
CVE-2024-34470
CVE-2024-34470 : An Unauthenticated Path Traversal Vulnerability in HSC Mailinspector

CVE-2024-34470 : An Unauthenticated Path Traversal Vulnerability in HSC Mailinspector

CVE-2026-56290 - Mass Exploit for Joomla Com_pagebuilderck component (Unrestricted File Upload → RCE). Multi-threaded, automatic CSRF bypass, PHP…

A go implementation for CVE-2024-9264 which effect grafana versions 11.0.x, 11.1.x, and 11.2.x.

This vulnerability allows an attacker to perform SSRF (Server-Side Request Forgery) attacks on Apache CXF webservices that accept MTOM/XOP requests.…

Authenticated Remote Code Execution via loadReader functionName code injection in DbGate

CVE-2024-7928: FastAdmin < V1.3.4.20220530 Arbitrary File Reading Vulnerability

Async-based exploit tool for CVE-2025-5777 that detects and extracts leaked authentication tokens, internal IPs, and hidden endpoint paths from…

Proof-of-concept demonstrating DNS cache poisoning via additional record injection in BIND 9, with tools to validate and exploit CVE-2025-40778 for…

OpenSSH Pre-Auth Double Free CVE-2023-25136 – Writeup and Proof-of-Concept

Passive vulnerability scanner for CVE-2026-1731 — BeyondTrust RS/PRA pre-auth RCE (CVSS 9.9). Educational & defensive use only.

Online Reverse Enginerring viewer

CVE-2025-55182 Interactive PoC - React Server Components RCE - Educational Security Research

A Python-based static patch analysis tool for studying the root cause and remediation of CVE-2021-41773 (Apache HTTP Server Path Traversal) by…

Automated JWT security testing tool that exploits known CVEs, tampers with payloads, performs JKU/X5U injection, key confusion attacks, and verifies…

CVE-2018-9276 — PRTG Network Monitor < 18.2.39 Authenticated RCE. For educational purposes and authorized penetration testing only.

Automated RCE and SSRF exploit for CVE-2025-55182 in React/NextJS applications. Tests experimental-form feature vulnerabilities in authorized…

This uses CVE-2025-43407 as exploit and still testing working not gauranteed.

CLI wrapper for CVE-2025-64512 PoC generating malicious PDF and pickle.gz payloads to exploit insecure deserialization in pdfminer.six, enabling…