
ginger
A security assessment tool for Hitachi Vantara's Pentaho Business Analytics platform.

A security assessment tool for Hitachi Vantara's Pentaho Business Analytics platform.

CVE-2023-34839 is a Cross-Site Request Forgery (CSRF) vulnerability discovered in Issabel PBX version 4.0.0-6, a widely used open-source Unified…

WooCommerce Designer Pro <= 1.9.28 - Unauthenticated Arbitrary File Read

PoC exploit for CVE-2023-6019 - Remote Code Execution via unauthenticated Ray Dashboard Jobs API.

ZenoMinder Blind SQL Injection PoC

Python2.7

A PoC exploit for CVE-2021-43798 - Grafana Directory Traversal

Critical Flaws in Traccar GPS System Expose Users to Remote Attacks

Unauthenticated SQL injection in FreePBX Endpoint Manager (CVE-2025-57819) that injects a cron-scheduled PHP webshell for remote code execution.

PoC exploit for CVE-2026-23744 — unauthenticated RCE in MCPJam Inspector via unvalidated serverConfig command injection on /api/mcp/connect, enabling…


A comprehensive full-lifecycle penetration testing project on Joomla 4.2.5 exploiting CVE-2023-23752 inside a Dockerized lab environment

Sorry, this tool WAS abandoned for a while. I got stress on this thing.


chusa - 注射 - the new generation of sqlmap

Script para validar CVE-2020-5902 hecho en Go.

Proof of Concept for CVE-2025-25599

A script that gives you the credentials of a Pterodactyl panel vulnerable to CVE-2025-49132