
CVE-2024-12484
CVE-poc

CVE-poc

WordPress JSmol2WP Plugin 1.07版本中存在安全漏洞。攻击者可利用该漏洞读取任意文件。

CVE-2025-31161

Prepostseo Login Checker

Dokan Pro <= 3.10.3 - Unauthenticated SQL Injection

Proof-of-concept for a stored XSS vulnerability in FairSketch RISE Ultimate Project Manager & CRM v3.9.4, demonstrating arbitrary JavaScript…

OpenEMR security issue

WSO2-2021-1258: Zip Slip vulnerability in WSO2 ESB

Go-based exploit for CVE-2023-44487 (HTTP/2 Rapid Reset) enabling high-rate denial-of-service attacks against vulnerable web servers with…

cve-2023-2245

Proof-of-concept exploit for CVE-2024-4295, an unauthenticated SQL injection in Email Subscribers by Icegram Express <= 5.7.20 via the hash parameter.

Exploit for CVE-2024-4040 affecting CrushFTP server in all versions before 10.7.1 and 11.1.0 on all platforms

https & http

Scanner for the Log4j vulnerability dubbed Log4Shell (CVE-2021-44228)

Checks a shared hosting environment for CVE-2017-9798

A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and checklists.

有关burpsuite的插件(非商店),文章以及使用技巧的收集(此项目不再提供burpsuite破解文件,如需要请在博客mrxn.net下载)---Collection of burpsuite plugins (non-stores), articles and tips for using…

Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more