
CVE-2022-21894
baton drop (CVE-2022-21894): Secure Boot Security Feature Bypass Vulnerability

baton drop (CVE-2022-21894): Secure Boot Security Feature Bypass Vulnerability

CVE-2020-11651: Proof of Concept

Exploiting Edge's read:// urlhandler

Reproducer for CVE-2026-46585: Apache Camel camel-lucene QUERY header injection enabling authorization bypass / index data exfiltration (fixed in…

Exploiting misconfigured firebase databases

ES File Explorer Open Port Vulnerability - CVE-2019-6447

Extraction of iMessage Data via XSS

CVE-2026-60004 — Gitea/Forgejo Diffpatch Git Hook RCE. Bare clone → post-index-change hook injection. CVSS 9.8 | CWE-94 | Gitea < 1.27.1

Reproducer that exploits credential vending before location validation in Apache Polaris Iceberg REST, proving cross-tenant cloud reads and bucket…

Proof-of-Concept exploit for CVE-2026-15409 (SonicWall SMA 1000 RCE) via Erlang distribution over WebSocket. Achieves unauthenticated remote code…

Arbitrary File Read and DoS in vendure-ecommerce exploit

Reproducer for CVE-2026-42527 — Apache Camel permissive default ObjectInputFilter admits java.net.URL, enabling a DNS-based out-of-band side channel

Vulnerability checker for Callstranger (CVE-2020-12695)

Grafana Unauthorized arbitrary file reading vulnerability

CVE-2024-0044: a "run-as any app" high-severity vulnerability affecting Android versions 12 and 13

🎩 🤟🏻 [P1-$10,000] Google Chrome, Microsoft Edge and Opera - vulnerability reported by Maciej Pulikowski - System environment variables leak -…

Proof of concept of LibreOffice remote arbitrary file disclosure vulnerability

Exfiltrate sensitive user data from apps on Android 12 and 13 using CVE-2024-0044 vulnerability remotely