
InjuredAndroid
A vulnerable Android application that shows simple examples of vulnerabilities in a ctf style.

A vulnerable Android application that shows simple examples of vulnerabilities in a ctf style.

Automatic SSTI detection tool with interactive interface


RCE exploit for dompdf

That repository contains my updates to the well know java deserialization exploitation tool ysoserial.

CVE-2022-41852 Proof of Concept (unofficial)

[CVE-2019-18935] Telerik UI for ASP.NET AJAX (RadAsyncUpload Handler) .NET JSON Deserialization

Android deeplink, Intent, and WebView bridge assessment helper for ethical hacking

Hotel Druid 3.0.3 Code Injection to Remote Code Execution

🛠 Demonstrate remote code execution in Windows Notepad via markdown links exploiting unsecured URL protocols.

CVE-2021-40353 openSIS 8.0 SQL Injection Vulnerability

CVE-2024-23729

All Working Exploits

Public advisory & PoC for CVE-2026-26897 — Deep Link Bypass in EcoOnline EHS Android (com.airsweb.v10), fixed in 0.2.500

Remote Code Execution Exploit


Post authenticated stored-xss in XenForo versions ≤ 2.2.7
