This repository contains a proof-of-concept exploit script for CVE-2025-32432, a pre-authentication Remote Code Execution (RCE) vulnerability affecting CraftCMS versions 4.x and 5.x. The vulnerability exists in the asset transform generation feature of CraftCMS.
☆27Apr 27, 2025Updated last year
Alternatives and similar repositories for CVE-2025-32432
Users that are interested in CVE-2025-32432 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- CraftCMS RCE Checker (CVE-2025-32432)☆10Apr 27, 2025Updated last year
- Nuclei template to detect Apache servers vulnerable to CVE-2024-38473☆30Aug 24, 2024Updated last year
- POC - CVE-2024–4956 - Nexus Repository Manager 3 Unauthenticated Path Traversal☆16Nov 26, 2024Updated last year
- CVE-2025-68428 Proof of Concept☆24Jan 8, 2026Updated 7 months ago
- ☆24Apr 21, 2022Updated 4 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Wing FTP Server Remote Code Execution (RCE) Exploit (CVE-2025-47812)☆54Jul 14, 2025Updated last year
- ✪ Collection of Metasploit Modules ✪☆17Apr 17, 2026Updated 4 months ago
- Linux kernel FUSE readdir cache out-of-bounds write (CVE-2026-31694): a malicious FUSE server overflows a page-cache page by 24 bytes. Po…☆16Jun 30, 2026Updated last month
- Simple script to bypass AMSI on Win 10 and Win 11 by exploiting AmsiOpenSession☆16Jan 2, 2026Updated 7 months ago
- JEB MCP Server for Claude Desktop integration. AI-assisted Android APK reverse engineering with decompilation, batch renaming, cross-refe…☆24Apr 5, 2026Updated 4 months ago
- Smart and efficient tool to automate open redirect detection at scale.☆10Mar 21, 2022Updated 4 years ago
- # 🕵️ PathCatcher v1.0 - Path Traversal & LFI Scanner☆24Jul 13, 2025Updated last year
- Confluence Pre-Auth Remote Code Execution via OGNL Injection (CVE-2022-26134)☆44Jun 6, 2022Updated 4 years ago
- ☆17Jun 26, 2026Updated last month
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- CVE-2024-21006 exp☆17Jul 29, 2024Updated 2 years ago
- CVE-2025-4138 / CVE-2025-4517 — Python tarfile PATH_MAX Symlink Filter Bypass☆17Jun 4, 2026Updated 2 months ago
- ☆39Dec 14, 2024Updated last year
- Grep subdomains from web pages.☆42Feb 10, 2025Updated last year
- A critical vulnerability, CVE-2024-53677, has been identified in the popular Apache Struts framework, potentially allowing attackers to e…☆96Dec 20, 2024Updated last year
- Wordlists for Wfuzz or Dirbuster☆27Feb 19, 2016Updated 10 years ago
- ☆14Aug 22, 2025Updated 11 months ago
- ☆12Dec 30, 2024Updated last year
- Authorization Bypass in Next.js Middleware☆10Mar 23, 2025Updated last year
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- A tool for exploiting Kerberos tickets against system with Credential Guard enabled.☆15Sep 2, 2025Updated 11 months ago
- ☆31Jun 5, 2023Updated 3 years ago
- Two plugins to recover TMP keys from Saleae logic analyser traces☆15Jun 10, 2022Updated 4 years ago
- Authenticated privilege escalation in Camaleon CMS v2.9.0 via improper parameter handling in the updated_ajax endpoint.☆19Feb 4, 2026Updated 6 months ago
- A tiny demo app using SSL pinning to block HTTPS MitM interception☆14Aug 8, 2022Updated 4 years ago
- Chrome and Firefox extension that lists Amazon S3 Buckets while browsing☆133Mar 30, 2026Updated 4 months ago
- 渗透测试辅助工具箱,反弹shell,命令生成器,输入对应IP端口即可,实现一劳永逸☆37Feb 8, 2023Updated 3 years ago
- ☆75Nov 28, 2025Updated 8 months ago
- CVE-2025-53770 Mass Scanner☆15Jul 29, 2025Updated last year
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- AI exploit simulation and continuous security pipeline for LLM apps and AI agents☆16Mar 16, 2026Updated 5 months ago
- DictLoader / 字典匹配ShellCode加载器 / Code By:Tas9er☆16Oct 25, 2025Updated 9 months ago
- CVE-2023-22894☆13Apr 24, 2023Updated 3 years ago
- BuddyPress is an open source WordPress plugin to build a community site. In releases of BuddyPress from 5.0.0 before 7.2.1 it's possible …☆19May 31, 2021Updated 5 years ago
- In Detail Methodology of How I perform Web Pentesting☆10Oct 18, 2025Updated 10 months ago
- "闪紫"(英文名shiningZ)社工字典生成工具,支持ABC自定义排列组合、ABC列字典AI扩展、AI提示词联想字典、自定义AI提示、字典去重、结果导出等☆34Oct 27, 2025Updated 9 months ago
- Writeup Template. Feel free to replicate but please give me credit!☆13Nov 7, 2025Updated 9 months ago