

Proof of Concept exploit for CVE-2026-46368 — authenticated root command injection in OpenWrt luci-app-https-dns-proxy (EDB-52521)


PoC for CVE-2025-25198: automated Host header poisoning test for Mailcow - HTTPS listener, automatic cookie/CSRF handling, captures first reset link.



Unauthenticated RCE via Webmin Backdoor (CVE-2019–15107)

CVE-2023-3452 exploit for WordPress Canto plugin RCE, HTTPS support included

CVE-2025-64446 - A relative path traversal vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.1, FortiWeb 7.6.0 through 7.6.4, FortiWeb 7.4.0…


CitrixBleed-2 Checker & Poc automatic exploit and check token.

Proof-of-concept for CVE-2025-22870 demonstrating HTTP proxy bypass in vulnerable versions (<0.36.0) of golang.org/x/net/http/httpproxy. Exploits…


CVE-2012-1823 exploit for https user password website.

Update of https://github.com/1337g/CVE-2017-12149 to work with python3

Proof of concept for CVE-2023-42283 in Tyk Gateway

Proof of concept for CVE-2023-42284 in Tyk Gateway