
LetterPress-1.2.1-Open-Redirection-Via-Html-Injection-Vulnerability
In LetterPress plugin <= 1.2.1 is vulnerable to Html Injection Vulnerability which can futher leads to Open Redirection Vulnerabilty.

In LetterPress plugin <= 1.2.1 is vulnerable to Html Injection Vulnerability which can futher leads to Open Redirection Vulnerabilty.

CVE-2026-13156 Vulnerability Advisory & PoC — Discovered by Huynh Kien Minh (MinhHK).

CVE Reproduction: cve-2024-43451-ntlm_hash_disclosure_reproduction

Read more at Medium

WBCE 1.6.1 is affected by File Upload - XSS vulnerability that allows attackers to upload a PDF file with a hidden XSS that when executed will launch…

CMSmadesimple 2.2.18 is affected by File Upload - XSS vulnerability that allows attackers to upload a PDF file with a hidden XSS that when executed…

ConcreteCMS v.9.2.1 is affected by Arbitrary File Upload vulnerability that allows Cross-Site Scriting (XSS) Stored.

RiteCMS 3.0 is affected by File Upload - XSS vulnerability that allows attackers to upload a PDF file with a hidden XSS that when executed will…

Microsoft-Outlook-Remote-Code-Execution-Vulnerability

evil-winrar,CVE-2023-38831漏洞利用和社会工程学攻击框架 (evil-winrar, CVE-2023-38831 Vulnerability Exploitation and Social Engineering Attack Framework)

mjml-app v3.0.4 & 3.1.0-beta RCE exploit


POC CVE-2022-30190 : CVE 0-day MS Offic RCE aka msdt follina


Horde IMP (through 6.2.27) vulnerability – obfuscation via HTML encoding – XSS payload

Newscrunch <= 1.8.4 - Cross-Site Request Forgery to Arbitrary File Upload

This is a PoC/Exploit for the CVE-2024-47875 PhpSpreadsheet XSS Vuln

CVE-2024-42009 Proof of Concept