
CVE-2026-29053
Python PoC and version scanner for CVE-2026-29053, an authenticated RCE in Ghost CMS below 6.19.1 via malicious Handlebars theme templates.

Python PoC and version scanner for CVE-2026-29053, an authenticated RCE in Ghost CMS below 6.19.1 via malicious Handlebars theme templates.

Next.js RSC RCE Exploit Tool (CVE-2025-55182)

A Ligolo-ng JavaScript agent working inside Chrome & Chromium-based browsers by leveraging Isolated Web Applications.

Exploit for Apache Solr CVE-2026-22444, leveraging UNC path injection and SMB server to achieve remote code execution via malicious configset and…

CVE-2015-3224 Exploit - Rails Web Console RCE

CVE-2025-55182 and CVE-2025-66478

This repository contains a Proof of Concept (PoC) for CVE-2024-28397, a vulnerability in the js2py library allowing a sandbox escape to achieve…

Exploit for Apache Druid Embedded Javascript Remote Code Execution (CVE-2021-25646), Python.

Node.js reverse shell payload generator for penetration testing. Creates bind and reverse shells in JavaScript.

JSshell - JavaScript reverse/remote shell

An interactive multi-user web JS shell