
sshelf
Fast terminal UI for your SSH hosts: fuzzy-search and connect in two keystrokes, dual-pane SFTP file transfer, and background port forwarding. Keeps…

Fast terminal UI for your SSH hosts: fuzzy-search and connect in two keystrokes, dual-pane SFTP file transfer, and background port forwarding. Keeps…

Bypass d’authentification Telnet menant à un accès root

Langflow 在对用户提交的“验证代码”做 AST 解析和编译时,在未做鉴权与沙箱限制的情况下调用了 Python 的 compile()/exec()(以及在编译阶段会评估函数默认参数与装饰器),攻击者可把恶意载荷放在参数默认值或装饰器里,借此在服务器上下文中执行任意语句(反弹…

The main freelan repository.

Native Nim WinRM shell with NTLM, Kerberos, file transfer, in-memory helpers, and AD/OPSEC reporting

Easy peasy file uploads

bypass all stages of the password reset flow

Proof-of-concept exploit for CVE-2018-20718, a PHP object injection vulnerability in Pydio before 8.2.1 enabling unauthenticated remote code…

PHPMailer < 5.2.18 Remote Code Execution

A complete framework for exploiting the vulnerability CVE-2025-55182

wp2shell - WordPress CVE-2026-63030 Exploit & Scanner

rust noob tried write easy exploit code with rust lang

This POC demonstrates CVE-2025-55182 using actual `[email protected]` vulnerable code.

regreSSHion is a security tool designed to test for vulnerabilities related to CVE-2024-6387, specifically focusing on SSH and remote access…

CVE-2022-40635: Groovy Sandbox Bypass in CrafterCMS

Proof-of-concept exploit for CVE-2024-24824 demonstrating how an arbitrary class loading primitive can be transformed into remote code execution on…

Apache Log4j 1.2.X存在反序列化远程代码执行漏洞

Automated exploit for CVE-2025-66034, chaining path traversal and XML injection in fontTools varLib to achieve unauthenticated remote code execution…