
CVE-2026-15748
Forminator Forms <= 1.56.1 - Unauthenticated Arbitrary File Upload via Forged Upload Field Configuration

Forminator Forms <= 1.56.1 - Unauthenticated Arbitrary File Upload via Forged Upload Field Configuration

Hands-on vulnerability management case study: how Wazuh flagged a real SSRF (CVE-2025-68616) in WeasyPrint, and how I reproduced and patched it.

BOLA/IDOR vulnerability in osTicket ajax.tickets.php | Responsible Disclosure

A proof-of-concept exploit for CVE-2026-23744 - MCPJam Inspector Remote Code Execution (RCE) vulnerability. This tool demonstrates the security flaw…

WP Full Stripe Free <= 8.4.3 - Missing Authorization



Magento 2 patch for CVE-2022-24086, CVE-2022-24087. Fix the RCE vulnerability and related bugs by performing deep template variable escaping. If you…

CVE-2023-26136 vulnerability research


Guardian Code: A Script to Uncover CVE-2024-5274 Vulnerabilities

Unauthenticated Form Submission Unique ID Modification

This repository contains potential security patches for the Magento APSB22-48 and CVE-2022-35698 security vulnerability

Log4Shell (CVE-2021-44228) is a zero-day vulnerability in Log4j

patches for SNYK-JS-JQUERY-174006, CVE-2019-11358, CVE-2019-5428

This tool patches the CVE-2021-44228 Log4J vulnerability present in all minecraft versions NOTE THIS TOOL MUST BE RE-RUN after downloading or…