[codeb0ss] - Omnipotent Forums.
1.5K subscribers
80 photos
62 files
47 links
Educational, research, and awareness content only. Committed to ethical security practices, responsible disclosure, and lawful use. No abuse, misuse, or illegal activity.
Download Telegram
Welcome to our new home.

Every ending creates a new beginning, and this channel marks the start of a new chapter for our community. We remain committed to learning, research, knowledge sharing, and responsible security practices.

Thank you to everyone who continues to support and grow with us. We start here, and together we’ll build something even stronger than before.

- codeb0ss -
🔥4
PrivateVuln_CpanelGetEMAIL.zip
387.8 KB
This is a special Cpanel Vuln discovered by our team, it still works and is the best.

It takes the site email and is very specially used for bigbounty work,etc

Auto Scan/Mass > Expl0it

Just enter your cpanel list and it will do its job.

Enjoy;
5
[codeb0ss] - Omnipotent Forums.
Photo
Gitea_CVE-2026-27771.zip
441 KB
https://thehackernews.com/2026/05/gitea-vulnerability-exposes-private.html

https://horizon3.ai/attack-research/vulnerabilities/cve-2026-27771/

https://orca.security/resources/blog/gitea-container-registry-vulnerability/


Fofa : app="Gitea" - (245,703 Records)

Shodan : http.html:"Gitea"

Proofs are posted in the comments,
For any problems, or to purchase VIP access and features, please contact: @uncodeboss


This content is shared strictly for authorized testing, educational,
and research purposes only. It is not intended for malicious use. All techniques, tools,
or information provided are meant to demonstrate security concepts and to raise awareness in a controlled and legal environment.
Please do not remove or flag this content, as it is shared responsibly for learning and academic purposes.
👏32
[codeb0ss] - Omnipotent Forums.
Photo
CVE-2026-42647_Wordpress-JoomSport.zip
435.1 KB
https://nvd.nist.gov/vuln/detail/CVE-2026-42647

https://patchstack.com/database/wordpress/plugin/joomsport-sports-league-results-management/vulnerability/wordpress-joomsport-plugin-5-7-7-sql-injection-vulnerability

https://pentest-tools.com/vulnerabilities-exploits/joomsport-577-sql-injection_29349


Fofa : body="wp-content/plugins/joomsport-sports-league-results-management" && (body="joomsport-sports-league-results-management" && body="joomsport")


Shodan : http.html:"wp-content/plugins/joomsport-sports-league-results-management" && http.html:"joomsport-sports-league-results-management" && http.html:"joomsport"

Enjoy;
6
{VIP} CVE-2026-48907] - Joomla JCE editor extension (<=v2.9.99.5) - Unauthenticated Remote-Code-Execution.

https://cvefeed.io/vuln/detail/CVE-2026-48907

Proof: In the Comment.

Our VIP/Premium Guests can get access to using this PoC/EXP.
🥰21