
social-engineer-toolkit
The Social-Engineer Toolkit (SET) repository from TrustedSec - All new versions of SET will be deployed here.

The Social-Engineer Toolkit (SET) repository from TrustedSec - All new versions of SET will be deployed here.

Post authenticated stored-xss in XenForo versions ≤ 2.2.7

Comprehensive analysis and proof-of-concept for CVE-2025-6218 - WinRAR path traversal RCE vulnerability affecting versions 7.11 and earlier

Little thing put together quickly to demonstrate this CVE

Proof-of-concept exploit for CVE-2026-64638: reflected XSS in WordPress login chained with DOM clobbering to achieve admin account takeover and…

CVE-2024-42009 Proof of Concept

Proof-of-concept exploit generator for reflected XSS in STIG Manager OIDC authentication, enabling session token theft via crafted callback URLs and…

Stored Cross-Site Scripting (XSS) in osTicket via Vulnerable Bootstrap Tooltip Component

This is a PoC/Exploit for the CVE-2024-47875 PhpSpreadsheet XSS Vuln

CVE-2020-13965: Cross-Site Scripting via Malicious XML Attachment in Roundcube Webmail

Repository for CVE-2023-4549 vulnerability.

Survey XSS combined with CSRF leads to Admin Account Takeover in Concrete5 8.5.4