
CVE-2021-24307-all-in-one-seo-pack-admin-rce
Proof-of-concept exploit for CVE-2021-24307, an authenticated admin RCE in All in One SEO Pack <= 4.1.0.1 via PHP unserialization, enabling arbitrary…

Proof-of-concept exploit for CVE-2021-24307, an authenticated admin RCE in All in One SEO Pack <= 4.1.0.1 via PHP unserialization, enabling arbitrary…

phpunit-shell | CVE_2017-9841

Detailed disclosure of an unauthenticated password change vulnerability in ForLogic Qualiex v1 and v3, enabling remote privilege escalation and…

Python-based proof-of-concept exploit for CVE-2022-22965 (Spring4Shell) with vulnerability checking, remote exploitation, and webshell command…

BIGIP CVE-2020-5902 Exploit POC and automation scanning vulnerability

Proof of Concept exploit for the Joomla 3.7.0 com_fields SQL injection vulnerability (CVE-2017-8917), demonstrating detection, enumeration, and data…

CVE-2022-35513 | blink1-pass-decrypt

CVE-2025-64328 FreePBX Authenticated Command Injection in the framework module.

Stored Cross-Site Scripting in "usememos" via SVG

Exploit script for CVE-2022-41544 - RCE in get-simple CMS

CVE-2018-8097 PoC

libSSH bypass

🔓 Next.js Auth Bypass Demo - Educational application demonstrating CVE-2025-29927 middleware authentication bypass vulnerability . ⚠️ For…

Proof-of-concept exploit for Tomcat CVEs causing CPU exhaustion via parallel multipart requests, with Docker setup and remediation guidance.

Exploit for CVE-2025-34085

Proof-of-concept exploit for CVE-2022-29078 (ejs 3.1.6) enabling remote command execution via a Python script. Accepts a target URL and provides an…

CVE-2019-9054 exploit added support for python3 + bug fixes

bloodbank POCs