
CVE-2026-Wordpress
Educational CVE proof-of-concept collection targeting WordPress vulnerabilities, with setup scripts and lab guidance for authorized security research…

Educational CVE proof-of-concept collection targeting WordPress vulnerabilities, with setup scripts and lab guidance for authorized security research…

Collection of public proof-of-concept exploits for multiple CVEs, providing vulnerability demonstration code and references for security research and…

VEDAS-Driven Autonomous Generation + Community Contributions of Suricata & Nuclei Rules for over 12000 CVEs

Community-contributed JSON dataset of XSS payload vectors powering the PortSwigger XSS cheat sheet, with browser support and interaction metadata.

Developer-focused knowledge base of application security vulnerabilities with insecure vs secure code examples, prevention guidance, and OWASP/CWE…

Public security advisories and PoCs for vulnerabilities discovered in open-source web software, with root-cause analysis, CVE references,…

A collection of CVE exploits, including Python PoCs and README files with instructions for reproducing and exploiting each vulnerability.

Public write-up and disclosure timeline for CVE-2026-1769 (Stored XSS in Xerox CentreWare Web)

Stored XSS in Concrete CMS Community Store leads to admin dashboard takeover

Curated library of 78 offensive security SKILL.md modules that prime Claude with expert red team methodology across web, AD, wireless, cloud, and…

Educational proof-of-concept for Telerik padding oracle vulnerabilities (CVE-2026-13181-184) with scripts for authorized security testing and…

Defensive security research repository detailing CVE-2026-58138, an unauthenticated RCE in Conductor via GraalVM. Provides technical analysis,…

CVE-2026-61578, CVE-2026-61582, CVE-2026-61583, CVE-2026-61584, CVE-2026-61585, CVE-2026-61587, CVE-2026-61600, CVE-2026-61601, CVE-2026-61602,…

CVE-2024-57551, CVE-2024-57552, CVE-2024-57553 advisories by Aman Bahiniya

A DAST benchmark of intentionally-vulnerable apps with ground-truth answer keys for scoring scanners

Curated repository of security advisories and vulnerability disclosures researched and reported by the author, including CVE-2025-70336, a stored XSS…

Patcher utility that bypasses CryptoQuant premium tier restrictions to unlock advanced analytics and real-time data access, with a Python GUI for…

Curated collection of proof-of-concept exploits for web vulnerabilities including cross-site scripting and SQL injection, with detailed technical…