
CVE-2026-39376
Proof-of-concept for CVE-2026-39376, demonstrating an infinite redirect loop denial-of-service via meta-refresh chains in fastfeedparser, with SSRF…

Proof-of-concept for CVE-2026-39376, demonstrating an infinite redirect loop denial-of-service via meta-refresh chains in fastfeedparser, with SSRF…

CWE-287: Improper Authentication in parse-community parse-server

Technical analysis of CVE-2021-25801 in VLC's AVI parser, demonstrating an out-of-bounds read via crafted sub-index chunks and providing a…

PostgreSQL pgcrypto heap buffer overflow PoC demonstrating CVE-2026-2005: low-privileged RCE and privilege escalation to superuser via crafted…

Proof-of-concept exploit for CVE-2026-1010, demonstrating WebSocket connection smuggling and request splitting through a malformed Upgrade header…

Security Advisory: Unauthenticated NULL Pointer Dereference Crashes the Server (TinyWeb)

CVE-2013-2028 python exploit

Proof-of-concept exploit for CVE-2025-32463, demonstrating privilege escalation via chroot and nsswitch.conf manipulation to load libnss_systemd.so.2.

Educational / research tool related to React / Next.js vulnerability CVE‑2025‑55182 (“React2Shell”).

Advanced PostgreSQL database enumeration tool exploiting CVE-2024-39309 in Parse Server - Comprehensive SQL injection exploitation for security…

Exploit for Joomla JCK Editor 6.4.4 (CVE-2018-17254)

Jquery File Tree 1.6.6 Path Traversal exploit (CVE-2017-1000170)

Detailed analysis of CVE-2024-28397, a sandbox escape vulnerability in js2py enabling RCE via Python object traversal. Includes code analysis, PoC,…

Tool for checking Nginx CVE-2013-2028

Python exploit for Jenkins CVE-2024-23897: arbitrary file read via CLI args4j parsing, enabling RCE. Scans hosts and extracts sensitive files from…

Asclepius validates backup integrity by restoring files and actively testing their recoverability. Instead of trusting metadata, it attempts to parse…

Parse citrix netscaler logs to check for signs of CVE-2023-4966 exploitation

CVE-2024-32640 | Automated SQLi Exploitation PoC