CVE-2026-9256 Nginx heap buffer overflow POC
Detection script for CIFSwitch - CVE-2026-46243
Script para comprobar si la vulnerabilidad de Linux CIFSwitch (CVE-2026-46243) nos afecta.Detecta configuraciones potencialmente vulnerables y mitigaciones sin ejecutar exploits.
Mass exploitation tool for CVE-2026-8206 – Unauthenticated Privilege Escalation via 'handle_forgot_password' in Kirki WordPress plugin (≤6.0.6).
A Bash implementation of copyfail (CVE-2026-31431)
PAN-OS: GlobalProtect Authentication Bypass
A Go implementation of CIFSwitch (CVE-2026-46243)
Exploits the CVE-2026-0257 vulnerability by forging a GlobalProtect authentication override cookie using the TLS server's public key.
SSRF — CVE-2026-44578 Scanner & Exploit ║ ║ Next.js WebSocket Upgrade Handler SSRF
Automated defect verification tool for 6 dnsmasq CVEs (CVE-2026-2291, 4890, 4891, 4892, 4893, 5172)
Drupal Core 10.5.5 - Error-Based SQL Injection
WordPress OrderConvo 14 - Path Traversal
Interactive Ruby shell for authorized CVE-2025-55182 (react2shell) testing
CVE-2026-8836 — lwIP SNMPv3 stack-based buffer overflow PoC (CVSS 9.8)
CVE 2026 7465 Spectra Gutenberg Blocks <= 2.19.25 - Authenticated (Contributor+) Remote Code Execution via Arbitrary PHP Function Call via Block Attributes