
CVE-2026-37072
Veno File Manager Project Veno File Manager Project 4.4.9 is vulnerable to Incorrect Access Control in admin-head-updates.php

Veno File Manager Project Veno File Manager Project 4.4.9 is vulnerable to Incorrect Access Control in admin-head-updates.php

Exploit for CVE-2021-43857 in Gerapy v0.9.7, providing a reverse shell via authenticated project creation and command injection.

This is a simple Shiro-basic project .Just for pentest env

In this project, I exploited the CVE-2024-27198-RCE vulnerability to perform a remote code execution (RCE) attack on a vulnerable TeamCity server.

The goal of this project was to conduct a security audit of a blog recently launched by Ackme Support Incorporated, identifying any critical…

DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely

Apache Shiro CVE-2022-32532

Demonstrate exploitation of Signal K Server CVE-2025-66398 allowing unauthenticated attackers to inject backdoor and enable remote code execution.

CVE-2026-0257 - PAN-OS

Python exploit script for CVE-2024-1709, an authentication bypass vulnerability in ConnectWise ScreenConnect. Adds a new administrative user to the…

Educational lab demonstrating CVE-2022-39227 JWT authentication bypass in python-jwt. Step-by-step attack against vulnerable and patched Flask apps…

Security research — PoC for local root privilege escalation on macOS Mavericks 10.9.

Proof-of-concept exploit for CVE-2014-3120 Elasticsearch remote code execution, enabling file read and append on the host system via browser-based…

An Attempt to Port BlueKeep PoC from @Ekultek to actual exploits

The Browser Exploitation Framework Project

This project hosts security advisories and their accompanying proof-of-concepts related to research conducted at Google which impact non-Google owned…


kfd, short for kernel file descriptor, is a project to read and write kernel memory on Apple devices.