
Project-CVE-2026-45833
Exploit tool for CVE-2026-45833 in ChromaDB, enabling malicious model generation, reconnaissance, and data exfiltration from target collections via…

Exploit tool for CVE-2026-45833 in ChromaDB, enabling malicious model generation, reconnaissance, and data exfiltration from target collections via…

Automated exploit tool for CVE-2026-23869, a remote DoS in React Server Components. Includes PoC, Nuclei template, and scanning scripts for detection…

Exploit tool for Apache 2.4.49-2.4.50 path traversal and RCE (CVE-2021-41773, CVE-2021-42013). Scans URL lists, works with CGI and non-CGI, and…

INSTA_CYBER is a Python-powered ethical hacking tool designed for educational and research purposes. Built by Muhammad Sabir Ali (INNO_CYBER), this…

CVE-2026-60004 — Gitea Pre-Auth RCE via diffpatch hook injection

Academic purposes only. Attack against Salesforce lightning with guest privilege.

WordPress CVE-2026-63030 and CVE-2026-60137 security tool for detecting exposure to the WP2Shell pre-authentication RCE chain.

Security write-up for an IDOR in Concrete CMS exposing conversation ratings through missing authorization on the get_rating endpoint, with root…

Automated exploit tool for CVE-2021-42237 targeting SiteCore XP. Reads target URLs from a file and leverages DNSLog for out-of-band detection.

Automated man-in-the-middle attack tool.

Ivanti EPMM Pre-Auth RCE Chain

Detection artifact generator for Ivanti EPMM pre-auth RCE chain (CVE-2025-4427 + CVE-2025-4428). Executes commands to verify vulnerability status…

Batch vulnerability detection tool for CVE-2022-35914. Scans multiple URLs from a target file to identify exploitable instances of this specific web…

Multi-threaded exploit tool for CVE-2024-3400 in Palo Alto PAN-OS with automated artifact download and detailed logging for confirmed RCE.

Java-based scanner that checks IP addresses for CVE-2024-24919 vulnerability, with interactive options to print response data and change target file…

This repository details an IDOR vulnerability in AbsysNet 2.3.1, which allows a remote attacker to brute-force session IDs via the /cgi-bin/ocap/…

A comprehensive Python testing tool for CVE-2023-44487, the HTTP/2 Rapid Reset vulnerability. This enhanced version provides granular control over…

Automated exploit tool for CVE-2023-4220, enabling rapid vulnerability exploitation and penetration testing against affected targets.