
CVE-2026-12243-NLTK-PoC
Docker lab demonstrating CVE-2026-12243 path traversal in NLTK before 3.10.0, contrasting vulnerable and patched behavior with a synthetic secret in…

Docker lab demonstrating CVE-2026-12243 path traversal in NLTK before 3.10.0, contrasting vulnerable and patched behavior with a synthetic secret in…

Educational Docker-based lab demonstrating the Heartbleed bug (CVE-2014-0160) with hacker, victim, and server containers for hands-on exploitation…

Dockerfile containing all the necessary setup files to demo the exploit

This contains the necessary files and Docker to replicate A vulnerability in OURPHP that has a XSS Vulnerability (CVE-2023-30212)

Docker container lab to play/learn with CVE-2021-41773

Dockerfile for testing CVE-2014-0160 Heartbleed exploitation.

Stage two containers

A comprehensive collection of 12 containerized web exploitation challenges covering CVE-2023-25690, WebAuthn bypasses, HTTP/3 smuggling, and advanced…

kali-linux-docker

Dockerized PHP application providing hands-on XSS vulnerability challenges and bypass examples, including WAF, blacklist, and JavaScript validation…

A command-line fuzzer for the Apache JServ Protocol (ajp13)

Some setup scripts for security research tools.

Vulnerable environments paired with ready-to-use Nuclei templates for security testing and learning! 🚀

Docker-based lab demonstrating CVE-2018-3760 path traversal in Ruby on Rails Sprockets, with POC and environment setup for security testing and…

Proof of Concept (POC) for the CVE-2025-25296 vulnerability affecting Label Studio versions prior to 1.16.0

Docker-based PoC for Flask CVE-2023-30861, demonstrating session handling vulnerability between Flask and reverse proxy cache servers for security…

Docker-based lab environment for CVE-2021-41773 Apache path traversal vulnerability with PoC exploit and detailed walkthrough for security testing…

The OWASP Java Encoder is a Java 1.5+ simple-to-use drop-in high-performance encoder class with no dependencies and little baggage. This project will…