
coraza
Go-based Web Application Firewall library compatible with ModSecurity SecLang rules and OWASP Core Rule Set v4, providing real-time HTTP traffic…

Go-based Web Application Firewall library compatible with ModSecurity SecLang rules and OWASP Core Rule Set v4, providing real-time HTTP traffic…

WP Full Stripe Free <= 8.4.3 - Missing Authorization

Incorrect access control in /vfm-admin/ajax/sendfiles.php in Veno File Manager Project 4.4.9 allows an unauthenticated attacker to send emails from…

A comprehensive web application security testing toolkit that combines 10 powerful penetration testing features into one tool.

Axigen WebAdmin Improper Access Control Vulnerability

CVE-2025-68428 Proof of Concept


HAProxy-CVE-2023-45539-PoC

Popup Plugin For WordPress - ConvertPlus <= 3.5.30 - Missing Authorization to Authenticated (Subscriber+) Limited Options Update

CVE-2025-31651 PoC

Python-based scanner that detects debug mode misconfigurations in web applications using multiple HTTP methods and fingerprinting techniques to…

CVE-2025-29927 is a critical vulnerability in Next.js, a popular React-based web framework. The flaw exists in how the middleware feature handles…

Next.js Middleware Authorization Bypass



cve-2023-2245