
CVE-2024-3660-PoC
A PoC for CVE-2024-3660. Arbitrary Code Execution in Keras.

A PoC for CVE-2024-3660. Arbitrary Code Execution in Keras.

(CVE-2017-9841) PHPUnit_eval-stdin_php Remote Code Execution

Simple webapp that is vulnerable to Log4Shell (CVE-2021-44228)

SQL Injection vulnerability in MikroORM

Hibernate ORM Second-Order SQL Injection

Docker-based lab demonstrating CVE-2018-3760 path traversal in Ruby on Rails Sprockets, with POC and environment setup for security testing and…

CVE-2026-33017 exploitation tool for Langflow <1.9.0. Features reverse shells, command execution, file operations, persistence, and automated…

CVE-2022-22965

Integer overflow in Apple ImageIO WebP parsing (macOS/iOS)

A security research tool for simulating targeted phishing campaigns using CVE-2024-21413 (Moniker Link).

Mass vulnerability scanner for CVE-2026-49049 – Unauthenticated Remote Code Execution in Joomla Helix3 plugin. Multi‑threaded, detects both executed…

CVE Reproduction: cve-2026-0770-langflow_rce_reproduction

CVE-2026-49049 Helix3 (JoomShaper) Joomla Unauthenticated AJAX RCE Scanner

Full Metasploit exploitation walkthrough against Metasploitable2 — vsftpd backdoor, Samba CVE-2007-2447, UnrealIRCd backdoor, Netcat exfiltration,…

PoC of CVE-2025-27515

Simulates CVE-2026-21011, a Log4j-style JNDI injection in a custom logger: parses ${jndi:...} patterns and demonstrates LDAP-triggered remote code…

cPanelSniper STABLE - CVE-2026-41940 optimized for 10M+ targets

Arbitrary File Disclosure Vulnerability in Icinga Web 2 <2.8.6, <2.9.6, <2.10