
CVE-2026-5524-PoC
Mass exploit toolkit for CVE-2026-5524, an unauthenticated file upload RCE in Divi Form Builder. Features multi-threaded scanning, WAF bypass…

Mass exploit toolkit for CVE-2026-5524, an unauthenticated file upload RCE in Divi Form Builder. Features multi-threaded scanning, WAF bypass…

CVE-2024-25600 - Unauthenticated RCE exploit for WordPress Bricks Builder Theme. Advanced exploitation framework with interactive shell, reverse…

Python PoC script and Nuclei YAML template for detecting and exploiting CVE-2025-68493, an XXE vulnerability in Apache Struts, enabling file read and…

Automated exploitation framework for CVE-2025-55182 (Next.js RCE) with subdomain enumeration, vulnerability scanning, payload generation, and…

Automated Python PoC scanner for CVE-2025-55182 targeting Next.js 16.0.6. Reads URLs from file, sends exploit requests, and displays responses for…

CVE-2020-5902 scanner for F5 BIG-IP with Shodan host discovery, LFI file reading, and remote command execution capabilities.

Proof-of-concept exploit for CVE-2024-5356 SQL injection vulnerability in Aj-Report. Supports single URL and batch file scanning with configurable…

Nuclei template for detecting CVE-2024-28995, a directory traversal vulnerability in Serv-U FTP server, enabling file read via crafted HTTP requests.

Wordpress - Copymatic – AI Content Writer & Generator <= 1.6 - Unauthenticated Arbitrary File Upload

Testing for CVE-2019-6715 (Arbitrary File Read)/ CVE-2024-12365 (SSRF/Info Disclosure)

Breeze Cache WordPress <=2.4.4 allows unauthenticated file upload via fetch_gravatar_from_remote when local gravatar hosting is enabled.

WordPress - Breeze Cache <= 2.4.4 - Unauthenticated Arbitrary File Upload

Mass scanner for Grafana CVE-2021-43798 unauthorized file read, supporting single targets, hostname lists, and IP ranges with PoC verification.

Exploit for CVE-2026-1657, an unauthenticated image upload vulnerability via the 'ep_upload_file_media' AJAX endpoint, allowing remote file upload.

Detection for CVE-2025-61675, CVE-2025-61678 & CVE-2025-66039

批量扫描TomcatAJP漏洞

CVE-2022-22954 VMware Workspace ONE Access free marker SSTI

Nuclei template and bash script for detecting and exploiting CVE-2024-3400 command injection in Palo Alto PAN-OS GlobalProtect, enabling…