
CVE-2026-57155
OPNsense Root RCE (CVE-2026-57155)

OPNsense Root RCE (CVE-2026-57155)
Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

Shannon is an autonomous, white-box AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes…

CVE-2022-42475 飞塔RCE漏洞 POC

Proof-of-concept exploit for CVE-2021-44228 (Log4Shell) remote code execution vulnerability in Apache Log4j. Includes shell script for testing and…

A proof of concept for Joomla's CVE-2015-8562 vulnerability (Object Injection RCE)

Exploiting a Cross-site request forgery (CSRF) attack to creat a new privileged user through the Webmin's add users feature

Automated prompt injection testing framework for LLM-integrated applications with dual-LLM architecture.

Generate malicious PDF test files for penetration testing, bug bounty hunting, and red teaming. Tests SSRF, XSS, XXE, NTLM credential theft, and data…

Proof of calc for CVE-2019-6453

This is the Pwn2Own 2017 Safari backup vul's exploit.

Exploit for Apache Solr CVE-2026-22444, leveraging UNC path injection and SMB server to achieve remote code execution via malicious configset and…

Modern dynamic phishing toolkit for authorized red team exercises. Clones login pages, captures credentials, cookies, and 2FA codes with a live…

CVE-2026-10520

CVE-2025-48907 - Unauthenticated RCE exploit for Joomla JCE < 2.9.99.5

AI-powered vulnerability scanner extension for Burp Suite with multi-provider support (Ollama, OpenAI, Claude, Gemini)

Proof-of-concept exploit for CVE-2023-25194, a JNDI injection vulnerability in Apache Kafka Connect enabling remote code execution via crafted…

CVE-2018-17246 - Kibana LFI < 6.4.3 & 5.6.13