
CVE-2025-49132
Minimal proof-of-concept exploit for CVE-2025-49132 in Pterodactyl panels; reads PHP files to extract database credentials and enable unauthorized…

Minimal proof-of-concept exploit for CVE-2025-49132 in Pterodactyl panels; reads PHP files to extract database credentials and enable unauthorized…

WooCommerce Designer Pro <= 1.9.28 - Unauthenticated Arbitrary File Read

[No CVE] Apache Solr Arbitrary File Read

A security assessment tool for Hitachi Vantara's Pentaho Business Analytics platform.

marimo is a reactive Python notebook. Prior to 0.23.0, Marimo has a Pre-Auth RCE vulnerability

Python2.7

PoC exploits for CVE-2026-52824 (GHSA-jr9p-4h4j-6c58) — Kimai time-tracking default APP_SECRET authentication bypass affecting versions ≤ 2.57.0


Sorry, this tool WAS abandoned for a while. I got stress on this thing.

chusa - 注射 - the new generation of sqlmap

CVE-2025-68613

tac_plus Pre-Auth Remote Command Execution Vulnerability (CVE-2023-45239 & CVE-2023-48643)

CVE-2023-25157 - GeoServer SQL Injection - PoC


PoC, Hunting React2Shell about CVE-2025-55182

Script para validar CVE-2020-5902 hecho en Go.

CVE-2022-26134, an OGNL injection vulnerability exists that would allow an unauthenticated attacker to execute arbitrary code on a Confluence Server…

A script that gives you the credentials of a Pterodactyl panel vulnerable to CVE-2025-49132