
LetterPress-1.2.1-Open-Redirection-Via-Html-Injection-Vulnerability
In LetterPress plugin <= 1.2.1 is vulnerable to Html Injection Vulnerability which can futher leads to Open Redirection Vulnerabilty.

In LetterPress plugin <= 1.2.1 is vulnerable to Html Injection Vulnerability which can futher leads to Open Redirection Vulnerabilty.

Read more at Medium

Microsoft-Outlook-Remote-Code-Execution-Vulnerability



Horde IMP (through 6.2.27) vulnerability – obfuscation via HTML encoding – XSS payload

Newscrunch <= 1.8.4 - Cross-Site Request Forgery to Arbitrary File Upload

This is a PoC/Exploit for the CVE-2024-47875 PhpSpreadsheet XSS Vuln

CVE-2024-42009 Proof of Concept

(DOM-based XSS) HTML Injection vulnerability in TOWeb v.12.05 and before allows an attacker to inject HTML/JS code via the _message.html component.

Cross Site Scripting vulnerability in mooSocial mooSocial Software v.3.1.6 allows a remote attacker to execute arbitrary code via a crafted script to…

CVE-2020-13965: Cross-Site Scripting via Malicious XML Attachment in Roundcube Webmail

Chamilo-LMS (v2.0) CVE-2025-26153

Write-up for another forgotten Windows vulnerability (0day): Microsoft Windows Contacts (VCF/Contact/LDAP) syslink control href attribute escape,…

POC Jamovi <=1.6.18 is affected by a cross-site scripting (XSS) vulnerability. The column-name is vulnerable to XSS in the ElectronJS Framework. An…

Outlook iOS Spoofing Vulnerability

Proof of concept for CVE-2024-37383

Repository for CVE-2023-4549 vulnerability.