
CVE-2015-4670 Vuln App
This app is the standard Asp.Net default web app with an old version of the AjaxControlToolkit, put here for those interested in CVE-2015-4670

This app is the standard Asp.Net default web app with an old version of the AjaxControlToolkit, put here for those interested in CVE-2015-4670

intentionally vuln web Application Security in django

PoC for the recent critical vuln affecting OpenSSH versions < 9.3p2

Wordpress 5.8.2 CVE-2022-21661 Vuln enviroment POC exploit


Containerized and deployable use of the CVE-2019-14287 vuln. View README.md for more.

Vuln Apache Struts with splunk

Moment.js vuln lab

Vuln lab for CVE-2024-3408 - D-Tale Authentication Bypass & RCE

Laboratorio criado para PenTest da Vuln CVE 2024-214113(MONIKER LINK).

Vuln lab: MainWP Dashboard <= 3.1.2 Unauthenticated Stored XSS

lazy way to create CVE-2023-38831 winrar file for testing

This repo is poc of cve-2026-18963. Please use it on legal products (lab, local,...).

EXPOSURE demo target: Tomcat (CVE-2016-0714) + Apache Rave (CVE-2013-1814) + Java filter-padding deps

Una CTF, in formato DSP-compliant, basata sulla CVE-2025-29927 di nextjs.