
CVE-2025-5947_Exploit
An mini exploit for the Service Finder -Bookings plugin WP

An mini exploit for the Service Finder -Bookings plugin WP

Unauthenticated SSRF in Chamilo LMS via PENS plugin (pens.php) — CVSS 7.5

Multi-threaded Python scanner for CVE-2026-23550, detecting unauthenticated admin takeover in WordPress Modular DS plugin with full wp-admin…

Bash script for WordPress user enumeration and automated admin account creation, exploiting CVE-2026-23550 to bypass authentication and achieve…

OSCP-legal network recon orchestrator for port discovery, service classification, and enum-only plugin dispatch across HTTP, SMB, FTP, SNMP, SSH, and…

Reproducer for CVE-2026-64640 — Apache Polaris Iceberg REST register/register-view vends storage credentials and reads an attacker-chosen metadata…

Remote video eavesdropping using a software-defined radio platform

Realtyna Organic IDX plugin + WPL Real Estate < 5.3.0 - Unauthenticated Arbitrary File Upload to Remote Code Execution

Know a plugin has a php object exploit but need to find which lib to use?

Exploit for Grafana LFI vulnerability CVE-2021-43798 enabling unauthorized file reading via path traversal in plugin endpoints.

Proof-of-concept exploit for CVE-2019-17671, a WordPress plugin vulnerability exploitable via crafted URL parameters to achieve unauthorized data…

CVE-2026-3584

Proof-of-concept exploit for a critical SQL injection vulnerability in WordPress Email Subscribers plugin. Includes exploitation details, HTTP…

Proof-of-concept exploit for Grafana path traversal vulnerability (CVE-2021-43798) allowing unauthorized file read via directory traversal in plugin…

A fast WordPress plugin enumeration tool

Remotely test password strength of WordPress bloging software

CVE-2024-3495 Country State City Dropdown CF7 <= 2.7.2 - Unauthenticated SQL Injection

cve-2021-38314 - Unauthenticated Sensitive Information Disclosure