writeups.xyz writeups.xyz / Harsh Jaiswal (@Rootxharsh)

Title Vulnerabilities Programs Authors
Hacking Apple - SQL Injection to Remote Code Execution
Hello Lucee! Let us hack Apple again?
Atlassian Confluence - Remote Code Execution (CVE-2023-22527)
Adobe ColdFusion Pre-Auth RCE(s)
CVE-2023-36934 Analysis: MOVEit Transfer SQL Injection
PHP Development Server <= 7.4.21 - Remote Source Disclosure
Hacking Google Drive Integrations
"A tale of making internet pollution free" - Exploiting Client-Side Prototype Pollution in the wild
Finding 0day to hack Apple
Abusing feature to steal your tokens
Vimeo SSRF with code execution potential.
Path traversal while uploading results in RCE
RCE due to ShowExceptions