
CVE-2026-87930
Joomla multi-CVE RCE suite with seven exploit modules for Balbooa Forms, Page Builder CK, SP Page Builder, JCE, iCagenda, Helix3, and SP LMS, plus…

Joomla multi-CVE RCE suite with seven exploit modules for Balbooa Forms, Page Builder CK, SP Page Builder, JCE, iCagenda, Helix3, and SP LMS, plus…

Exploit PoC for CVE-2025-64512 targeting insecure deserialization in pdfminer.six. Generates malicious pickle payload and produces exploit PDFs for…

Automated Python exploit script for CVE-2024-53677 with JSP web payload delivery, enabling targeted vulnerability exploitation and penetration…

Exploit for CVE-2021-44228 (Log4Shell) with RMI server and payload delivery for remote code execution against vulnerable Apache Log4j instances.

C# tool that builds a GZipped, Base64-encoded .NET DataSet payload using LosFormatter to reproduce the SharePoint deserialization RCE chain…

Unauthenticated 0-click RCE exploit for CVE-2024-50526. Exploits an arbitrary file upload vulnerability in a vulnerable WordPress form plugin to…

Exploit generator for CVE-2017-11882, crafting malicious RTF documents that execute arbitrary commands or shellcode via the Equation Editor…

CVE-2018-3191 payload generator

Professional exploit for CVE-2024-28397: Js2Py Sandbox Escape leading to Remote Code Execution (RCE). Includes modular payload generation.

Proof-of-concept exploit for CVE-2019-2725 Weblogic deserialization RCE. Executes remote commands by sending a crafted payload to the vulnerable…

Proof-of-concept exploit for CVE-2026-16723, a Fastjson 1.x @JSONType remote code execution flaw, with a payload JAR builder and reverse-shell…

Multi-threaded exploit for CVE-2024-53677 (Apache Struts S2-067) with file upload endpoint targeting, path traversal testing, and custom JSP payload…

Exploit for CVE-2018-16156 targeting a remote code execution vulnerability in a web application, providing a proof-of-concept payload for security…

Exploit for CVE-2021-25646 Apache Druid RCE via crafted HTTP POST request to the sampler endpoint, with embedded payload delivery and Snort detection…

Batch detection script for CVE-2019-16759, an unauthenticated remote code execution vulnerability in vBulletin 5.x, with PHP payload generation for…

CVE-2023-46604-RCE exploit with Linux reverse shell payload

CVE-2025-55182 exploit for React applications with customizable payload generation and one-click attack execution for security testing.

Proof-of-concept exploit payload for CVE-2025-67303 targeting Git repositories. Designed for security testing and vulnerability validation.