
CVE-2026-46645-Analysis-Lab
api-security-testingeducationlabs-practice+3


Kirby < 3.9.6 XML External Entity exploit

SQL injection in QuerySet.annotate(), aggregate(), and extra()


* React2Shell-CVE-2025-55182

Presents how to exploit CVE-2021-44228 vulnerability.

CVE-2026-21876 PoC: WAF charset bypass (Flask, ASP.NET and Spring Boot stands)

* React2Shell-CVE-2025-55182




CVE-2022-1388 - F5 Router RCE Replica

Explorations of CVE-2024-49368 + Exploit Development

Challenge based on CVE-2021-22204 where users send a malicious file to a web application to gain RCE

