Security Notice: This repository contains working exploit code for educational and research purposes. Use responsibly and only on systems you own o...
CVE-2026-48907 – Joomla JCE Unauthenticated Remote Code Execution RCE Severity: Critical CVSS 9.8 / CVSS v4 10.0 CVE: CVE-2026-48907 CWE: CWE-284 –...
Execute an arbitrary command. Module Options msf use payload/linux/loongarch64/exec msf payloadexec show actions ...actions... msf payloadexec set ...
Description Daddy, teach me how to use random value in programming! This challenge demonstrates that rand without a seed is deterministic. Its outp...
If you wish to collaborate/discuss with me, contact me on discord @ashdfrkl Sharing this repo keeps me motivated to continue dropping 0-days for yo...
Bug-Bounty-Writeups...
🛡️ protection Kernel-level abuse protection for container hosts One static Go binary that guards Pterodactyl/Wings nodes, Docker hosts and bare VPS...
The WP Full Stripe Free plugin for WordPress is vulnerable to missing authorization in versions up to, and including, 8.4.3 via the wpfsupdatefaile...
CVE-2026-9082 Drupal PostgreSQL SQLi to RCE This repository contains a local lab and a short exploit for the Drupal JSON:API PostgreSQL SQL injecti...
CVE-2026-43503 DirtyClone - PoC - SecurewithUmer POC of DirtyClone — a Linux kernel local privilege escalation vulnerability. This repository conta...
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.