unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
增加标签
Tags (allow clear + 0 threshold)
Choose a tag...
Please select a valid tag.
godylockz/CVE-2026-92592
Proof of concept for CVE-2026-92592: Craft CMS authenticated RCE
Create: 2026-10-03 06:29:20 +0000 UTC Push: 2026-10-03 06:29:26 +0000 UTC |
godylockz/cve-2026-92592-craftcms
Proof of concept for CVE-2026-92592 Craft CMS
Create: 2026-10-03 06:25:55 +0000 UTC Push: 2026-10-03 06:26:09 +0000 UTC |
MNM-SEC/CVE-2026-78433
Gitea -- Attachments created before the January 2026 cutoff skip the cross repository check entirely, and permission is then evaluated against the repository named in the URL rather than the repository owning the attachment, so a private repository's attachment is served through any public repository's path
Create: 2026-10-03 04:45:32 +0000 UTC Push: 2026-10-03 04:45:34 +0000 UTC |
Cimihan123/CVE-2026-9558-lab-poc-bundle
POC for mautic SSTI
Create: 2026-10-03 02:59:02 +0000 UTC Push: 2026-10-03 02:59:04 +0000 UTC |
asvorg/CVE-2026-105030-poc
A python3 PoC for CVE-2026-105030 Kener 4.0.0 before 4.1.6 Hidden Monitor Data Disclosure via Dashboard API
Create: 2026-10-03 01:02:50 +0000 UTC Push: 2026-10-03 01:02:52 +0000 UTC |
antid00t/CVE-2026-15989
Unauthenticated Privilege Escalation Mass Exploit Super Forms <= 6.3.316 CVE-2026-15989
Create: 2026-10-03 00:55:33 +0000 UTC Push: 2026-10-03 00:55:35 +0000 UTC |
Ahmed-Elmahgob/POC-CVE-2026-102282
CVE-2026-102282: adm-zip LPE via SUID/SGID preservation during archive extraction (fixed in 0.6.1)
Create: 2026-10-02 23:30:57 +0000 UTC Push: 2026-10-02 23:33:52 +0000 UTC |
fl0ydsec/CVE-2026-15989
SFADMIN - CVE-2026-15989 Super Forms <= 6.3.316 unauthenticated privilege escalation (mass scanner + exploit)
Create: 2026-10-02 23:27:32 +0000 UTC Push: 2026-10-02 23:27:33 +0000 UTC |
hacbs-release-tests/collectors-no-cve-b20790a1
Create: 2026-10-02 20:42:04 +0000 UTC Push: 2026-10-02 20:42:09 +0000 UTC |
LipeOzyy/CVE-2026-42322-
Create: 2026-10-02 20:36:29 +0000 UTC Push: 2026-10-02 20:36:31 +0000 UTC |
LipeOzyy/CVE-2026-42322
Create: 2026-10-02 20:36:29 +0000 UTC Push: 2026-10-02 20:37:40 +0000 UTC |
Scyrix-LLC/CVE-2026-88773
PLACEHOLDER
Create: 2026-10-02 19:59:59 +0000 UTC Push: 2026-10-02 20:28:34 +0000 UTC |
decalage2/detect_CVE-2026-86950
A python tool to detect PDF files exploiting CVE-2026-86950
Create: 2026-10-02 19:30:07 +0000 UTC Push: 2026-10-02 19:30:10 +0000 UTC |
hacbs-release-tests/collectors-no-cve-afe20826
Create: 2026-10-02 18:05:50 +0000 UTC Push: 2026-10-02 18:05:55 +0000 UTC |
overgrowncarrot1/Instatic-Stored-XSS-CVE-2026-103931
CVE-2026-103931
Create: 2026-10-02 17:12:22 +0000 UTC Push: 2026-10-02 17:12:49 +0000 UTC |
KiwKNR/CVE-2026-104826
CVE-2026-104826: path traversal to RCE in DropzoneFileExplorer chunked upload handler
Create: 2026-10-02 16:14:22 +0000 UTC Push: 2026-10-02 16:14:27 +0000 UTC |
KiwKNR/CVE-2026-103978
CVE-2026-103978: unauthenticated path traversal (arbitrary .json read) in OPNMGR
Create: 2026-10-02 16:14:10 +0000 UTC Push: 2026-10-02 16:14:15 +0000 UTC |
longg66/cve-2025-21479_iqooneo7speed
CVE-2025-21479 (Qualcomm Adreno GPU) local privilege escalation on vivo iQOO Neo7 竞速版 / PD2232 (SM8475, Adreno 730, GKI 5.10). No bootloader unlock, no flashing. Includes adapted exploit source, prebuilt binaries, compatibility precheck, and KernelSU/ReSukiSU late-load persistence. Verified on kernel 5.10.233-gki, vendor patch 2025-03-05.
Create: 2026-10-02 15:25:49 +0000 UTC Push: 2026-10-02 15:28:49 +0000 UTC |
MRdark-ops/CVE-2026-55559
Unauthenticated RCE in Yamcs mission control via YAML injection in reconfigureInstance()
Create: 2026-10-02 14:30:25 +0000 UTC Push: 2026-10-02 14:30:26 +0000 UTC |
MRdark-ops/CVE-2026-40281-exploit
Gotenberg 8.30.1 unauthenticated RCE exploit
Create: 2026-10-02 14:20:27 +0000 UTC Push: 2026-10-02 14:21:17 +0000 UTC |
Previous
-521
-520
-519
-518
-517
-516
-515
-514
Next