
CVE-2024-24919
PoC script for CVE-2024-24919 vulnerability. It scans a list of target URLs to identify security issues by sending HTTP POST requests and analyzing…

PoC script for CVE-2024-24919 vulnerability. It scans a list of target URLs to identify security issues by sending HTTP POST requests and analyzing…

CVE-2019-11223 - Arbitrary File Upload in Wordpress Support Candy Plugin Version 2.0 Below

Schema & Structured Data for WP & AMP < 1.60 - Unauthenticated Arbitrary Media Upload [POC & Xploit]

WordPress TI WooCommerce Wishlist Plugin <= 2.9.2 Arbitrary File Upload

Proof-of-concept exploit for CVE-2026-6960: unauthenticated arbitrary file upload in BookingPress Pro ≤ 5.6. Automates a 3-step chain to upload a PHP…

WordPress FEUP Arbitrary File Upload Exploit (CVE-2025-2005)

thinkphp5.0.1自动getshell脚本

Picsmize plugin for WordPress is vulnerable to arbitrary file uploads.

CVE-2020-7693: SockJS 0.3.19 Denial of Service POC

WordPress iSpring Embedder plugin <= 1.0 - CSRF to Arbitrary File Upload vulnerability

Pexels: Free Stock Photos <= 1.2.2 - Authenticated (Contributor+) Arbitrary File Upload

Proof-of-Concept script for WordPress plugin Bit File Manager version <= 6.5.7 Authenticated (Subscriber+) Limited JavaScript File Upload…

This is POC for CVE-2024-2667 (InstaWP Connect – 1-click WP Staging & Migration <= 0.1.0.22 - Unauthenticated Arbitrary File Upload)

The CSRF Exploit Generator allows users to generate a CSRF exploit form with configurable parameters.

Wordpress Plugin AI Engine 2.9.3 - 2.9.4 Proof Of Concept

User Registration Advanced Fields <= 1.6.20 - Unauthenticated Arbitrary File Upload

WordPress WPMasterToolKit plugin <= 1.13.1 - Arbitrary File Upload vulnerability

Nginx CVE-2019-20372 PoC, Unauthenticated File Upload Exploit