
CVE-2026-48907
Python CLI that exploits CVE-2026-48907 in Joomla JCE via profile-import upload, verifies shell paths, and opens an interactive command channel on…

Python CLI that exploits CVE-2026-48907 in Joomla JCE via profile-import upload, verifies shell paths, and opens an interactive command channel on…

Python scanner and proof-of-concept for CVE-2026-49049, an arbitrary file write in Joomla Helix3 that enables PHP web shell upload and remote code…

Exploit for CVE-2026-24423 — a critical unauthenticated RCE in SmarterMail's ConnectToHub API. Affects all builds prior to 9511.

Proof of Concept (PoC) for research and controlled laboratory validation of CVE-2022-42475, a critical heap-based buffer overflow vulnerability…

Apache Solr instances that may be affected by CVE-2026-44825, related to Velocity Template Remote Code Execution (RCE) conditions.

Proof of Concept (PoC) for CVE-2022-42889 (Text4Shell) targeting Apache Commons Text versions prior to 1.10.0. This script automates Remote Code…

PoC for CVE-2022-0543 – Redis Remote Code Execution (RCE)

This exploit is based on CVE-2023-27350 and was built upon the original exploit by horizon3ai and the Metasploit module.

This exploit is based on CVE-2021-33393 and was built upon the original exploit by Mücahit Saratar, extending it to achieve a reverse shell with root…

Exploit for CVE-2026-41940 providing direct shell access via websocket and persistence through root API key injection.

Python Exploit for CVE: 2018-9276

Python-based exploit for CVE-2012-1823 enabling remote code execution on vulnerable PHP-CGI servers by injecting command-line arguments via the query…

Exploit based in /jaiguptanick/CVE-2019-0232

CVE-2025-52691 PoC: Based on watchtowr's article WT-2026-0001 about an authentication bypass exploit, this one is a functional Python attack script.

Proof of Concept (PoC) Script for Remote Code Execution via n8n Workflows (Based on CVE-2025-68613)

A CTF challenge based on CVE-2025-55182 Vulnerability

This repository contains a Proof of Concept (PoC) for CVE-2024-28397, a vulnerability in the js2py library allowing a sandbox escape to achieve…

Proof-of-concept exploit for a critical stack-based buffer overflow in Fortinet products, enabling unauthenticated remote code execution via the…