unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
增加标签
Tags (allow clear + 0 threshold)
Choose a tag...
Please select a valid tag.
webshellseo8/CVE-2026-57811-Proof-of-Concept
Create: 2026-07-29 12:51:00 +0000 UTC Push: 2026-07-29 12:51:09 +0000 UTC |
webshellseo8/CVE-2026-50522-Proof-of-Concept
Create: 2026-07-29 12:41:41 +0000 UTC Push: 2026-07-29 12:41:49 +0000 UTC |
webshellseo8/CVE-2024-1813-Proof-of-Concept
Create: 2026-07-29 12:40:48 +0000 UTC Push: 2026-07-29 12:40:57 +0000 UTC |
webshellseo8/CVE-2026-61511-POC
Create: 2026-07-29 12:38:27 +0000 UTC Push: 2026-07-29 12:38:28 +0000 UTC |
afertar/CVE-2026-16475-PoC
This is the official repo with the PoC of the CVE-2026-16475, LFI in OCSinventory 2.12.4.
Create: 2026-07-29 10:56:11 +0000 UTC Push: 2026-07-29 10:56:12 +0000 UTC |
mdvpat/CVE-2026-52832-PoC-exploit-nuclei-dashboard
Nuclio Dashboard (NOP mode) accepts unauthenticated POST /api/functions. The spec.handler field isn't path-validated, so ../../../../tmp/x.txt:handler escapes the build tempdir via path.Join, letting an attacker write arbitrary content to any path as root. (CVE-2026-52832, ≤1.15.27)
Create: 2026-07-29 10:23:41 +0000 UTC Push: 2026-07-29 10:23:42 +0000 UTC |
mdvpat/CVE-2026-52832-PoC-exploit-nuclio-dashboard
Nuclio Dashboard (NOP mode) accepts unauthenticated POST /api/functions. The spec.handler field isn't path-validated, so ../../../../tmp/x.txt:handler escapes the build tempdir via path.Join, letting an attacker write arbitrary content to any path as root. (CVE-2026-52832, ≤1.15.27)
Create: 2026-07-29 10:23:41 +0000 UTC Push: 2026-07-29 10:39:12 +0000 UTC |
HORKimhab/CVE-2026-33718
CVE-2026-33718
Create: 2026-07-29 09:51:12 +0000 UTC Push: 2026-07-29 09:51:16 +0000 UTC |
HORKimhab/CVE-2026-60004
CVE-2026-60004 - Draft
Create: 2026-07-29 08:35:16 +0000 UTC Push: 2026-07-29 08:35:20 +0000 UTC |
tc4dy/CVE-2026-61511
CVE-2026-61511 – vBulletin Pre-Auth RCE (CVSS 9.8). Vuln 5.x/6.x (unpatched). Multi-exploit via Endpoint Pool, AJAX, PHPFuck WAF bypass. Full toolkit: reverse shell, proxy, persistence, webshell, database operations, firewall control, log management, mass scanning. 2 versions: multi-exploit & safe-check. Python 3.8+ Use Ethically, Stay Legal. 🔒
Create: 2026-07-29 08:18:31 +0000 UTC Push: 2026-07-29 08:18:32 +0000 UTC |
tc4dy/CVE-2026-61511-PoC-Exploit
CVE-2026-61511 – vBulletin Pre-Auth RCE (CVSS 9.8). Vuln 5.x/6.x (unpatched). Multi-exploit via Endpoint Pool, AJAX, PHPFuck WAF bypass. Full toolkit: reverse shell, proxy, persistence, webshell, database operations, firewall control, log management, mass scanning. 2 versions: multi-exploit & safe-check. Python 3.8+ Use Ethically, Stay Legal. 🔒
Create: 2026-07-29 08:18:31 +0000 UTC Push: 2026-07-29 10:15:23 +0000 UTC |
233laoliu/mt6985-CVE-2026-43499
CVE-2026-43499 exploit adapter for MT6985 MediaTek Dimensity 9300 (vivo PD2241)
Create: 2026-07-29 08:16:43 +0000 UTC Push: 2026-07-29 08:16:51 +0000 UTC |
Zedocun/Sharepoint-cve-2023-29375-incident-response
End-to-end SOC incident analysis and threat hunting playbook targeting Microsoft SharePoint privilege escalation (CVE-2023-29375) using SIEM logs, firewall data, and threat intel.
Create: 2026-07-29 08:02:05 +0000 UTC Push: 2026-07-29 08:02:06 +0000 UTC |
doublefast/cve-monitor-2026
CVE 实时监控平台,数据来源 NVD,每 5 分钟更新
Create: 2026-07-29 07:29:37 +0000 UTC Push: 2026-07-29 07:29:38 +0000 UTC |
CamilleGR/CVE-2026-73292
Create: 2026-07-29 07:24:18 +0000 UTC Push: 2026-08-18 13:10:53 +0000 UTC |
EQSTLab/CVE-2026-20896
Gitea Docker Image Authentication Bypass
Create: 2026-07-29 07:23:54 +0000 UTC Push: 2026-07-30 02:10:42 +0000 UTC |
777erp/CVE-2026-49176_BOF
CVE-2026-49176 WalletService LPE — standalone PoC + Cobalt Strike BOF (SYSTEM command on interactive session)
Create: 2026-07-29 06:57:56 +0000 UTC Push: 2026-07-29 06:57:57 +0000 UTC |
neebuchesno1/CVE-2026-54121
Create: 2026-07-29 04:59:16 +0000 UTC Push: 2026-07-29 04:59:17 +0000 UTC |
zenzue/CVE_2026_31694
Create: 2026-07-29 01:06:35 +0000 UTC Push: 2026-07-29 01:06:36 +0000 UTC |
codeb0ssx/-Ultimate-CVE-2026-61511
vBulletin 5.x through 5.7.5 and 6.x through 6.2.1 contains an eval injection vulnerability in the vB5_Template_Runtime::runMaths() method within the template runtime that allows unauthenticated remote attackers to execute arbitrary PHP code
Create: 2026-07-29 00:35:35 +0000 UTC Push: 2026-07-29 00:35:36 +0000 UTC |
Previous
83
84
85
86
87
88
89
90
Next