
CVE-2026-38526
Python PoC exploiting CVE-2026-38526 in Krayin CRM <= 2.2.x: authenticated PHP webshell upload via /admin/tinymce/upload leading to remote code…
ctfexploitationpayload-development+5

Python PoC exploiting CVE-2026-38526 in Krayin CRM <= 2.2.x: authenticated PHP webshell upload via /admin/tinymce/upload leading to remote code…

Python PoC exploiting CVE-2026-38526 in Krayin CRM <= 2.2.x: authenticates, uploads a PHP webshell via /admin/tinymce/upload, and executes commands…


Proof-of-concept exploit for CVE-2025-24813, a Java deserialization vulnerability in Apache Tomcat. Generates malicious serialized payloads and…

A short demo of CVE-2021-44228

Proof-of-Concept for Drupal CVE-2018-7600 / SA-CORE-2018-002