
CVE-2024-48914
Arbitrary File Read and DoS in vendure-ecommerce exploit

Arbitrary File Read and DoS in vendure-ecommerce exploit

CVE-2026-16540 — Simply Schedule Appointments < 1.6.12.6 Unauthenticated Appointment Data Disclosure and Mass Deletion

This binary POC automates the exploitation of CVE-2024-36991 by sending crafted curl requests to a vulnerable Splunk instance. It retrieves sensitive…

Premium Age Verification / Restriction for WordPress <= 3.0.2 - Unauthenticated Arbitrary File Read and Write

Exploit woocommerce SQLI and grab user and password hash

Language Sloth Sloth Bot 1.0 is vulnerable to Directory Traversal in the gif() and png() functions. The functions build file paths using unsanitized…

Info and exploit for CVE-2023-29930: blind file read/write in Genesys TFTP provisioning server configuration

A technical case study and exploitation analysis of the Authentication Bypass vulnerability in TP-Link TL-WR840N firmware (CVE-2018-12633).

Unauthenticated Jenkins CLI exploit scanner for CVE-2024-23897 that detects vulnerable versions and reads arbitrary files from the controller through…

Spider entire networks for juicy files sitting on SMB shares. Search filenames or file content - regex supported!

a recon tool that finds sensitive data inside the screenshots uploaded to prnt.sc

Grafana Unauthorized arbitrary file reading vulnerability

An AI-powered Personal Identifiable Information (PII) scanner.

Tool to automatic leak information using Hacking with engine searches

Steal/Inject Chrome cookies over the DevTools (--remote-debugging-port) protocol.

Extraction of iMessage Data via XSS

ActionScript Proof of Concept to perform cross-domain reads

A standalone Blind XSS Script.