
CVE-2024-35511
Men Salon Management System Using PHP and MySQL

Men Salon Management System Using PHP and MySQL
Exploit code for CVE-2024-4439, an unauthenticated stored XSS vulnerability in WordPress Core up to 6.5.1, enabling arbitrary PHP command execution…

Proof-of-concept exploit for CVE-2023-47014 demonstrating CSRF-to-CORS vulnerability in Sticky Notes App v1.0. Includes crafted payload for…

Proof-of-concept CSRF exploit targeting CVE-2025-50364 in PHPGurukul Maid Hiring Management System v1.0 that adds arbitrary admin categories via a…

Automated exploit for CVE-2023-51409, an unauthenticated arbitrary file upload vulnerability in the AI Engine ChatGPT Chatbot WordPress plugin,…

Proof-of-concept for CVE-2023-50596: a stored XSS vulnerability in Simple Image Stack Website (PHP/API v1.0) triggered via a crafted URL payload.

Lis Video Gallery <= 0.2.1 - Unauthenticated PHP Object Injection


CVE-2020-12640: Local PHP File Inclusion via "Plugin Value" in Roundcube Webmail

Proof-of-concept exploit for reflected cross-site scripting (XSS) in Code-Projects Blood Bank V1.0 via the 'error' parameter in abs.php, with a…