
next-js-auth-bypass
🔓 Next.js Auth Bypass Demo - Educational application demonstrating CVE-2025-29927 middleware authentication bypass vulnerability . ⚠️ For…

🔓 Next.js Auth Bypass Demo - Educational application demonstrating CVE-2025-29927 middleware authentication bypass vulnerability . ⚠️ For…

this is my simple article about CVE 2022-30190 (Follina) analysis. I use the lab from Letsdefend.

Simple poc for CVE-2024-48990 privilege escalation vulnerability with needrestart.

Docker-based demonstration of CVE-2021-44228 (Log4Shell) exploitation, featuring a vulnerable Java server, malicious LDAP server, and data…

A simple customization toolbox that utilizes CVE-2025-24203. Supports iOS 16.0 - iOS 18.3.2.

WARNING: This is a vulnerable application to test the exploit for the Really Simple Security < 9.1.2 authentication bypass (CVE-2024-10924). Run it…

Apache Struts CVE-2017-5638 RCE exploitation

Proof-of-concept exploit for CVE-2025-24054, a Windows Library (.library-ms) NTLM hash disclosure vulnerability. Generates a malicious .library-ms…

Dockerized environment to test pentest tools against CVE-2018-15473. Simple setup with docker-compose for vulnerability exploitation practice.

Spring Boot Log4j - CVE-2021-44228 Docker Lab

Docker-based lab to validate CVE-2021-44228 (Log4Shell) in Java apps, test mitigations, and simulate RCE via LDAP and HTTP payloads.

CVE-2022-23305 Log4J JDBCAppender SQl injection POC

docker for CVE-2022-42889

Dockerized Go app for testing the CVE-2021-44228 vulnerability

Lab environment and exploit script for CVE-2024-10924, demonstrating MFA bypass in WordPress via the Really Simple SSL plugin's skip_onboarding…

A simple Docker lab and Exploit setup for CVE-2021-3156 - "Baron Samedit".

A simple dockerize application that shows how to exploit the CVE-2022-42889 vulnerability.

Simple flask application to implement an intentionally vulnerable web app to demo CVE-2023-2822.