
CVE-2022-22965
Python-based exploit for CVE-2022-22965 (Spring4Shell) with environment checks for Spring Framework, JDK version, Tomcat, and AccessLog configuration.

Python-based exploit for CVE-2022-22965 (Spring4Shell) with environment checks for Spring Framework, JDK version, Tomcat, and AccessLog configuration.

Exploit for CVE-2025-10353. Unauthenticated File Upload on Melis Platform Framework that leads to RCE

Exploit for CVE-2025-10352. Admin account creation on Melis Platform Framework

Proof-of-concept exploit and testing scripts for Spring4Shell (CVE-2022-22965), a Spring Framework remote code execution vulnerability, with bash and…

Proof-of-concept exploit for CVE-2020-0458, a vulnerability in Android 10's media framework enabling remote code execution via crafted media files.

Exploit toolkit targeting CVE-2019-15477 in the Jooby micro web framework, enabling vulnerability analysis and exploitation of Java/Kotlin web…

Go-based exploit for CVE-2022-44877 targeting CWP CentOS Web Panel, leveraging the go-exploit framework for modular exploitation and payload delivery.

Autonomous security research framework integrating static analysis, binary analysis, fuzzing, LLM-powered vulnerability validation, exploit…

Proof-of-concept exploit for CVE-2024-38820, demonstrating locale-dependent case conversion bypass of Spring Framework DataBinder disallowedFields…

Proof-of-concept exploit for CVE-2025-43865 demonstrating pre-render data spoofing in React Router framework mode, enabling data injection during…

Exploit for CVE-2025-29927 (Next.js) - Authorization Bypass

A complete framework for exploiting the vulnerability CVE-2025-55182

Explotation framework for CVE-2019-11687

Ejecución de exploit de deserialización con CVE-2017-5941

Exploit toolkit CVE-2017-8759 - v1.0 is a handy python script which provides pentesters and security researchers a quick and effective way to test…

Proof-of-concept exploit for CVE-2015-6612 targeting Android media decoder vulnerability. Demonstrates binary exploitation in the Android AV…

Proof-of-concept exploit for CVE-2023-32407, demonstrating a macOS TCC (Transparency, Consent, and Control) bypass in Metal framework for privilege…

This is a modified version of the CVE-2024-41570 SSRF PoC from @chebuya chained with the auth RCE exploit from @hyperreality. This exploit executes…