
cve-2026-15748
Scans WordPress Forminator for CVE-2026-15748 unauthenticated RCE. Detects vulnerable sites, crawls forms, extracts nonces, runs safe upload tests.

Scans WordPress Forminator for CVE-2026-15748 unauthenticated RCE. Detects vulnerable sites, crawls forms, extracts nonces, runs safe upload tests.

BeHat Configuration file leaking

CGI Print ENV leaking

Citrix Netscaler ADC & Gateway v13.1-50.23 - Out-Of-Bounds Memory Read

This is a tool used by several security researchers to find Carriage Return Line Feed Injection Bug

This is a tool used by several security researchers to find Open Redirect Bug

Laravel Ignition contains a cross-site scripting vulnerability when debug mode is enabled.

This tool is used to find php info page

This tool is used to find shell history leaking

SOUND4 Impact/Pulse/First/Eco <=2.x - Information Disclosure

MASS CVE-2021-41773

Proof-of-concept exploit script for CVE-2024-6387, a critical unauthenticated remote code execution vulnerability in OpenSSH. Designed for security…

Python script to check for CVE-2023-2745 vulnerability by sending crafted HTTP requests to a target URL and analyzing responses.

Exploit for CVE-2017-5487 to enumerate WordPress user accounts via the REST API, extracting sensitive information from vulnerable 4.7 installations.

This a CVE I found it in VDP at hackerone Platform

Microsoft Windows 'HTTP.sys' - Remote Code Execution

LearnDash LMS < 4.10.3 - Sensitive Information Exposure

EventON (Free < 2.2.8, Premium < 4.5.5) - Information Disclosure