
CVE-2021-32819
SquirrellyJS mixes pure template data with engine configuration options through the Express render API. By overwriting internal configuration…

SquirrellyJS mixes pure template data with engine configuration options through the Express render API. By overwriting internal configuration…

DLL-injectable internal game cheat for Plutonium BO2 zombies

Proof-of-concept demonstrating an authorization bypass in Traefik's Kubernetes Gateway provider (CVE-2026-54761) via a crossProviderNamespaces…

Proof-of-concept exploit for CVE-2022-46364, an Apache CXF SSRF vulnerability enabling arbitrary file reads and internal network probing via crafted…

[CVE-2024-26581] Vulnerability Checker for BGN Internal

Use Exposed KongAPI to act like a proxy and get metadata urls or internal urls

Internal Hostname Disclosure Vulnerability

Script to exploit CVE-2018-1042 in order to do internal port scans.

PoC for CVE-2024-21626: runc leaks an internal fd referencing the host CWD before pivot_root, enabling container escape by setting process.cwd to…

The detection of internal security controls at a company

CVE-2022-23779: Internal Hostname Disclosure Vulnerability

Technical audit of Kioptrix Level 1. Focus: Samba 2.2.1a exploitation (CVE-2003-0201), manual enumeration, and internal infrastructure hardening.

Vatilon-based IP cameras expose internal web directories without authentication, leading to information disclosure.

CF Internal Link Shortcode <= 1.1.0 - Unauthenticated SQL Injection

Just proof of concept for Cisco CVE-2020-3452. Using external or internal file base.

Simulates CVE-2025-29927, a critical Next.js vulnerability allowing attackers to bypass middleware authorization by exploiting the internal…

Detects unauthenticated MLflow webhook SSRF (CVE-2026-64849) that accesses internal or cloud metadata services and leaks response details via…

Scans SSH servers for Terrapin-affected OpenSSH versions by grabbing banners over port 22, enabling quick internal audits, penetration testing, and…