
CVE-2025-6082
Proof‑of‑Concept exploits the Full Path Disclosure bug in the “Birth Chart Compatibility” WordPress plugin (<=v2.0)

Proof‑of‑Concept exploits the Full Path Disclosure bug in the “Birth Chart Compatibility” WordPress plugin (<=v2.0)

CVE-2026-63030 (RCE) + CVE-2026-60137 (SQLi)

Events Manager < 7.4.1 - Unauthenticated Privilege Escalation to Administrator

WooCommerce Designer Pro <= 1.9.28 - Unauthenticated Arbitrary File Read

🐍 Python Exploit for CVE-2022-0739

CVE-2026-0594 List Site Contributors Plugin Exploit

Jquery File Tree 1.6.6 Path Traversal exploit (CVE-2017-1000170)

CVE-2026-5118-exp_wordpress_Divi Form Builder

Document Library Lite <= 1.1.6 - Missing Authorization to Sensitive Information Exposure | CVE-2025-11174

Relevanssi – A Better Search <= 4.22.0 - Missing Authorization to Unauthenticated Query Log Export

Modified the CVE-2024-25600

CVE-2026-3584

REST API TO MiniProgram <= 4.7.1 - Unauthenticated SQL Injection

WP Email Users <= 1.7.6 - SQL Injection

A XXE payload generator

CVE-2024-9047, wfu_file_downloader.php

Evangelos Mourikis POC for CVE-2015-6668 converted for Python 3

WordpressPingbackPortScanner