
CVE-2026-76569
Reflected XSS via search GET Parameter in Phoca Download

Reflected XSS via search GET Parameter in Phoca Download

PoC and detection templates for pre-auth RCE and payment tampering in Balbooa Forms (Joomla), including Python exploit and Nuclei detection template.

Stored XSS in J2Commerce Guest Checkout via Cookie Filter Bypass

PoC for J2Store CVE-2026-67358–67362 (J2Commerce security advisory Aug 2026)

CVE-2026-49048 — JoomCCK 6.4.0 Unauthenticated SQL Injection (CVSS 9.8)

Script em python scanner safe-check da CVE-2025-23419

Lightweight HTTP/2 probes for controlled validation of CVE-2019-9511 (Data Dribble) and CVE-2019-9513 (Priority Churn) DoS vectors in authorized…

Proof of Concept for CVE-2024-32002: Git submodule path injection vulnerability.

Dumping App Bound Protected Credentials & Cookies Without Privileges.

CVE-2024-48955_Overview

Burp Suite extension to perform Kerberos authentication

Burp proxy text log converter to CSV and SQLLite