
CVE-2021-29447-Authenticated-XXE-WordPress-5.6-5.7
POC to exploit WordPress 5.6-5.7 (PHP 8+) Authenticated XXE Injection.
data-exfiltrationexploitationinformation-gathering+3

POC to exploit WordPress 5.6-5.7 (PHP 8+) Authenticated XXE Injection.

Intentionally vulnerable PHP app with Nginx/PHP-FPM setup for reproducing CVE-2019-11043, including Docker and Kubernetes deployment,…

CVE-2026-27579 - CORS Misconfiguration – Arbitrary Origin with Credentials → Authenticated Cross-Origin Account Data Exposure

Data leak checker & OSINT Tool

Exploiting misconfigured firebase databases

A C2 framework for initial access in Go