
Glass-Cage-iOS18-CVE-2025-24085-CVE-2025-24201
Glass Cage is a zero-click PNG-based RCE chain in iOS 18.2.1, bypassing LockDown mode protection by exploiting ImageIO (CVE-2025-43300), then…

Glass Cage is a zero-click PNG-based RCE chain in iOS 18.2.1, bypassing LockDown mode protection by exploiting ImageIO (CVE-2025-43300), then…

exploitdb-bin-sploits // Exploit-Database's binary exploits (what was located in the /sploits directory)

It's only hitting vulnerable path in termdd.sys!!! NOT DOS

Exploit for CVE-2025-39946, a bug in the Linux kernel's net/tls subsystem.

Proof-of-concept exploit for CVE-2021-4034, a local privilege escalation in polkit's pkexec, demonstrating exploitation with simple C helpers and a…

pwnkit: Local Privilege Escalation in polkit's pkexec (CVE-2021-4034)

CVE-2025-21479 PoC for ZFlip5 with Knox in the way!(˶˃ ᵕ ˂˶)

Proof-of-concept exploit for CVE-2026-32223, a heap-based buffer overflow in Windows USB print driver (usbprint.sys), achieving local privilege…

Exploit for CVE-2025-37947 in ksmbd, a Linux kernel SMB server, causing an out-of-bounds write. Includes BPF tracer, QEMU setup, and minimal PoC…

PoC for the Untrusted Pointer Dereference in the ks.sys driver

This module exploits a vulnerability in WinRAR (CVE-2023-38831). When a user opens a crafted RAR file and its embedded document, a script is…

CVE-2021-21972 Unauthorized RCE in VMware vCenter metasploit exploit script

Metasploit modules in testing

Heap OOB write in MariaDB JSON_SCHEMA_VALID() → persistent privilege escalation (lab-assisted)

An authentication bypass using an alternate path or channel in Fortinet product

A remote denial-of-service zero day vulnerability in Comodo Internet Security firewall

Proof-of-concept exploit for CVE-2022-30333 path traversal in unRAR, generating malicious .rar files to plant payloads at arbitrary locations.…

Metasploit module and Python script to generate SWF payloads exploiting CVE-2018-15982, a use-after-free vulnerability in Adobe Flash Player enabling…