
CVE-2022-26711
Integer overflow in Apple ImageIO WebP parsing (macOS/iOS)

Integer overflow in Apple ImageIO WebP parsing (macOS/iOS)

A security research tool for simulating targeted phishing campaigns using CVE-2024-21413 (Moniker Link).

Mass vulnerability scanner for CVE-2026-49049 – Unauthenticated Remote Code Execution in Joomla Helix3 plugin. Multi‑threaded, detects both executed…

CVE Reproduction: cve-2026-0770-langflow_rce_reproduction

PressVector - Advanced WordPress Vulnerability Scanner CVE-2026-63030 (REST batch route confusion) / CVE-2026-60137 (SQLi) Developer: Vulnquest

CVE-2026-49049 Helix3 (JoomShaper) Joomla Unauthenticated AJAX RCE Scanner

Full Metasploit exploitation walkthrough against Metasploitable2 — vsftpd backdoor, Samba CVE-2007-2447, UnrealIRCd backdoor, Netcat exfiltration,…

PoC of CVE-2025-27515

Simulates CVE-2026-21011, a Log4j-style JNDI injection in a custom logger: parses ${jndi:...} patterns and demonstrates LDAP-triggered remote code…

CVE-2019-0708 RCE远程代码执行getshell教程

Technical troubleshooting repository for fixing infinite rendering vulnerability loops and resource exhaustion threats under CVE-2026-23869 cleanly.

cPanelSniper STABLE - CVE-2026-41940 optimized for 10M+ targets

Arbitrary File Disclosure Vulnerability in Icinga Web 2 <2.8.6, <2.9.6, <2.10

Windows File Explorer Zero Click NTLMv2-SSP Hash Disclosure

Generates five .NET deserialization payload formats for CVE-2026-56158, delivers them over HTTP/SOAP/JSON endpoints, includes mock server, scanner,…

Proof of Concept for CVE-2025-25599

cve-2021-38314 - Unauthenticated Sensitive Information Disclosure

Proof-of-concept for an unauthenticated SQL injection vulnerability in XOne Web Monitor that allows credential dumping and data extraction via…