
CVE-2026-54433
Configurable Python PoC for CVE-2026-54433, a stored XSS in Roundcube's plain-text email renderer. Generates crafted .eml, sends via SMTP, and…

Configurable Python PoC for CVE-2026-54433, a stored XSS in Roundcube's plain-text email renderer. Generates crafted .eml, sends via SMTP, and…

The Outlook HTML Leak Test Project

CVE-2024-42009 Proof of Concept

Microsoft Outlook Information Disclosure Vulnerability (leak password hash) - Expect Script POC

PowerShell script to exploit CVE-2023-23397 by sending or saving malicious Outlook calendar invitations that trigger NTLM credential leakage via the…

Roundcube mail server exploit for CVE-2024-37383 (Stored XSS)

Paperweight scans your inbox to map your digital footprint, then helps you take back control and delete your data. Local-first and open source.

A toolkit to attack Office365

C# tool for red team operations that extracts contacts, mailbox metadata, and searches emails via Outlook COM object, with built-in Programmatic…