
Vulnerability Database -- VulnBook
Static vulnerability findings tracker with parallel search across 11 CVE databases, EPSS enrichment, CISA KEV badges, coordinated disclosure…

Static vulnerability findings tracker with parallel search across 11 CVE databases, EPSS enrichment, CISA KEV badges, coordinated disclosure…

Awesome free cloud native security learning labs. Includes CTF, self-hosted workshops, guided vulnerability labs, and research labs.

Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.

Threat intelligence report repository for CVE-2026-9830, an authentication bypass vulnerability in BookingPress Pro WordPress plugin, with detailed…

CVE-2019-19781 - Remote Code Execution on Citrix ADC Netscaler exploit

Check for and remediate conditions that make an IOS-XE device vulnerable to CVE-2023-20198

🔒 Spring4Shell Firewall Defense — Cybersecurity Incident Simulation This project is part of a Cybersecurity Job Simulation I completed in August…

Detection and Remediation of the Follina MSDT Vulnerability (CVE-2022-30190)

Check for events that indicate non compatible devices -> CVE-2020-1472

Windows Elevation of Privilege Vulnerability CVE-2021-36934

CVE-2025-31324 & CVE-2025-42999 vulnerability and compromise assessment tool

MICROS Honeypot is a low interaction honeypot to detect CVE-2018-2636 in the Oracle Hospitality Simphony component of Oracle Hospitality Applications…

A Smart Log4Shell/Log4j/CVE-2021-44228 Scanner

A mitigation for CVE-2021-44228 (log4shell) that works by patching the vulnerability at runtime. (Works with any vulnerable java software, tested…

Detection of the React Server Actions Exploit vector – CVE-2025-55182 / CVE-2025-66478


Hands-on vulnerability management case study: how Wazuh flagged a real SSRF (CVE-2025-68616) in WeasyPrint, and how I reproduced and patched it.

Real-world attack analysis of CVE-2025-55182 (React2Shell) - React Server Components RCE vulnerability