
CVE-2021-40539
Exploitation code for CVE-2021-40539

Exploitation code for CVE-2021-40539

Exploit for CVE-2021-26084 targeting Confluence Server OGNL injection vulnerability for unauthenticated remote code execution.

RCE for Pega Infinity >= 8.2.1, Pega Infinity <= 8.5.2

DNS rebinding attack tool exploiting multiple A records to bypass same-origin policy and exfiltrate data from internal network services via browser…

Proof of concept for CVE-2020-5902

🛡️ Official AI Security Tool module for CVE-2026-21858 + CVE-2025-68613 (n8n "Ni8mare" Unauthenticated Arbitrary File Read & Expression Injection…

Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities…

Proof-of-concept exploit for CVE-2024-55591, demonstrating authentication bypass in FortiOS management interfaces via WebSocket race condition to…

Python backdoor that uses http post/get requests to communicate

Proof of calc for CVE-2019-6453

A non-intrusive surface scanner for CVE-2025-55182 (React Server Components RCE). Detects exposed RSC endpoints in React 19 and Next.js applications

Exploit for CVE-2019-2725 targeting WebLogic WLS remote code execution vulnerability, enabling unauthenticated attackers to execute arbitrary…

Một tập lệnh Python để DDOS một trang web bằng phương pháp nhiều phương pháp HTTP Flood, một trang web bình thường chỉ cần 5s để sập hoàn toàn!

Next.js-Exploit-Tool 图形化综合利用工具,基于 Go 开发,一款针对 CVE-2025-55182 的独立安全评估工具。

CVE-2023-34362: MOVEit Transfer Unauthenticated RCE

AI-powered SAST scanner that finds auth bypass, IDOR, and logic bugs Semgrep/CodeQL miss. Free GitHub Action. Supports Python, JS/TS, Go, PHP, Ruby.

Apache OFBiz RCE Scanner & Exploit (CVE-2024-38856)

Zimbra RCE simple poc