


PoC for CVE-2022-48429 - Youtrack stored XSS

Oliver POS – A WooCommerce Point of Sale (POS) <= 2.4.2.3 - Sensitive Information Exposure to Privilege Escalation

Unauthenticated SQL injection exploit for CVE-2019-9053 in CMS Made Simple <= 2.2.9. Extracts admin creds with time-based SQLi.

A security vulnerability has been identified in Krayin CRM <=2.1.0 that allows a low-privileged user to escalate privileges by tricking an admin into…

Token Login <= 1.0.3 - Authenticated (Subscriber+) Privilege Escalation

Cross-Site Request Forgery (CSRF) Vulnerability in HotelDruid 3.0.7 (CVE-2025-25748)

MLflow LFI/RFI Vulnerability -CVE-2023-1177 - Reproduced

Book Store Management System v1.0 - Incorrect Access Control






