
zappzarapp-php-security
PHP 8.4+ security library (mirror)

PHP 8.4+ security library (mirror)

Safely detect whether a PAN-OS target is vulnerable to CVE-2026-0265.

Exploit PoC for CVE-2026-56848, a Node.js HTTP/2 heap-use-after-free that allows remote unauthenticated DoS. Includes raw-socket trigger, ASan build…

Technical analysis of the cPanel/WHM auth bypass

PoC: Shiori JWT CheckToken never re-validates account state (CVE-2026-71206, High 8.2)

PoC for CVE-2026-73847 - emlog AI Assistant CSRF to SQL execution to admin takeover (CVSS 6.8)

TM4WEB Vulnerability - CVE-2022-35497

Detection script for CVE-2026-11374

CVE-2021-26690 patch diffing - Apache HTTP mod_session NULL pointer dereference

Script em python scanner safe-check da CVE-2025-23419

Proof-of-concept exploit for CVE-2025-12028 demonstrating CSRF-based OAuth token theft in WordPress IndieAuth plugin, enabling unauthorized API…

mooSocial v3.1.8 is vulnerable to cross-site scripting on Multiple URLs.

mooSocial v3.1.8 is vulnerable to cross-site scripting on user login function.

mooSocial v3.1.8 is vulnerable to cross-site scripting on Invite Friend function.

mooSocial v3.1.8 is vulnerable to cross-site scripting on search function.

SonicWall security audit toolkit with vulnerable CTF lab (CVE-2021-20038, CVE-2024-53704)