Technical vulnerability analysis and CVE briefing for CVE-2026-9645 affecting ScadaBR.
CVE-2026-19195 Proof of Concept
CVE-2026-19193 Proof of Concept
KSU installer for supported Samsung Galaxy firmware with CVE-2026-43499
A Linux kernel local privilege escalation affecting the XFS filesystem copy-on-write (CoW) path.
Root your Galaxy using CVE-2026-43499
Zapscape (CVE-2026-64561) KVM/x86 shadow MMU UAF guest-to-host escape PoC mirror — V4bel/@v4bel, MIT; for authorized security testing
PoC for CVE-2026-71554 - h2 duplicate Host header request smuggling primitive (fixed in 4.4.1)
PoC for CVE-2026-71554 — h2 duplicate Host header request smuggling primitive (fixed in 4.4.1)
Wormable exploit for CVE-2026-57858
Wordpress Pre-auth XSS to RCE exploit PoC (xss2shell & CVE-2026-64638)
PoC funcional de CVE-2026-64638 (XSS2Shell): cadena pre-auth XSS a RCE en WordPress Core. Laboratorio Docker + servidor atacante Python + análisis técnico y mitigación.
XSS2Shell (CVE-2026-64638) PoC — WordPress pre-auth XSS to RCE chain
Exploit KVM/x86 guest-to-host escape CVE-2026-64561 with Zapscape, a proof-of-concept demonstrating hypervisor vulnerability.
Guest-to-host KVM/x86 escape exploiting CVE-2026-64561, delivering a full PoC chain and analysis for security researchers.
SCTPhantom (CVE-2026-64564) SCTP ASCONF DEL-IP UAF LPE PoC (Debian 13 6.12.95) — community PoC mirror, MIT; for authorized security testing
Generic kernel live patch for the KVM/x86 shadow-MMU use-after-free (Zapscape, CVE-2026-64561)
ghostlock + tcp-zerocopy hybrid CVE-2026-43499 port