
CVE-2026-14856-TastyIgniter
CVE-2026-14856 TastyIgniter v4.3.0

CVE-2026-14856 TastyIgniter v4.3.0

Reproduction of cve-2024-23897-jenkins_lfi_reproduction


Lab Environment for CVE-2026-22241

CVE-2025-10035 Research writeup

Docker-based lab demonstrating CVE-2018-3760 path traversal in Ruby on Rails Sprockets, with POC and environment setup for security testing and…

CVE-2021-3129: Laravel Debug Mode RCE - Complete exploitation lab with Python exploit, Docker container, and security analysis guide.

CVE-2026-53767 + CVE-2026-53768 - Authenticated RCE in Chyrp Lite ≤ 2026.01 via uploads_path blocklist bypass and missing extension validation

PoC of CVE-2025-27515

POC for CVE-2026-21858


Proof-of-concept for CVE-2024-4040 (CrushFTP SSTI -> unauthenticated LFI) in a controlled CS443 lab environment - for educational/authorised use only.

Self-contained Docker lab demonstrating CVE-2007-4559 (TarSlip) directory traversal via Python's tarfile module. Includes vulnerable and fixed APIs,…

Proof-of-concept exploit for an unauthenticated path traversal vulnerability in Whistle v2.9.98.


WordPress CMP – Coming Soon & Maintenance plugin <= 4.1.13 - Remote Code Execution (RCE) vulnerability

Proof-of-Concept for CVE-2024-7856