
CVE-2019-19609
Python exploit script targeting unauthenticated remote code execution in Strapi CMS 3.0.0-beta.17.4 via CVE-2019-18818 and CVE-2019-19609, delivering…

Python exploit script targeting unauthenticated remote code execution in Strapi CMS 3.0.0-beta.17.4 via CVE-2019-18818 and CVE-2019-19609, delivering…

cPanelSniper STABLE - CVE-2026-41940 optimized for 10M+ targets

Proof-of-concept demonstrating a command injection vulnerability in MS-Agent Shell tool, enabling arbitrary command execution and reverse shell via…

Step-by-step demonstration of CVE-2022-22978 authorization bypass in Spring Security's RegexRequestMatcher, with vulnerable app setup, payload…

Exploit for Marimo pre-auth RCE via WebSocket auth bypass, providing interactive shell access on affected versions.

CVE-2025-6389

Demonstrable Proof of Concept Exploit for Spring4Shell Vulnerability (CVE-2022-22965)

Here is a simple but effective exploit for CVE-2025-29927.

React2Shell Exploitation Tool (CVE-2025-55182)

CVE-2025-29927 - Critical Security Vulnerability in Next.js

Detailed analysis and proof-of-concept exploit for CVE-2017-9822, an XXE/insecure deserialization vulnerability in DotNetNuke CMS leading to remote…

PoC | NextJS Middleware 15.2.2 - Authorization Bypass

Blind SQL injection proof-of-concept exploit for RuoYi v4.7.9, bypassing CVE-2024-42900 filter to dump databases via authenticated boolean-based…

Proof-of-concept demonstrating authorization bypass in Spring Security's RegexRequestMatcher (CVE-2022-22978) using CRLF injection, with analysis and…

基于Pocsuite3 框架编写的漏洞验证与利用脚本,用于检测 n8n工作流自动化工具中的认证后远程代码执行漏洞(RCE)

Proof-of-concept exploit for CVE-2022-27772 targeting Grails 3.3 framework's custom TomcatEmbeddedServletContainerFactory, demonstrating insecure…

CVE-2023-45503 Reference

web2py/web2py @ e94946d