
CVE-2019-5418
CVE-2019-5418 - File Content Disclosure on Ruby on Rails

CVE-2019-5418 - File Content Disclosure on Ruby on Rails

RCE on Rails 5.2.2 using a path traversal (CVE-2019-5418) and a deserialization of Ruby objects (CVE-2019-5420)

CVE-2020-8163 - Remote code execution of user-provided local names in Rails

CVE-2017-11882 File Generator PoC


PoC for CVE-2026-66066 in Ruby on Rails

Remote Code Execution on Microsoft Exchange Server through fixed cryptographic keys

cve-2014-0130 rails directory traversal vuln

Ruby On Rails unrestricted render() exploit

HTTP3ONSTEROIDS - A research on CVE-2023-25950 where HAProxy's HTTP/3 implementation fails to block a malformed HTTP header field name.

OpenCATS <= 0.9.4 RCE (CVE-2021-41560)

Exploit for Joomla JCK Editor 6.4.4 (CVE-2018-17254)

CVE-2019-5420 (Ruby on Rails)

Rails Asset Pipeline Directory Traversal Vulnerability

Wordpress Plugin Simple Job Board 2.9.3 LFI Vulnerability (CVE-2020-35749) proof of concept exploit

Ruby on Rails Web Console (v2) Whitelist Bypass Code Execution implementation in Python

Bootstrapped Rails 3.2.10 to test the remote code exploit CVE-2013-0156

Exploits Password Reset Vulnerability in OpenCRX, CVE-2020-7378. Also maintains Stealth by deleting all the password reset mails created by the script