PoC Archive PoC Archive

tag

Lua

Apache APISIX `jwe-decrypt` Integrity-Check Bypass → Unauthenticated Gateway Auth Bypass (CVE-2026-49230)
CVE-2026-49230 web Patched
CVE-2026-49230webCRITICAL 9.1Patched2026-07-27RediShell: Redis Lua Scripting Use-After-Free Leading to JOP-Chained Remote Code Execution (CVE-2025-49844) EPSS 87%
CVE-2025-49844 binary Patched
CVE-2025-49844binaryCRITICAL 9.9Patched2026-07-06Wing FTP Server Admin Session Poisoning via Lua loadfile() RCE (CVE-2026-44403)
CVE-2026-44403 web Patched
CVE-2026-44403webHIGHPatched2026-07-05