

CVE-2025-24893 – XWiki SSTI unauthenticated RCE exploit (HackTheBox CTF)

JWT Key Confusion PoC (CVE-2015-9235) Written for the Hack the Box challenge - Under Construction