Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
insomnisec/Detections-CVE-2026-31431
Detection rules for CVE-2026-31431 Linux LPE Vulnerability - Credit: (Copy Fail) https://copy.fail
Maxime288/CVE-2026-31431-Copy-Fail-R-pertoire-de-Pr-vention
language: Python
xShadow-Here/CVE-2026-8181
CVE-2026-8181 | Burst Statistics 3.4.0 - 3.4.1.1 - Authentication Bypass to Admin Account Takeover | language: Python
vital-information-resource-under-siege/CVE-2026-38698-and-CVE-2026-38699
Technical details and publication about CVE-2026-38698 and CVE-2026-38699 | language: C
aa022/CVE-2026-23918-Passive-Audit
Passive HTTP metadata auditor for CVE-2026-23918 exposure triage | language: Python
sibersan/apache_audit_cve-2026-23918
Python toolkit to audit Apache HTTP Server against CVE-2026-23918 (HTTP/2 double-free RCE) and 4 related CVEs. Passive scanner with ALPN verification + read-only local auditor. No exploits. | language: Python
0xdeadroot/CVE-2026-39987-marimo-rce
CVE-2026-39987 | language: Python
Ez4rd1x1/CVE-2026-0770
LangFlow RCE | CVE-2026-0770 | Proof-Of-Concept | language: Python
dinhvaren/cve-2026-33937
CVE-2026-33937 Handlebars RCE exploit PoC (AST Injection) | topics: ast-injection, cve-2026-33937, exploit, handlebars, nodejs, poc, rce, security, ssti, template-injection, vulnerability | language: Handlebars | homepag...
anach-ai/CVE-2026-41940
CVE-2026-41940 — cPanel/WHM Auth Bypass By Dr.Anach, CRLF injection in `cpsrvd` Basic auth handler → unauthenticated WHM API access → RCE as root. All cPanel since v11.40 affected. | language: Python
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
corazawaf/coraza-spoa
A wrapper for integrating the OWASP Coraza WAF with HAProxy's SPOE filters. | topics: coraza, haproxy, haproxy-spoa, waf, web-application-firewall | language: Go | stars: 155 | forks: 36 | updated 2026-03-16T18:34:24Z | ...
chrryAI/waffles
E2E | language: TypeScript | stars: 1 | forks: 0 | updated 2026-03-16T18:35:24Z | pushed 2026-03-16T18:34:51Z | homepage: https://chrry.dev
JP-Romero/Kathy-s-Waffle-House
Desarrollar la pagina web que muestre el establecimiento con toda su oferta gastronómica, que los clientes puedan realizar ordenes directamente desde la pagina enlazados por WhatsApp, utilizando un gestor de base de dato...
Ziti-max/F14
🚀 Exploit NoSQL injection vulnerabilities effortlessly with F-14 Tomcat, featuring advanced data extraction and WAF evasion techniques for MongoDB. | topics: boardgames | language: Python | stars: 0 | forks: 0 | updated ...
sobuj0007/Nextjs_RCE_Exploit_Tool
🔍 Exploit CVE-2025-55182 in Next.js with this versatile tool for security research, featuring advanced payloads and WAF bypass techniques. | language: Go | stars: 0 | forks: 0 | updated 2026-03-16T18:49:49Z | pushed 2026...
anxb26/angie-modsecurity-docker
🛡️ Protect your web deployments with a production-ready Angie server, featuring ModSecurity WAF, Fail2Ban, and enhanced security through Docker Compose. | topics: angie, angie-docker-image, docker, docker-compose, docker...
kilouio91/turbo-waffle
language: JavaScript | stars: 0 | forks: 0 | updated 2026-03-16T18:54:07Z | pushed 2026-03-16T18:54:03Z
JLH-Xerus/WAF_Work
language: TSQL | stars: 0 | forks: 0 | updated 2026-03-16T18:55:05Z | pushed 2026-03-16T18:55:01Z
ecko554-554/capsaicin
🌶️ Detect web vulnerabilities with Capsaicin, the intelligent web fuzzer and WAF hunter designed for Red Team operations. | topics: bugbounty, cybersecurity, directory-scanner, fuzzing, github-config, go, pentesting, rec...
itunified-io/mcp-cloudflare
Cloudflare MCP Server — multi-zone DNS, tunnels, WAF, Zero Trust, security management via Cloudflare API v4 | language: TypeScript | stars: 0 | forks: 1 | updated 2026-03-16T18:57:47Z | pushed 2026-03-16T18:57:58Z