

CVE-2018-13379 mass exploiter for Fortinet FortiOS SSL VPN. Extracts credentials instantly, saves to CSV + PostgreSQL. Multi-threaded, no bullshit…

Proof-of-concept for CVE-2022-45782: predictable dotCMS password-reset tokens, with a token cracker and full exploit chain.

CVE-2023-6329 – Authentication bypass PoC for Control iD iDSecure ≤ 4.7.43.0

Mass Exploit Privileges Authentication (Subscriber to Administrator) - Wordpress Plugin ReviewX

CVE-2023-7028 POC && Exploit

Unauthenticated Privilege Escalation to Administrator via Role Form Field

Discovering CVE-2025-22381: Host Header Injection in the Aggie Open-Source Project

D-LINK ROUTER "MODEL NO: DIR-615" with "FIRMWARE VERSION:20.10" & "HARDWARE VERSION:T1

It is the details of CVE-2025-45466

This FORK of repository presents a proof-of-concept of CVE-2023-7028. I am only improve exploit usage


CVE-2025-2539 - WordPress File Away <= 3.9.9.0.1 - Arbitrary File Read

MotionEye v0.43.1b4 OS Command Injection

CVE-2020-35847, CVE-2020-35848 : Account Takeover


Sala - Startup & SaaS WordPress Theme <= 1.1.4 - Unauthenticated Privilege Escalation via Password Reset/Account Takeover