
learning-management-system
Masteriyo - LMS for WordPress <= 1.6.7 - Sensitive Information Exposure

Masteriyo - LMS for WordPress <= 1.6.7 - Sensitive Information Exposure

Exploit script for CVE-2024-8275, a critical unauthenticated SQL injection in The Events Calendar WordPress plugin, enabling database information…

Proof of Concept of vunerability CVE-2018-6389 on Wordpress 4.9.2

Python exploit for CVE-2023-47668 that extracts sensitive log information from vulnerable Restrict Content WordPress plugin versions <= 3.2.7.

The Ultimate WordPress Toolkit – WP Extended <= 3.0.12 - Unauthenticated SQL Injection via Login Attempts Module

Chartify – WordPress Chart Plugin <= 2.9.5 - Unauthenticated Local File Inclusion via source

Proof-of-concept exploit for CVE-2024-12542 targeting unauthenticated sensitive information exposure in WordPress linkID plugin via missing…

The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not have authorisation in an AJAX action, allowing…

PoC for CVE-2017-5487 - WordPress User Enumeration via REST

Exploit for CVE-2017-5487 to enumerate WordPress user accounts via the REST API, extracting sensitive information from vulnerable 4.7 installations.

exploit script for job manager plugin of wordpress

WordPress Plugin Advanced Video 1.0 - Local File Inclusion Update

authorized CYBERDUDEBIVASH ECOSYSTEM tool for detecting CVE-2026-23550 in WordPress Modular DS plugin

Multi-threaded Python scanner for CVE-2026-23550, detecting unauthenticated admin takeover in WordPress Modular DS plugin with full wp-admin…

Exploit for unauthenticated Local File Inclusion (LFI) in WordPress Gecko theme <=1.9.8, allowing arbitrary file read including wp-config.php. Python…

Proof of concept for unauthenticated sensitive data disclosure affecting the wp-import-export WordPress plugin (CVE-2022-0236)

💣 Wordpress WooCommerce users dump exploit.

Exploit for CVE-2022-1609 WordPress Weblizar Backdoor.