
CVE-2025-55182-advanced-scanner-
Command-line scanner for detecting and exploiting CVE-2025-55182 (React Server Components RCE) in Next.js applications. Supports custom command…

Command-line scanner for detecting and exploiting CVE-2025-55182 (React Server Components RCE) in Next.js applications. Supports custom command…

Python3 exploit for CVE-2025-24893, a remote code execution vulnerability in XWiki Platform. Automatically detects HTTPS/HTTP, constructs a Groovy…

Command-line scanner for detecting and exploiting CVE-2025-55182 (RCE) in Next.js React Server Components. Supports batch scanning from domain lists…

Bash-based scanner for detecting and exploiting CVE-2025-55182 (React Server Components RCE) in Next.js applications. Supports custom command…

A simple and quick way to check if your SQL Developer by Oracle is vulnerable to SQL Injection (CVE-2023-3163), most commonly occurs when SQL…

Presents how to exploit CVE-2021-44228 vulnerability.

A simple application that shows how to exploit the CVE-2022-42889 vulnerability

Simple webapp that is vulnerable to Log4Shell (CVE-2021-44228)

Simple Spring Boot application vulnerable to CVE-2021-44228 (a.k.a log4shell)

Simple Vulnerable Spring Boot Application to Test the CVE-2021-44228

Docker-based demonstration of CVE-2021-44228 (Log4Shell) exploitation, featuring a vulnerable Java server, malicious LDAP server, and data…

Moment.js vuln lab

A simple dockerize application that shows how to exploit the CVE-2022-42889 vulnerability.

A simple demo application that shows how to reproduce the Ivanti EPMM pre-auth RCE vulnerability (CVE-2026-1281 / CVE-2026-1340) for educational and…

Proof-of-concept exploit for CVE-2025-4334, a privilege escalation vulnerability in the Simple User Registration WordPress plugin (<= 6.3), allowing…

CVE-2025-15495 - Arbitrary File Upload Leading to Remote Code Execution (RCE)

docker for CVE-2022-42889

Bypass Authentication