
CVE-2021-3129
CVE-2021-3129-Laravel Debug mode

CVE-2021-3129-Laravel Debug mode

CVE-2024-0195 Improper Control of Generation of Code ('Code Injection')

CVE-2020-26217 && XStream RCE

[CVE-2020-0688] Microsoft Exchange Server Fixed Cryptographic Key Remote Code Execution (RCE)

Wux Blog Editor <= 3.0.0 - Unauthenticated Arbitrary File Upload

CVE-2020-26217 XStream RCE POC

PoC for CVE-2020-0601- Windows CryptoAPI (Crypt32.dll) POC: https://github.com/ollypwn/CurveBall

Automated scanner and exploit for CVE-2026-27384, an unauthenticated RCE in W3 Total Cache via mfunc/eval() injection. Features auto-detection, 48…

Unauthenticated remote code execution exploit for Vehicle Management System in PHP via unrestricted file upload in newdriver.php and newvehicle.php,…

CVE-2025-69212 Proof-of-concept.

Jackson Deserialization CVE-2017-7525 PoC

PHP Object Injection exploit for Adminer <4.8.1 via Monolog, causing Denial of Service through crafted serialized payloads. Includes PoC, CVSS…

Proof-of-concept exploit for CVE-2021-43503, a Laravel deserialization RCE vulnerability. Includes PHP POP chain generation and HTTP-based payload…

CVE-2019-17080

CVE-2021-3129-Laravel Debug mode 远程代码执行漏洞

Proof-of-concept exploit for CVE-2025-24813, achieving remote code execution on Apache Tomcat via session deserialization and partial PUT requests.

CIBELES AI <= 1.10.8 - Unauthenticated Arbitrary File Upload

Python exploit for CVE-2018-15133, achieving remote code execution on vulnerable Laravel applications via insecure deserialization of encrypted…