
CVE-2025-49132
Minimal proof-of-concept exploit for CVE-2025-49132 in Pterodactyl panels; reads PHP files to extract database credentials and enable unauthorized…

Minimal proof-of-concept exploit for CVE-2025-49132 in Pterodactyl panels; reads PHP files to extract database credentials and enable unauthorized…

Open Source C&C Specification

WooCommerce Designer Pro <= 1.9.28 - Unauthenticated Arbitrary File Read

[No CVE] Apache Solr Arbitrary File Read

marimo is a reactive Python notebook. Prior to 0.23.0, Marimo has a Pre-Auth RCE vulnerability

PoC exploits for CVE-2026-52824 (GHSA-jr9p-4h4j-6c58) — Kimai time-tracking default APP_SECRET authentication bypass affecting versions ≤ 2.57.0


chusa - 注射 - the new generation of sqlmap

Extending of metasploit-framework

This repository documents the process of identifying, analyzing, and gathering Open Source Intelligence (OSINT) on a specific security vulnerability…

Uses Shodan API to pull down C2 servers to run known exploits on them.

MicroWeber Unauthenticated User Database Disclosure - CVE-2020-13405

CVE-2025-68613

tac_plus Pre-Auth Remote Command Execution Vulnerability (CVE-2023-45239 & CVE-2023-48643)

CVE-2023-25157 - GeoServer SQL Injection - PoC


PoC, Hunting React2Shell about CVE-2025-55182

Script para validar CVE-2020-5902 hecho en Go.