
CVE-2022-0739
BookingPress < 1.0.11 - Unauthenticated SQL Injection

BookingPress < 1.0.11 - Unauthenticated SQL Injection
Remote Code Execution at Rittal

Silly Rails App to demonstrate vuln CVE-2013-0156

PoC for a Path Traversal vulnerability in Whistle v2.9.98 via the /cgi-bin/sessions/get-temp-file endpoint. (Unpatched)

Proof‑of‑concept exploit for CVE‑2025‑7840 that injects malicious payloads into the Firstname parameter of a reservation form to trigger XSS

CVE-2017-11882 File Generator PoC

Remote Code Execution on Microsoft Exchange Server through fixed cryptographic keys

Security Advisory: Unauthenticated NULL Pointer Dereference Crashes the Server (TinyWeb)

Investigating CVE-2022-36804


XSS Vulnerability in Rittal

Exploit in Rails Development Mode. With some knowledge of a target application it is possible for an attacker to guess the automatically generated…

Bootstrapped Rails 3.2.10 to test the remote code exploit CVE-2013-0156

CVE-2020-8163 - Remote code execution of user-provided local names in Rails

Exploit created using Python

This repository contains alternative payload approaches for the InvokeAI RCE vulnerability (CVE-2024-12029) when SSH key injection fails. The…

PoC for CVE-2026-66066 in Ruby on Rails