
CVE-2020-3580
Additional exploits for XSS in Cisco ASA devices discovered by PTSwarm

Additional exploits for XSS in Cisco ASA devices discovered by PTSwarm

POC for Roundcube vulnerabilities CVE-2024-42008 and CVE-2024-42010

Horde IMP (through 6.2.27) vulnerability – obfuscation via HTML encoding – XSS payload

a lightweight JavaScript snippet showcasing how unauthorized password changes can be triggered on vulnerable Fortinet FortiSwitch GUI endpoints.

CVE-2021-46067 - In Vehicle Service Management System 1.0 an attacker can steal the cookies leading to Full Account Takeover.

CVE-2026-34197

CVE-2026-28289

This repository presents a proof-of-concept of CVE-2024-50677

If an authenticated user who is able to edit Wordpress PHP code in any kind, clicks a malicious link, PHP code can be edited through XSS in…

just idea, no cp pls

Persistent XSS on Comtrend AR-5387un router

Insecure Direct Object Reference (IDOR vulnerability) in SOGo Webmail Allows a user to send emails on behalf of another user.

Secure Web Gateway 10.2.11 - Cross-Site Scripting (XSS)

In LetterPress plugin <= 1.2.1 is vulnerable to Html Injection Vulnerability which can futher leads to Open Redirection Vulnerabilty.

CVE-2025-26264 - GeoVision GV-ASWeb with the version 6.1.2.0 or less, contains a Remote Code Execution (RCE) vulnerability within its Notification…