
React2Shell
CVE-2025-55182 security test kit: CLI scanner + Chrome extension + Nuclei templates + Docker lab.

CVE-2025-55182 security test kit: CLI scanner + Chrome extension + Nuclei templates + Docker lab.

CVE-2025-55182复现环境及RCE回显poc

A Proof-Of-Concept Exploit for CVE-2021-44228 vulnerability.

Header bypass for CVE-2025-55182 (React Server Components RCE).

Exploit for CVE-2021-45468, an Imperva WAF bypass.

CVE-2026-6875 ServiceNow Pre-Auth RCE Framework 🔥 JS Injection → Sandbox Escape → RCE → Root. Features: --detect, --exec, reverse/interactive shell,…

Pre-auth path traversal to arbitrary file delete in Avada (Fusion) Builder <= 3.15.3 leading to RCE (CVSS 9.1)

Cloudflare Image Resizing <= 1.5.6 | Unauthenticated Remote Code Execution

Precision-Based Detection of RSC/Next.js Remote Code Execution Vulnerabilities (CVE-2025-55182, CVE-2025-66478)


React2Shell (CVE-2025-55182) Exploit

xpath is a fast, multi-technique XPath injection scanner written in Nim. It focuses on practical detection, response comparison, visible extraction,…

CVE-2025-61638 PoC

CVE-2021-44228

CVE-2024-3640绕过Waf进行漏洞利用

Flex QR Code Generator <= 1.2.5 - Unauthenticated Arbitrary File Upload

MISP <= 2.5.27 - Stored Cross-Site Scripting via Workflow Engine (doT.js Template Injection).

CVE-2025-55182 RCE vulnerability in Next.js/React RSC servers (exploit and scanner)