
CVE-2026-19500-poc
Proof-of-concept for CVE-2026-19500, a DoS vulnerability in the SureForms WordPress plugin that exhausts server resources via oversized key-value…

Proof-of-concept for CVE-2026-19500, a DoS vulnerability in the SureForms WordPress plugin that exhausts server resources via oversized key-value…

PoC: changedetection.io unauthenticated OpenAPI schema disclosure (CVE-2026-71203, Medium 5.3)

CVE-2026-74970 · Fission site isolation bypass in Firefox WebRender

WordPress Core <= 7.0.3 - Authenticated (Author+) Remote Code Execution via Malicious File Upload

ExtendedMacro - BurpSuite plugin providing extended macro functionality

Web app authorisation coverage scanning

Http request smuggling vulnerability scanner

DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider

A modern vulnerable web app

This cheatsheet is built for the Bug Bounty Hunters and penetration testers in order to help them hunt the vulnerabilities from P4 to P1 solely and…