Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
murrez/CVE-2026-14281
Unauthenticated privilege escalation in WordPress WAWP (Automation Web Platform) ≤ 4.8.6 via public REST signup and unsanitized wawp_custom_fields → admin. Python check/exploit PoC (PoCbit). | language: Python
InertFluid/cve-2026-61732-lab
Benign, self-contained reproduction of CVE-2026-61732 (Decepticon ChatML role-boundary forgery) | language: Python
jvidhan/cve-2026-43687
language: Shell
murrez/CVE-2026-48842
Roundcube virtuser_query pre-auth SQLi (CVE-2026-48842). Python PoC — version detect, virtuser plugin, login probe. https://pocbit.org | language: Python
pocbit/CVE-2026-48842
Roundcube virtuser_query pre-auth SQLi (CVE-2026-48842). Python PoC — version detect, virtuser plugin, login probe. https://pocbit.org
HORKimhab/CVE-2026-65660
CVE-2026-65660 - Draft or TODO
rafabd1/VectorFreed
This repository documents the VectorFreed RCE chain and includes a PoC for CVE-2026-96889. | language: Python
AthBe1337/CVE-2026-43499-poc
language: C
DeathShotXD/Comment2Shell
Comment2Shell is a zero click pre auth RCE exploit for WordPress CVE-2026-93485. An anonymous comment plants stored XSS that fires when an admin views the post and drops a self deleting webshell. Full chain PoC with scan...
joaovicdev/EXPLOIT-CVE-2026-33634
language: Python
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
Github推送中心
创建者: invinciblenuonuo
本项目绕过了传统通用 OBD-II 标准协议采样率低(通常仅 1~2 个参数/秒)、PID 覆盖有限的弊端,直接通过 **EDIABAS 7.3 原生 API (`api32.dll`)** 与 **K+DCAN** 物理链路,与宝马发动机控制电脑(DME,如 MEVD17 家族)建立专有诊断通信。
Github推送中心
创建者: DeathShotXD
Comment2Shell is a zero click pre auth RCE exploit for WordPress CVE-2026-93485. An anonymous comment plants stored XSS that fires when an admin views the post and drops a self deleting webshell. Full ch...
Yuai123star/vulnscan
一个Web 漏洞扫描平台 | language: Python | stars: 1 | forks: 0 | updated 2026-09-25T03:53:38Z | pushed 2026-09-25T03:53:33Z
Github推送中心
创建者: heterodoxin
Browser-based terminal: a real PTY on the server, an HTML/CSS terminal in the browser — only text and color cross the wire. Made with AI assistance.
Github推送中心
创建者: chen0416ccc-cpu
此skills用于指导智能体在 Windows 上恢复 Codex Desktop 升级后失效的本地补丁和能力开关。(Computer Use,插件,破限,codex强制汉化,fast mode,手机远控,会话消失等问题)支持每次使用前自动将skills更新到最新版。/These skills are designed to guide the agent in restoring local ...
Github推送中心
创建者: gogoore
2022收计算机毕设一套定稿(论文+程序源代码+数据库+说明)ssm177网络安全宣传网站设计+
Github推送中心
创建者: s17labs
Github推送中心
创建者: s17labs
Github推送中心
创建者: Shueka-181
内网渗透与横向移动报告
Github推送中心
创建者: s2cc6thm
PHP_webshell,PHP木马,后门,PHP后门