
wePWNise
WePWNise generates architecture independent VBA code to be used in Office documents or templates and automates bypassing application control and…

WePWNise generates architecture independent VBA code to be used in Office documents or templates and automates bypassing application control and…

spring4shell | CVE-2022-22965

CVE-2023-38831 (PoC) - WinRAR Exploit

CVE-2023-46604-RCE exploit with Linux reverse shell payload

A short and sweet simple exploit script for the CVE-2012-2982 Authenticated RCE vulnerability in the /file/show.cgi/bin endpoint.

Python 3 implementation of an existing CVE-2011-3556 proof of concept (PoC).

This is my implementation of JSRat.ps1 in Python so you can now run the attack server from any OS instead of being limited to a Windows OS with…

This is a python written PoC of a recent vulnerability in a wordpress plugin. More information on that here

NodeXP - A Server Side Javascript Injection tool capable of detecting and exploiting Node.js vulnerabilities

cve-2026-23744 python exploit

Remote Command Execution exploit for Rejetto HTTP File Server 2.3.x (CVE-2014-6287) rewritten in Python 3 for modern offensive security testing.

React2Shell is a Python-based proof-of-concept tool designed to exploit CVE-2025-55182 and CVE-2025-66478, both impacting Next.js applications using…

Automated Reverse Shell Exploit via WebSocket | Havoc-C2-SSRF with RCE

# CVE-2025-0282: Remote Code Execution Vulnerability in [StorkS]

Python-based PoC exploit for Apache 2.4.49 path traversal and RCE (CVE-2021-41773). Features dynamic command execution, double-percent encoding…

TypeScript PoC for CVE-2024-54887 (TP-Link TL-WR940N authenticated RCE)

Python3 exploit for Fuel CMS 1.4.1 Remote Code Execution (CVE-2018-16763) with Reverse Shell.

A custom Python-based proof-of-concept (PoC) exploit targeting Text4Shell (CVE-2022-42889), a critical remote code execution vulnerability in Apache…