
nex-forms_SQL-Injection-CVE-2023-2114
Quick Review about the SQL-Injection in the NEX-Forms Plugin for WordPress

Quick Review about the SQL-Injection in the NEX-Forms Plugin for WordPress

A static code analysis for WordPress (and PHP)

Abdal CVE-2026-63030 is a professional WordPress vulnerability scanner designed to detect exposure to CVE-2026-63030 through version analysis and…

White-box CMS security scanner that audits core, plugin, and theme versions, detects unauthorized modifications, and cross-references known…

A collection of useful resources for hacking WordPress and it's plugins and themes

This is a recurrence of cve-2019-9787 on Wordpress and a hash-based defense.

Integrates your Modern Honeypot Network Server and Wordpress Blog via MHN's REST API and WP's shortcodes

Identifies domains which run WordPress and tests against vulnerabilities (CVE-2023-32243) / #VU76395 / etc...

Demonstration of the WP Visitor Statistics plugin exploit

Static code analysis scanner for WordPress plugins and themes. Detects vulnerabilities like XSS and SQL injection via modular, extensible…

WordPress CVE-2026-63030 and CVE-2026-60137 security tool for detecting exposure to the WP2Shell pre-authentication RCE chain.

Proof-of-concept exploit for CVE-2026-7665, an unauthenticated information disclosure in Essential Addons for Elementor, allowing extraction of…

Proof-of-concept for Denial of Service (DoS) attacks against WordPress 4.9.8 and 5.5 via unauthenticated requests to vulnerable admin pages, causing…

WordPress Privilege Escalation Checker

Proof-of-concept exploit for CVE-2025-47445, a path traversal vulnerability in the WordPress Eventin plugin. Includes setup instructions for a local…

A simple tool to dump users in popular forums and CMS :)

PoC for CVE-2026-63030 + CVE-2026-60137, AKA WP2Shell

Scan WordPress installations for wp2shell vulnerabilities (CVE-2026-63030 + CVE-2026-60137). Identifies full RCE and SQL injection risks across…