
CVE-2026-67184-Unauthenticated-NULL-Pointer-Dereference-Crashes-the-Server-TinyWeb-
Detailed security advisory and proof-of-concept for CVE-2026-67184, a NULL pointer dereference in TinyWeb leading to denial of service.

Detailed security advisory and proof-of-concept for CVE-2026-67184, a NULL pointer dereference in TinyWeb leading to denial of service.

Educational Python PoC for a QUIC address-validation bypass that triggers handshake amplification, including vulnerable server simulation and attack…

Educational analysis of CVE-2026-66066: Pre-auth RCE in Rails Active Storage libvips. Includes detection rules, IOCs, and mitigation guidance.

Alternative payloads for InvokeAI RCE (CVE-2024-12029) including reverse shells, callback tests, and SSH injection bypasses for pickle…

Python proof-of-concept for authenticated path traversal (CWE-22) in Camaleon CMS, enabling arbitrary file read via crafted requests to…

Proof-of-concept exploit for CVE-2025-15556, demonstrating update integrity bypass in Notepad++ WinGUp updater via MITM proxy or DNS spoofing,…

Proof‑of‑concept exploit for CVE‑2025‑7840 that injects malicious payloads into the Firstname parameter of a reservation form to trigger XSS

Vulnerability scanner using Nmap for scanning and correlating found CPEs with CVEs.

A library for detecting known secrets across many web frameworks

RCE on Rails 5.2.2 using a path traversal (CVE-2019-5418) and a deserialization of Ruby objects (CVE-2019-5420)

Exploits Ruby on Rails Action Pack remote code execution (CVE-2016-2098) by abusing unrestricted render() to run arbitrary shell commands through a…

Ruby on Rails Web Console (v2) Whitelist Bypass Code Execution implementation in Python

Rails Asset Pipeline Directory Traversal Vulnerability

short view of ruby on rails properties misconfiguration

Chef cookbook that detects and fails runs on servers vulnerable to CVE-2014-3566 (POODLE) by scanning specified SSL ports, serving as both a security…

Revotech I6032W-FHW IP camera firmware fails to validate authentication fields in API requests, allowing attackers to bypass authentication and…

Proof-of-concept application to verify CVE-2019-5418 path traversal vulnerability in Rails 3, enabling security testing and validation of the exploit.

crack repo from jnunemaker but with version 0.1.8 and rails CVE-2013-0156 vulnerability fixed