
CVE-2026-21858-n8n-FullChain
🛡️ Official AI Security Tool module for CVE-2026-21858 + CVE-2025-68613 (n8n "Ni8mare" Unauthenticated Arbitrary File Read & Expression Injection…

🛡️ Official AI Security Tool module for CVE-2026-21858 + CVE-2025-68613 (n8n "Ni8mare" Unauthenticated Arbitrary File Read & Expression Injection…

Exploit tool for CVE-2026-82222, an unauthenticated RCE in GiveWP WordPress plugin. Supports single-target and batch exploitation with…

A simple and efficent script to obfuscate python payloads to make it completely FUD

Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI、Nexus等框架\中间件\功能的exploits以及Java Security…

CVE-2026-31816 - Budibase Authentication Bypass to RCE

XSS2Shell (CVE-2026-64638) WordPress pre-auth XSS to RCE chain — PoC exploit + defensive audit tool + nuclei template

DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.

Kestra Unauthenticated RCE Exploit (CVE-2026-53576)

wp-file-manager RCE

带回显版本的漏洞利用脚本

Herramienta para evadir disable_functions y open_basedir

CVE-2025-55182 Interactive PoC - React Server Components RCE - Educational Security Research

React2Shell Exploitation Tool (CVE-2025-55182)

CVE-2018-9276 — PRTG Network Monitor < 18.2.39 Authenticated RCE. For educational purposes and authorized penetration testing only.

CVE-2026-33017 exploitation tool for Langflow <1.9.0. Features reverse shells, command execution, file operations, persistence, and automated…

Shattered is a tool and POC for the new CrushedFTP vulns, CVE Exploit Script: CVE-2025-2825 vs CVE-2025-31161

Security scanner for CVE-2025-55182 - Critical RCE vulnerability in React Server Components

The PoC demonstrates the potential for remote code execution by exploiting the identified security flaw.