
log4j2-exploit
log4j2 Log4Shell CVE-2021-44228 proof of concept

log4j2 Log4Shell CVE-2021-44228 proof of concept

CVE-2018-12386 - Firefox Sandboxed RCE Exploit for Linux (Firefox <v62.0.3)

Apache Struts CVE-2017-5638 RCE exploitation

Deliberately vulnerable Next.js application designed for practicing exploitation of CVE-2025-29927, with a tutorial video for guided learning.

Proof-of-concept exploit for CVE-2026-55168 demonstrating authenticated arbitrary file write via symlink planting during backup restore in Runtipi.

Bloomberg Memray’s Stored XSS via Unescaped Command-Line Metadata

Proof-of-concept exploit for CVE-2025-55182, a critical unauthenticated RCE in React Server Components. Includes a Python script demonstrating…

PoC (Proof of Concept) de la CVE-2024-4367 - Vulnérabilité RCE dans libwebp. Démonstration complète incluant : création de payloads, scénarios…

CVE-2022-23305 Log4J JDBCAppender SQl injection POC

POC for CVE-2021-44228 within Springboot

Python exploit for CVE-2025-55182 in React Server Components, injecting a shell into Next.js 16.0.6 applications. Includes a vulnerable app for…

Analysis of CVE-2025-68613

Bash POC script for RCE vulnerability in Apache 2.4.49

Python-based proof-of-concept exploit for CVE-2017-5638, a remote code execution vulnerability in Apache Struts 2, enabling command injection against…

CVE-2019-9053.

A vulnerable web app for log4j2 RCE(CVE-2021-44228) exploit test.

Dockerized Go app for testing the CVE-2021-44228 vulnerability

WPScan rewritten in Python + some WPSeku ideas