unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
增加标签
Tags (allow clear + 0 threshold)
Choose a tag...
Please select a valid tag.
zylideum/CVE-2026-57858
Wormable exploit for CVE-2026-57858
Create: 2026-08-07 21:09:14 +0000 UTC Push: 2026-08-07 21:09:15 +0000 UTC |
EzraMansor/CVE-2025-32432-PoC
A simple PoC on the Remote Code Execution (RCE) Vulnerability of CraftCMS designated as CVE-2025-32432 written in Go
Create: 2026-08-07 21:05:02 +0000 UTC Push: 2026-08-07 21:05:03 +0000 UTC |
ethicbrudhack/CVE-2026-71851-Insufficient-Entropy-in-CryptoJS.lib.WordArray.random-Leads-to-BIP39-Recovery
Create: 2026-08-07 20:12:45 +0000 UTC Push: 2026-08-07 20:12:46 +0000 UTC |
vannet-855/CVE-2026-43499_Target
profile.json,target.h, c preload.so generator
Create: 2026-08-07 20:02:51 +0000 UTC Push: 2026-08-07 20:02:52 +0000 UTC |
mdvpat/CVE-2026-55957-PoC
Reproducible Docker lab for the Apache Tomcat JNDIRealm GSSAPI authentication bypass
Create: 2026-08-07 20:02:00 +0000 UTC Push: 2026-08-07 20:02:01 +0000 UTC |
5yu4n/CVE-2026-64638
CVE-2026-64638
Create: 2026-08-07 19:45:44 +0000 UTC Push: 2026-08-07 19:45:45 +0000 UTC |
CerberusMrXi/CVE-2025-55182---Advanced-React-Server-Components-RCE-Exploit
Advanced React Server Components RCE scanner for CVE-2025-55182. Features: multi-stage fingerprinting, vulnerability verification, DNS exfiltration, interactive shell, payload obfuscation, and professional reporting (JSON/HTML/PDF). Authorized testing only.
Create: 2026-08-07 17:57:25 +0000 UTC Push: 2026-08-07 17:57:26 +0000 UTC |
CerberusMrXi/CVE-2025-55182-Advanced-React-Server-Components-RCE-Exploit
Advanced React Server Components RCE scanner for CVE-2025-55182. Features: multi-stage fingerprinting, vulnerability verification, DNS exfiltration, interactive shell, payload obfuscation, and professional reporting (JSON/HTML/PDF). Authorized testing only.
Create: 2026-08-07 17:57:25 +0000 UTC Push: 2026-08-07 17:57:26 +0000 UTC |
Ashwesker/Ashwesker-CVE-2025-68645
POC BLH Magelang CSIRT 2026 by babyrootkid
Create: 2026-08-07 17:47:55 +0000 UTC Push: 2026-08-07 17:47:56 +0000 UTC |
Boreas37/CVE-2026-64638-PoC-XSS2Shell-
XSS2Shell (CVE-2026-64638) PoC — WordPress pre-auth XSS to RCE chain
Create: 2026-08-07 17:07:17 +0000 UTC Push: 2026-08-09 13:59:30 +0000 UTC |
Boreas37/CVE-2026-64638-PoC
XSS2Shell (CVE-2026-64638) PoC — WordPress pre-auth XSS to RCE chain (authorized testing only)
Create: 2026-08-07 17:02:36 +0000 UTC Push: 2026-08-07 17:02:40 +0000 UTC |
686f6c61/POC-WP-XSS2Shell-CVE-2026-64638
PoC funcional de CVE-2026-64638 (XSS2Shell): cadena pre-auth XSS a RCE en WordPress Core. Laboratorio Docker + servidor atacante Python + análisis técnico y mitigación.
Create: 2026-08-07 16:52:12 +0000 UTC Push: 2026-08-07 16:52:15 +0000 UTC |
Giangdurian/CVE-2021-3129
Create: 2026-08-07 14:46:50 +0000 UTC Push: 2026-08-07 14:46:51 +0000 UTC |
HORKimhab/CVE-2026-64638
CVE-2026-64638 - Draft or TODO
Create: 2026-08-07 14:46:25 +0000 UTC Push: 2026-08-07 14:46:29 +0000 UTC |
Giangdurian/CVE-2026-41242
Create: 2026-08-07 14:38:16 +0000 UTC Push: 2026-08-07 14:38:17 +0000 UTC |
Hunt-Benito/go-without-bounds-cve-2026-67822-stack-overflow-in-tenda-w6-s-wifissidset
Create: 2026-08-07 14:16:17 +0000 UTC Push: 2026-08-07 14:16:18 +0000 UTC |
R3n3r0/CVE-2026-0049
Create: 2026-08-07 13:20:19 +0000 UTC Push: 2026-08-07 13:20:20 +0000 UTC |
HackSpeak/CVE-2026-64564
SCTPhantom (CVE-2026-64564) SCTP ASCONF DEL-IP UAF LPE PoC (Debian 13 6.12.95) — community PoC mirror, MIT; for authorized security testing
Create: 2026-08-07 12:47:28 +0000 UTC Push: 2026-08-07 12:47:50 +0000 UTC |
Hunt-Benito/one-multiply-too-many-cve-2026-70638-llama-cpp-android-jni-integer-overflow
Create: 2026-08-07 10:36:32 +0000 UTC Push: 2026-08-07 10:36:33 +0000 UTC |
oscerd/CVE-2026-64640
Reproducer for CVE-2026-64640 — Apache Polaris Iceberg REST register/register-view vends storage credentials and reads an attacker-chosen metadata location before validating allowedLocations (confused-deputy cross-tenant read). Affected ≤ 1.6.0, fixed in 1.7.0.
Create: 2026-08-07 09:33:29 +0000 UTC Push: 2026-08-07 09:33:32 +0000 UTC |
Previous
63
64
65
66
67
68
69
70
Next