
CVE-2026-80099
Newfold plugins (wp-module-data <= 2.9.7) Unauthenticated

Newfold plugins (wp-module-data <= 2.9.7) Unauthenticated

Python PoC validating CVE-2025-6325 unauthenticated privilege escalation and CVE-2025-6327 arbitrary file upload RCE in King Addons for Elementor <=…

Vulnerability & exploit intelligence — ExploitDB, NVD, Metasploit search with CVE→ATT&CK mapping and LogNorm/HuntForge integration | Part of Nebula…

Detection for CVE-2025-49113

Unauthenticated Remote Code Execution via SSH Command-Line Argument Injection Cockpit versions 327 – 359 | CVSS 9.8 Critical | CWE-78

chusa - 注射 - the new generation of sqlmap

WordPress wp2shell vulnerability-chain scanner for CVE-2026-63030 and CVE-2026-60137, with active detection, optional PoC, JSON export.

Laravel Crypto Killer Mass Scanner (CVE-2024-55555)

CVE-2026-11961 — UserRegistration: WordPress User Registration <= 5.2.2 Privilege Escalation. Misconfigured Membership Roles → Unauthenticated Admin…

CVE-2023-25194 Scan

AsyncIO Scanner & Exploitation Framework for CVE-2026-24061 (Telnet NEW_ENVIRON Auth Bypass). Features high-concurrency discovery, passive…

Check a list of Pterodactyl panels for vulnerabilities from a file.

cPanel/WHM CVE-2026-41940 - Mass Scanner & Exploiter

Research-driven UPnP vulnerability scanner focusing on libupnp 1.6.19 and CVE-2012-5958.

Batch RCE scanner for vulnerable vBulletin instances using replaceAdTemplate exploit.

🔱 Powerfull XSS Scanning and Parameter analysis tool&gem

强大的内网渗透辅助工具集-让Yasso像风一样 支持rdp,ssh,redis,postgres,mongodb,mssql,mysql,winrm等服务爆破,快速的端口扫描,强大的web指纹识别,各种内置服务的一键利用(包括ssh完全交互式登陆,mssql提权,redis一键利用,mysql数据库…

MagicRecon is a powerful shell script to maximize the recon and data collection process of an objective and finding common vulnerabilities, all this…