
CVE-2023-24278
CVE-2023-24278 - Reflected XSS Vulnerabilities in Squidex

CVE-2023-24278 - Reflected XSS Vulnerabilities in Squidex

Vulnerabilidad RCE en Spring Framework vía Data Binding on JDK 9+ (CVE-2022-22965 aka "Spring4Shell")

MitM attack allowing a malicious interloper to impersonate a legitimate server when a client attempts to connect to it

Self-contained Docker reproduction and analysis of CVE-2024-23897, the Jenkins CLI arbitrary file read via the args4j @-syntax argument expansion.

SAP NetWeaver Visual Composer Metadata Uploader is not protected with a proper authorization, allowing unauthenticated agent to upload potentially…

This script is a tool to recursively download the contents of the '.git' directory from a website. Using Python and libraries like 'requests' and…

PowerShell script to test if a web app is vulnerable to CVE-2025-29927

Detection for CVE-2025-37164

Detection for CVE-2025-26399

The Popup Builder WordPress plugin before 4.2.3 does not prevent simple visitors from updating existing popups, and injecting raw JavaScript in them,…

POC for Roundcube vulnerabilities CVE-2024-42008 and CVE-2024-42010

CVE-2026-23552 - Cross-Realm Token Acceptance in camel-keycloak

Detection for CVE-2024-57378

Detection for CVE-2025-52914

GUI Shodan-powered scanner to identify n8n instances exposed to CVE-2025-68613 (version range 0.211.0–1.122.0)

Scans WordPress sites for WP Time Capsule plugin CVE-2024-8856, detecting versions below 1.22.22 and logging vulnerable targets to a file.

LiteSpeed Cache plugin for WordPress that could enable unauthenticated users to escalate their privileges

Test a host for susceptibility to CVE-2019-19781