
CVE-2026-32722
Bloomberg Memray’s Stored XSS via Unescaped Command-Line Metadata

Bloomberg Memray’s Stored XSS via Unescaped Command-Line Metadata

This skill helps Claude write secure code and prevent common vulnerabilities.

Proof-of-concept exploit and technical advisory for an Admin+ arbitrary file upload to remote code execution vulnerability in Everest Toolkit…

Scans project source code across 16 languages to flag dangerous functions linked to SQLi, XSS, SSRF, command injection, weak crypto, and other web…

OSWE, OSEP, OSED, OSEE

PHPMailer < 5.2.18 Remote Code Execution exploit and vulnerable container


CVE's I found. technical writeups, expolitation examples and fuzzing sessions walkthroughs

"Sucosh" is an automated Source Code vulnerability scanner and assessment framework for Python(Flask-Django) & NodeJs capable of performing code…


WPBookit <= 1.0.6 - Unauthenticated Stored Cross-Site Scripting

Bookea-tu-Mesa is vulnerable to SQL Injection