
CVE-2025-49901
WordPress Simple Link Directory Plugin < 14.8.1 is vulnerable to a high priority Broken Authentication

WordPress Simple Link Directory Plugin < 14.8.1 is vulnerable to a high priority Broken Authentication

This repository contains the Proof of Concept (PoC) exploit script for CVE-2026-45156

Proof-of-concept exploit for Microsoft SharePoint CVE-2026-55040 that forges JWT tokens, bypasses authentication, auto-discovers metadata, and…

Personal Access Token (PAT) recon tool for bug bounty hunters, pentesters & red teams

Forge JWE-wrapped unsigned JWTs to bypass pac4j-jwt signature verification (CVE-2026-29000) and authenticate as any user; includes Python CLI,…

PowerShell MachineAccountQuota and DNS exploit tools

In-depth ldap enumeration utility

SCCMSecrets.py aims at exploiting SCCM policies distribution for credentials harvesting, initial access and lateral movement.

Dahua Console, access internal debug console and/or other researched functions in Dahua devices. Feel free to contribute in this project.

POC of SecureWorks' recent Azure Active Directory password brute-forcing vuln

Agentic pentest profile for Hermes: 31 playbooks for authorised recon, web/access-control attacks, safe exploit validation, and evidence-driven…

JetBrains TeamCity Authentication Bypass CVE-2023-42793 Exploit

Read-only Entra ID app-credential assessment: enumerates Graph permissions, Azure RBAC, and reachable cloud data, then maps findings to…

A comprehensive all-in-one Python-based Proof of Concept script to discover and exploit a critical authentication bypass vulnerability…

Sinilink XY-WFTX Wifi Remote Thermostat Module Temperature Controller

Exploit for JetBrains TeamCity authentication bypass (CVE-2024-27198/27199) enabling remote code execution. Includes dork queries for asset discovery…

eScan Management Console version 14.0.1400.2281 contains privilege escalation via `GetUserCurrentPwd` function lets attackers retrieve any user's…

Automated scanner & post-exploitation toolkit for CVE-2026-41940 — cPanel & WHM root authentication bypass via session-file CRLF injection