
JavaPayload
JavaPayload is a collection of pure Java payloads to be used for post-exploitation from pure Java exploits or from common misconfigurations (like not…

JavaPayload is a collection of pure Java payloads to be used for post-exploitation from pure Java exploits or from common misconfigurations (like not…

A vulnerable Android application that shows simple examples of vulnerabilities in a ctf style.

Python3 exploit for CVE-2019-9053 (CMS Made Simple <= 2.2.9 SQLi). No deps, time-based blind SQLi → admin creds dump. HTB Writeup owned.

PoC for CVE-2025-22131

An All-In-One Pure Python PoC for CVE-2021-44228

SourceCodester Pharmacy Sales and Inventory System 1.0 - Vulnerable source code for CVE-2026-7392 SQL Injection

SquirrellyJS mixes pure template data with engine configuration options through the Express render API. By overwriting internal configuration…

pythonic pure python RCE exploit for CVE-2021-44228 log4shell

CVE-2023-5360 PoC: Unauthenticated arbitrary file upload leading to RCE in Royal Elementor Addons (≤ 1.3.78), written in pure Python.