
CVE-2018-19131
Proof-of-Concept exploit of CVE-2018-19131: Squid Proxy XSS via X.509 Certificate

Proof-of-Concept exploit of CVE-2018-19131: Squid Proxy XSS via X.509 Certificate

Simple poc of CVE-2018-8495 Microsoft Edge Remote Code Execution

CVE-2026-33267 — Apache Traffic Server @ header internal-metadata spoof (CVSS 10.0). Verified: @ headers leak to plugins on 10.1.2, stripped on 10.1.4

for 供養


CVE-2018-25031 tests

Burp extension for wordpress security scanning

A lightweight CLI tool for systematically detecting and exploiting race conditions in web applications, APIs, and modern services.

PoC exploit for CVE-2024-28397 – Remote Code Execution in pyload-ng via js2py sandbox escape

Reproducer for CVE-2026-48206: Apache Camel camel-jira IssueKey (and other non-Camel-prefixed) header injection driving arbitrary JIRA issue…

PoC + analysis for CVE-2026-54917 — SeaweedFS S3 gateway cross-bucket path traversal (CVSS 10.0, <4.30). Read/write any bucket via .. in the object…

GLPI Privilege Escalation via authtype Manipulation PoC - CVE-2026-53625. Ethical PoC for the GLPI vulnerability allowing a Technician to take full…

CVE-2026-9198利用代码

Security Advisory: HTTP Request Smuggling via Transfer-Encoding Desynchronization (rouille)

RAGFlow 三洞审计工具 (CVE-2026-28797 / CVE-2026-24770 / CVE-2025-69286)

Scanner: CVE-2026-42208 LiteLLM SQL Injection — Python scanner for BerriAI LiteLLM proxy instances

WordPress Pre-Auth RCE Exploit + Scanner + WAF Bypass | CVE-2026-63030 + CVE-2026-60137 | Go + Python + Metasploit modules + Docker lab

A PoC exploit for CVE-2021-4191 - GitLab User Enumeration.