
OpenPLC-CVE-2021-31630-RCE
Python 3.13+ proof-of-concept exploit for CVE-2021-31630, enabling authenticated remote code execution on OpenPLC v3 via malicious hardware layer…

Python 3.13+ proof-of-concept exploit for CVE-2021-31630, enabling authenticated remote code execution on OpenPLC v3 via malicious hardware layer…

Proof-of-concept PHP exploit for CVE-2025-49113, a remote code execution vulnerability in Roundcube Webmail via PHP object deserialization in the…

Langflow, Remote Code Execution (RCE) via Cron Job Injection through Path Traversal

Proof-of-concept exploit for CVE-2026-26216, demonstrating unauthenticated remote code execution via hook injection in Crawl4AI's Docker deployment.…

SpEL Injection via Unescaped Filter Key in SimpleVectorStore Leads to Remote Code Execution

Proof-of-concept exploit for CVE-2026-58116 demonstrating remote code execution in LLaMA-Factory WebUI via trust_remote_code model path injection.…

This repository contains some python scripts implementation for the MS08-067 Windows Server Service vulnerability (CVE-2008-4250). This is a classic…

CVE-2012-1823 - PHP CGI Argument Injection Remote Code Execution (RCE)

Single click Remote Code Execution exploit targeting Gajim on devices with KDE Plasma.

Proof-of-concept exploit and Docker lab for CVE-2026-35194, an Apache Flink SQL code injection enabling remote code execution on TaskManagers via the…

This repository contains a proof-of-concept (PoC) exploit for CVE-2026-38751, affecting OpenSTAManager ≤ 2.10. The vulnerability allows an…

Handlebars.js AST Injection Remote Code Execution Vulnerability

Proof of Concept for exploiting the CVE-2022-22965 (Spring4Shell) vulnerability in an isolated environment, with Remote Code Execution (RCE)…

A critical Remote Code Execution (RCE) vulnerability affecting the React Server Components (RSC) implementation within multiple packages including.

The Backup Migration plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.3.7 via the…

Automated Python exploit for Camaleon CMS arbitrary file upload vulnerability (CVE-2024-46986). Supports reverse shell and command execution payloads…

Exploiting CVE-2014-7205 by injecting arbitrary JavaScript resulting in Remote Code Execution.

Proof-of-concept exploit for CVE-2026-54088, a pre-authentication OS command injection in File Browser <=2.63.5. Demonstrates shell injection via…