
CVE-2026-21018-OPC-UA-Authentication-Bypass-via-None-Security-Policy
Proof-of-concept exploit for OPC UA authentication bypass using None security policy, including a simulated server to demonstrate unauthorized…

Proof-of-concept exploit for OPC UA authentication bypass using None security policy, including a simulated server to demonstrate unauthorized…

Missing Authorization in inseriswiss inseri core inseri-core allows Exploiting Incorrectly Configured Access Control Security Levels.This issue…

Veno File Manager Project Veno File Manager Project 4.4.9 is vulnerable to Incorrect Access Control in admin-head-updates.php

A security-hardened fork of Crowdsignal Forms. Patches CVE-2025-69015 (Broken Access Control), modernizes for PHP 8.2+, and enforces strict…

OWASP Enterprise Security API library providing security controls for Java web applications, including authentication, access control, input…

Proof-of-concept exploit for CVE-2023-31704: Incorrect access control in Sourcecodester Online Computer and Laptop Store 1.0 allows remote privilege…

Book Store Management System v1.0 - Incorrect Access Control

Kubernetes policy engine with OPA-based admission control, mutation, and audit for enforcing security and compliance configurations.

Security testing tool for analyzing HTTP 403 responses and identifying access control misconfigurations in web applications.

Full-stack security OS for AI agents with five-layer defense-in-depth architecture covering foundation scan, input sanitization, cognition…

Open security scanner and self-hosted control plane for AI, MCP, and cloud. One evidence model — run scans in your environment, centralize findings,…

CVE-2023-22515 - Broken Access Control Vulnerability in Confluence Data Center and Server

PoC Modbus TCP exploit demonstrating spoofed writes to read-only coils in simulated PLCs, highlighting SCADA/ICS access control flaws.

PoC for CVE-2026-56423: MISP deleteSelection broken access control (CWE-862, contributor hard-deletes other orgs' Event Reports/Sharing Groups, CVSS…

Proof-of-concept exploit for CVE-2021-24006, demonstrating improper access control bypass in FortiManager SD-WAN Orchestrator (versions 6.4.0-6.4.3).…

Issabel-pbx version 4.0.0-6 contains a Broken Access Control vulnerability that manifests as unauthenticated Directory Listing on the web interface.

Broken Access Control in OpenEyes 3.5.1

CVE-2021-33104 - Improper access control in the Intel(R) OFU software