
exploit-CVE-2015-3306
ProFTPd 1.3.5 - (mod_copy) Remote Command Execution exploit and vulnerable container

ProFTPd 1.3.5 - (mod_copy) Remote Command Execution exploit and vulnerable container

Elasticsearch 1.4.0 < 1.4.2 Remote Code Execution exploit and vulnerable container

CVE-2026-27771 - Gitea/Forgejo Container Registry Auth Bypass Exploit PoC - Pull private container images without authentication

Vulnerable docker container for Apache Struts 2 RCE CVE-2023-50164

Docker container lab to play/learn with CVE-2021-42013

Code and vulnerable WordPress container for exploiting CVE-2016-10033

This repository provides a Docker container for simulating the CVE-2023-30212 vulnerability, allowing you to practice and understand its impact. It…

This container was made to explain and demonstrate how CVE-2019-15813 (Sentrifugo works)

Public security advisory for CVE-2025-66209, CVE-2025-66210, CVE-2025-66211, CVE-2025-66212, and CVE-2025-66213

CVE-2025-23266 targets FastAPI’s parse_request() function, where oversized HTTP headers cause a buffer overflow and remote code execution. The…

A practical lab demonstrating the exploitation of a critical Remote Code Execution (RCE) vulnerability in Apache Struts2 (CVE-2017-5638) using Vulhub…

110 offensive security one-liners for authorized testing and CTFs, organized in one markdown notebook by category and kill-chain step. Dual-use…

Apache Karaf XXE Vulnerability (CVE-2018-11788)

SQL injection via unsanitized QuerySet.order_by() input
