
zaphoxx-coldfusion
coldfusion exploit based on https://cvedetails.com/cve/CVE-2009-2265/

coldfusion exploit based on https://cvedetails.com/cve/CVE-2009-2265/

Python-based exploit for CVE-2019-2725 (Oracle WebLogic) providing command execution and webshell upload targeting versions 10.3.6 and 12.1.3.

Royal Elementor Addons - Unauthenticated Remote Code Execution

https://bugs.chromium.org/p/project-zero/issues/detail?id=1820

Exploit generator for CVE-2017-11882, crafting malicious RTF documents that execute arbitrary commands or shellcode via the Equation Editor…

Unauthenticated 0-click RCE exploit for CVE-2024-50526. Exploits an arbitrary file upload vulnerability in a vulnerable WordPress form plugin to…


this is not stable

A simple exploit that uses dirtypipe to inject shellcode into runC entrypoint to implement container escapes.

A very simple buffer overflow using CVE-2013-4730 against PCman's FTP server

CVE-2026-2766, but with wasm

Proof-of-concept exploit chain for Firefox JIT CVE-2026-2764, chaining JIT miscompilation and use-after-free into arbitrary read/write and WASM…

🐍 Python Exploit for CVE-2022-23935

Testing CVE-2022-22968

A bash scanner for detecting CVE-2025-55182 vulnerability in Next.js applications. And a PoC nodejs script

CVE-2018-4878 样本

Python exploit for vsFTPd backdoor vulnerability (CVE-2011-2523) using Pwntools for remote code execution against target IP and port.

Proof-of-concept exploit for CVE-2024-6387 (regreSSHion) targeting unauthenticated remote code execution in OpenSSH server via signal handler race…