


Docker PoC for CVE-2025-32462 & CVE-2025-32463 (sudo), based on Stratascale CRU research.


Apache HTTPd (2.4.49) – Local File Disclosure (LFI)

Kirby < 3.9.6 XML External Entity exploit

SQL injection in QuerySet.annotate(), aggregate(), and extra()

* React2Shell-CVE-2025-55182

Presents how to exploit CVE-2021-44228 vulnerability.

* React2Shell-CVE-2025-55182


CVE-2022-1388 - F5 Router RCE Replica

Explorations of CVE-2024-49368 + Exploit Development

Challenge based on CVE-2021-22204 where users send a malicious file to a web application to gain RCE