
CVE-2025-24813
Apache Tomcat PUT JSP RCE - CVE-2025-24813 - Exploit & PoC

Apache Tomcat PUT JSP RCE - CVE-2025-24813 - Exploit & PoC

Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)

pocsuite3 is an open-sourced remote vulnerability testing framework developed by the Knownsec 404 Team.

Install and run Metasploit Framework 6 on Android via Termux with automated setup, payload generation (msfvenom), and full msfconsole access for…

This is a dockerized application that is vulnerable to the Spring4Shell vulnerability (CVE-2022-22965).

Docker-based lab and Python exploit for CVE-2013-2028, an Nginx 1.3.9 chunked-parser integer overflow, covering canary recovery, mprotect, and…

Docker-based WordPress lab reproducing CVE-2026-60137 and CVE-2026-63030 pre-auth RCE, with a Python PoC exploit for SQLi, privilege escalation, and…

ACE poc exploit for glibc cpio 2.13 through mmap chunk metadata curruption (CVE-2021-38185)

Elite exploitation toolkit for CVE-2025-55182 (React Server Components RCE). Async polymorphic payloads, advanced WAF/CDN bypass, proxy rotation,…

Proof-of-Concept for CVE-2025-33053 Exploiting WebDAV with .url file delivery to demonstrate realistic remote code execution. Includes a decoy PDF…

PoC and exploit for CVE-2022-22965 Spring4Shell

Repo contains the PoC and steps to reproduce cve 2023-38646

NiteeshPujari/CVE-2024-37054, This repository contains a Proof of Concept (PoC) a critical deserialization vulnerability in MLflow that allows for…

Dockerized proof-of-concept for CVE-2025-55182, a critical RCE in React Server Components via prototype pollution, with automated exploit scripts and…

Reproduction lab + URL-list scanner + PoC for CVE-2026-87902 / GHSA-7hp8-65ch-5whp — WordPress get_page_template() unauthenticated LFI to conditional…

(PoC) Python version of CVE-2019-11043 exploit by neex

OpenClaw Authentication Token Exfiltration

Authenticated Remote Code Execution via loadReader functionName code injection in DbGate