
angularjs-poc-cve-2022-25869
A minimal reproduction of an AngularJS <textarea> XSS vulnerability on IE (tracked as CVE-2022-25869).

A minimal reproduction of an AngularJS <textarea> XSS vulnerability on IE (tracked as CVE-2022-25869).

Scripts to analyze conflicker worm which exploits famous netapi vulnerability (CVE-2008-4250) i.e MS08-067

An automated, modular cryptanalysis tool; i.e., a Weapon of Math Destruction

This is an exploit for CVE-2020-0674 that runs on the x64 version of IE 8, 9, 10, and 11 on Windows 7.

System call fuzzing of OpenBSD amd64 using TriforceAFL (i.e. AFL and QEMU)

MS Word MS WordPad via IE VBS Engine RCE

The most comprehensive LLM + MCP security guide i.e. OWASP aligned, real CVEs, actionable checklists

A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code execution (RCE) via data binding. The specific exploit…

CVE-2024-39943 rejetto HFS (aka HTTP File Server) 3 before 0.52.10 on Linux, UNIX, and macOS allows OS command execution by remote authenticated…

LAVA: Large-scale Automated Vulnerability Addition

Scalable assembly analysis platform for indexing, clone search, and executable classification using static, dynamic, and machine-learning techniques…


ImageMagick LFI PoC [CVE-2022-44268]

Little thing put together quickly to demonstrate this CVE

Remote Java classpath enumeration via deserialization

This tool calculates tricky canonical huffman histogram for CVE-2023-4863.

Leveraging CVE-2018-19788 without root shells
