
CVE-2019-1218
Outlook iOS Spoofing Vulnerability

Outlook iOS Spoofing Vulnerability



The Burst Statistics – Privacy-Friendly WordPress Analytics (Google Analytics Alternative) plugin for WordPress is vulnerable to Authentication Bypass

CVE-2025-6389

Lab + writeup for CVE-2026-44166: PocketBase OAuth2 account pre-hijacking via unvalidated createData.email

CVE-2025-23266 targets FastAPI’s parse_request() function, where oversized HTTP headers cause a buffer overflow and remote code execution. The…

Improper Access Control on D-Link DIR-605L router

WordPress ThemeEgg ToolKit plugin <= 1.2.9 - Arbitrary File Upload vulnerability

WordPress CVE-2024-10924 Exploit for Really Simple Security plugin

A proof of concept for CVE-2025-31161, using mangled HTTP header to perform unauthenticated impersonation of any user in Crush FTP server.

CVE-2025-8517: Session Fixation in Vvveb CMS v1.0.6.1

RestroPress – Online Food Ordering System 3.0.0 - 3.1.9.2 - Unauthenticated Information Exposure to Authentication Bypass via Forged JWT

PoC of CVE-2025-45805

Vehicle Management System 1.0 - Stored Cross-Site Scripting (XSS)

XSS in Simple Cashiering System
