
CVE-2025-43960
PHP Object Injection exploit for Adminer <4.8.1 via Monolog, causing Denial of Service through crafted serialized payloads. Includes PoC, CVSS…

PHP Object Injection exploit for Adminer <4.8.1 via Monolog, causing Denial of Service through crafted serialized payloads. Includes PoC, CVSS…

Instructions for rapid deployment of Tomcat v9.0.90 with java 25.0.1 2025-10-21 LTS on Windows Server 2019 Standard for lazy researchers.

Exploit for CVE-2023-22518 in Atlassian Confluence. Provides a detailed walkthrough of the vulnerability, including environment setup, root cause…

CVE-2022-31798 Proof of Concept

PoC of CVE-2021-26084 written in Golang based on https://twitter.com/jas502n/status/1433044110277890057?s=20

CVE-2022-31499 Proof of Concept

Proof of Concept for CVE-2024-32002

Exploit for CVE-2014-91371 targeting WordPress Slider REvolution 4.1.4 plugin. Enables remote exploitation of vulnerable installations for security…

The PoC of CVE-2023-36123

Demonstrable Proof of Concept Exploit for Spring4Shell Vulnerability (CVE-2022-22965)

Exploit Of Pre-auth RCE in Apache Ofbiz!!

Proof of concept for Strapi CVE-2019-18818 - Unauthenticated Password Reset Vulnerability / Privilege Escalation

Proof of Concept Exploit for CVE-2024-28987: SolarWinds Web Help Desk Hardcoded Credential Vulnerability

critical: Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773) (CVE-2021-42013)

PoC repro of CVE-2022-23773 in Go

Proof of concept CVE-2016-2098

Proof of concept of CVE-2017-5638 including the whole setup of the Apache vulnerable server

IBM WebSphere deserialization of untrusted data - IBM WebSphere 7,8,8.5,9