
CVE-2023-4549
Repository for CVE-2023-4549 vulnerability.
exploitationpenetration-testingphishing-tools+3

Repository for CVE-2023-4549 vulnerability.
Proof-of-concept exploit for CVE-2026-64638: reflected XSS in WordPress login chained with DOM clobbering to achieve admin account takeover and…

If an authenticated user who is able to edit Wordpress PHP code in any kind, clicks a malicious link, PHP code can be edited through XSS in…

CVE-2026-13156 Vulnerability Advisory & PoC — Discovered by Huynh Kien Minh (MinhHK).

PoC exploit chain for WordPress pre-auth XSS to RCE via DOM clobbering, REST JSONP/SOME, and plugin upload, with Docker lab verification and…

Newscrunch <= 1.8.4 - Cross-Site Request Forgery to Arbitrary File Upload