
APT-Backpack
cve-2019-11510, cve-2019-19781, cve-2020-5902, cve-2021-1497, cve-2021-20090, cve-2021-22006, cve-2021-22205, cve-2021-26084,…

cve-2019-11510, cve-2019-19781, cve-2020-5902, cve-2021-1497, cve-2021-20090, cve-2021-22006, cve-2021-22205, cve-2021-26084,…

FragAttacks WiFi penetration framework — CVE-2020-24586/87/88

Post authenticated stored-xss in XenForo versions ≤ 2.2.7


Windows File Explorer Zero Click NTLMv2-SSP Hash Disclosure

Stored Cross-Site Scripting (XSS) in osTicket via Vulnerable Bootstrap Tooltip Component

CVE-2026-XXXX: Atlassian GraphQL Email Enumeration Oracle (CWE-204, CVSS 5.3 MEDIUM)

USBCoercer turns an ESP32 development board with native USB-OTG into an Ethernet-over-USB gadget capable of coercing proxy configuration via WPAD.

Horde IMP (through 6.2.27) vulnerability – obfuscation via HTML encoding – XSS payload

a SET framework templates

SeedDMS Stored Cross Site Scripting(XSS)

CVE-2021-46067 - In Vehicle Service Management System 1.0 an attacker can steal the cookies leading to Full Account Takeover.

cve-2024-21413

Persistent XSS on Comtrend AR-5387un router

【Teedy 1.11】Account Takeover via XSS

If an authenticated user who is able to edit Wordpress PHP code in any kind, clicks a malicious link, PHP code can be edited through XSS in…

This repository presents a proof-of-concept of CVE-2024-50677

CVE-2023-23397 C# PoC