
CVE-2026-19478-PoC
Proof-of-concept exploit for unauthenticated remote code injection in GitLab's GraphQL API, using crafted queries to modify or delete public projects…

Proof-of-concept exploit for unauthenticated remote code injection in GitLab's GraphQL API, using crafted queries to modify or delete public projects…


Login Area Finder: scans host/s for login panels

A command line tool to enumerate TLS cipher-suites supported by a server


Repository contains description for CVE-2023-31445


SKYWORTH GN542VF Hardware Version 2.0 and Software Version 2.0.0.16 Cross Site Scripting (XSS) Vulnerability

SKYWORTH GN542VF Hardware Version 2.0 and Software Version 2.0.0.16 does not set the Secure flag for the session cookie in an HTTPS session

Proof of concept for unauthenticated sensitive data disclosure affecting the wp-import-export WordPress plugin (CVE-2022-0236)

Exploit for CVE-2022-1609 WordPress Weblizar Backdoor.

a standalone C-based SQL Injection exploit targeting the CVE‑2025‑6907 vulnerability in the CODE_PROJECT service.

Proof‑of‑Concept exploits the Full Path Disclosure bug in the “Birth Chart Compatibility” WordPress plugin (<=v2.0)

C PoC language for emulating path traversal vulnerability (CVE-2025-5964) in M-Files25.6.14925.0

Exploit blind SQL Injection in (Online Learning Management System)

💣 Wordpress WooCommerce users dump exploit.

.NET console application that exploits CVE-2018-9995 vulnerability

spring-core单个图形化利用工具,CVE-2022-22965及修复方案已出