
CVE-2026-63077
Proof-of-concept exploit for JetBrains TeamCity that performs unauthenticated remote code execution via agent polling protocol deserialization,…

Proof-of-concept exploit for JetBrains TeamCity that performs unauthenticated remote code execution via agent polling protocol deserialization,…


CSRF (Cross-Site Request Forgery) vulnerability in gpEasy 1.5-16.3

RCE in rclone

CVE-2022-46364 Apache CXF XOP:Include SSRF / LFI

Exploit for CVE-2023-27163 - SSRF Baskets Requests

Wordpress-Related-Posts-Lite-plugin-XSS-PoC

Wagtail CMS 6.4.1 Stored XSS

POC BLH Magelang CSIRT 2026 by babyrootkid



CVE-2021-45744 - A Stored Cross Site Scripting (XSS) vulnerability exists in bludit 3.13.1 via the TAGS section in login panel. Application stores…

SimplCommerce is affected by a Broken Access Control vulnerability in the review system, allowing unauthorized users to post reviews for products…

CRMEB /system/SystemDatabackupServices.php 接口 未授权 SQL 注入漏洞


Exploit for CVE-2025-6440: unauthenticated arbitrary file upload in WooCommerce Designer Pro WordPress plugin, enabling RCE via malicious PHP upload.

Proof-of-concept HTML page that reproduces CVE-2019-10070, a cross-site scripting vulnerability in Apache Atlas, for validation and defensive testing.
