
POC-CVE-2025-55182
POC for CVE-2025-55182 React2Shell

POC for CVE-2025-55182 React2Shell

Demonstrates CVE-2021-44228 (Log4Shell) exploitation via LDAP JNDI injection with attacker, payload, and victim components to test JDK and Log4j…

Reproduction of CVE-2026-63030 and CVE-2026-60137, an unauthenticated RCE chain in WordPress Core combining REST API batch endpoint auth bypass with…

Proof-of-concept exploit for CVE-2026-19679, an insufficient filename sanitization vulnerability in audit-file upload leading to command injection.…

Proof-of-concept exploit for authenticated command injection in file upload processing, demonstrating two-step chain via REST API with blind timing…

💥 Python Exploit for CVE-2025-49113 | Roundcube Webmail RCE via PHP Object Injection

Configurable Python PoC for CVE-2026-54433, a stored XSS in Roundcube's plain-text email renderer. Generates crafted .eml, sends via SMTP, and…

CVE-2025-48593

Test & Analyze the CVE-2025-55182 vulnerability within Next.js Server Actions

Explicação + Lab no THM