
CVE-2025-12189
Bread & Butter: Gate content + Capture leads + Collect first-party data + Nurture with Ai agents <= 7.10.1321 - Cross-Site Request Forgery to…

Bread & Butter: Gate content + Capture leads + Collect first-party data + Nurture with Ai agents <= 7.10.1321 - Cross-Site Request Forgery to…

Proof of Concept for Stored-XSS on Vulnerable WP-Statistics Plugin known as CVE-2025-9816

Tool for detecting and exploiting CVE-2025-25257 in Fortinet FortiWeb.

Proof-of-concept exploit for CVE-2025-8889: arbitrary file upload to RCE in WordPress Compress Then Upload plugin 1.0.3. Includes step-by-step PoC…

Simple 301 Redirects by BetterLinks - 2.0.0 – 2.0.3 - Subscriber + Arbitrary Plugin Installation

CVE-2021-46079 - An Unrestricted File Upload vulnerability exists in Sourcecodester Vehicle Service Management System 1.0. A remote attacker can…

Proof-of-concept demonstrating CVE-2022-0155 cookie theft via HTTP redirect in follow-redirects npm package, including Express server and client…

Automated PoC scanner for CVE-2025-29927 Next.js middleware bypass vulnerability. Tests multiple x-middleware-subrequest payloads across target URLs…

AR For Woocommerce <= 6.2 - Unauthenticated Arbitrary File Upload

CVE-2023-1545-POC with python

ConcreteCMS v.9.2.1 is affected by Arbitrary File Upload vulnerability that allows Cross-Site Scriting (XSS) Stored.

Proof-of-concept exploit for CVE-2024-32002, a Git remote code execution vulnerability triggered when cloning a malicious repository.

Python exploit script for CVE-2018-1306 in Apache Pluto 3.0.0, enabling malicious file upload via HTTP method tampering to achieve remote code…

Wordpress - Motors Plugin <= 1.4.64 - Arbitrary Plugin Installation Vulnerability

Picsmize <= 1.0.0 - Unauthenticated Arbitrary File Upload

Python PoC for CVE-2022-44268 that embeds arbitrary file contents into PNG images via ImageMagick, with extraction support for exiftool.

eMagicOne Store Manager for WooCommerce <= 1.2.5 - Unauthenticated Arbitrary File Upload via set_file Task

An XSS exploitation command-line interface and payload generator.