
Grafana-CVE-2021-43798
Grafana Unauthorized arbitrary file reading vulnerability

Grafana Unauthorized arbitrary file reading vulnerability

Extraction of iMessage Data via XSS

An unauthenticated data extraction vulnerability in Kyocera printers, which allows for recovery of cleartext address book and domain joined passwords

CVE-2024-30056 Microsoft Edge (Chromium-based) Information Disclosure Vulnerability


CVE-2024-34693: Server Arbitrary File Read in Apache Superset

Unauthenticated SQL injection exploit for Ghost CMS Content API (CVE-2026-26980); dumps database tables from SQLite/MySQL with active/passive checks…

CosmicSting: critical unauthenticated XXE vulnerability in Adobe Commerce and Magento (CVE-2024-34102)

CVE-2024-42009 Proof of Concept

Arbitrary File Read and DoS in vendure-ecommerce exploit

This script exploits a stored XSS vulnerability (CVE-2024-42009) in Roundcube Webmail version 1.6.7. It injects a malicious payload into the webmail…

Proof of Concept of Libreoffice file exfiltration vulnerability in Big Blue Button

POC to exploit WordPress 5.6-5.7 (PHP 8+) Authenticated XXE Injection.

Reverse Engineered based on CISA disclosure of new CVE

This repository contains a Proof of Concept (PoC) exploit for the Stored Cross-Site Scripting (XSS) vulnerability in Termix, which can lead to Local…

Zero-day Vulnerability in ZKTEco biometric fingerprint reader.

Info and exploit for CVE-2023-29930: blind file read/write in Genesys TFTP provisioning server configuration