
CVE-2026-27971_POC
CVE-2026-27971 qwik rce

CVE-2026-27971 qwik rce

CVE-2026-8836 — lwIP SNMPv3 stack-based buffer overflow PoC (CVSS 9.8)

CVE-2026-53753 — Crawl4AI <0.8.7 unauthenticated RCE (AST sandbox escape via gi_frame.f_back). Lab + PoC, verified e2e.

CVE-2025-57819 FreePBX SQLi RCE PoC

CVE-2023-34468 Apache NiFi ExecuteSQL H2 RUNSCRIPT RCE PoC

Exploitability PoC for CVE-2026-9558 (SSTI Mautic Theme)

Python-based proof-of-concept exploit for CVE-2024-6387 (OpenSSH regreSSHion) targeting glibc-based 32-bit Linux systems via heap manipulation and…

PoC Java exploit based on http://www.contextis.com/research/blog/java-pwn2own/

CVE-2025-24813 Apache Tomcat RCE Proof of Concept (PoC)

PoC - Binary patches for CVE-2015-3864 (NOT for production, use at your own risk)

Working PoC for CVE-2025-32432 - Craft CMS <= 5.6.16 unauthenticated RCE via Yii2 PhpManager gadget + nginx access.log poisoning

Reverse Engineered based on CISA disclosure of new CVE

CVE-2026-66374: Knot Resolver 6.3.0 DNS-over-QUIC heap overflow (RCE)

Proof-of-concept demonstrating OS command injection in Warp's legacy SSH background command handling (CVE-2026-48732). Includes local simulation of…

Go-based exploit for CVE-2018-6574 using a shared library (attack.so) to demonstrate remote code execution vulnerability.

Exploit scripts for CVE-2025-62507, a stack buffer overflow in Redis 8.2.0. Provides x86-64 and ARM64 ROP chain exploits with shellcode generation…

CVE-2026-23744 Reverse shell

CVE-2026-63030 & CVE-2026-60137 Wp2shell Poc