
CVE-2022-22965-Spring4Shell
Exploit for CVE-2022-22965 (Spring4Shell) enabling remote code execution on unpatched Spring Framework applications via crafted HTTP requests.

Exploit for CVE-2022-22965 (Spring4Shell) enabling remote code execution on unpatched Spring Framework applications via crafted HTTP requests.

Advanced SQL Injection Scanner with AI-powered analysis, ethical compliance framework, and professional reporting.

Proof-of-concept exploit for CVE-2024-38821, demonstrating authentication bypass in Spring Framework via path traversal to access restricted…

Modular exploit framework targeting CVE-2026-23550 in WordPress, featuring mass exploitation, obfuscation, post-exploitation, and Docker-based C2…

about CVE-2018-14667 from RichFaces Framework 3.3.4

Exploit in python3 to explore CVE-2021-38314 in Redux Framework a wordpress plugin

Exploit for CVE-2025-10351. SQL Injection on Melis Platform Framework

Exploit for CVE-2025-10352. Admin account creation on Melis Platform Framework

CVE-2024-51996 es una vulnerabilidad crítica que afecta al componente security-http del framework Symfony.

Proof-of-concept exploit for CVE-2018-1270, a Spring Framework remote code execution vulnerability, demonstrating exploitation in Java.

Proof-of-concept exploit for CVE-2025-51482, demonstrating remote code execution via unsafe exec() usage and sandbox bypass in the Letta AI agent…

Serverless Framework MCP Server (CVE-2025-69256) Base Score: 9.4/10 → CTT Enhanced Score: 9.9/10 A critical command injection vulnerability in…

Exploit attempt for CVE-2022-22965 (Spring4Shell) targeting Spring Framework applications for remote code execution.

Python exploit for CVE-2022-36537, an authentication bypass in ZK Framework affecting R1Soft Server Backup Manager, allowing retrieval of web context…

Proof-of-concept exploit for CVE-2022-22965 (Spring4Shell) targeting Java Spring Framework applications via crafted HTTP requests.

A XSS vulnerability exists in in React Router's meta()/<Meta> APIs in Framework Mode when generating script:ld+json tags which could allow arbitrary…

Python exploit for CVE-2026-21627, an unauthenticated arbitrary PHP file inclusion in Joomla's Novarain Framework, enabling file upload, delete, and…

CVE-2025-64328 FreePBX Authenticated Command Injection in the framework module.