momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 7507 条情报 漏洞监控 4738 / 网安开源项目 2769
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
bannned-bit/CVE-2026-0300-PANOS
Security Research and Proof-of-Concept (PoC) for CVE-2026-0300 : Unauthenticated Remote Code Execution (RCE) in Palo Alto Networks PAN-OS User-ID Portal. | topics: cve-2026-0300, exploit, palo-alto, pan-os, rce | languag...
shootcannon/CVE-2026-4257
SSTI contact form to rce | topics: cve-2026-4257 | language: Python
Astaruf/CVE-2026-44590
CVE-2026-44590 - Sherlock <= v0.16.0 - RCE via pull_request_target Injection → Supply Chain Compromise | topics: cve, cve-2026-44590, exploit, rce, responsible-disclosure, supply-chain-attack, supply-chain-security, vuln...
Christbowel/CVE-2026-41900-POC
OpenLearnX Unauthenticated RCE | language: Python
novaek/CVE-2026-0073-Research
CVE-2026-0073 is an RCE with a CVSS severity score of 8.3, and here we will explain how it works.
TheMalwareGuardian/CVE-2026-33439
First publicly shared exploit implementation for CVE-2026-33439 (OpenAM pre-auth RCE via jato.clientSession deserialization). | topics: cve-2026-33439, exploit, java-deserialization | language: Python
isagoakira/ghes-cve-scanner
GHES CVE Scanner — Defensive security tool for detecting CVE-2026-3854 (Git Push RCE) and CVE-2026-4821 (Management Console proxy injection) in GitHub Enterprise Server. Zero external dependencies, Python 3.8+. | languag...
guzrex/CVE-2026-42879
FacturaScripts RCE Exploit - Proof of Concept | language: Python
xp1tr/CVE-2026-39387
BoidCMS <= 2.1.2 RCE Exploit | language: Python
rohithronanki/CVE-2026-34159-Vulnerability-Research-Analysis-Detection
Critical buffer validation bypass in deserialize_tensor() (llama.cpp < b8492). Null tensor buffer skips bounds check, enabling unauthenticated arbitrary R/W via GRAPH_COMPUTE. ASLR bypass + RCE over TCP 50052.
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
openprx/prx-waf
High-performance Web Application Firewall built on Pingora. OWASP CRS, GeoIP (ip2region), bot detection, API security, and 644+ built-in rules. | topics: api-security, bot-detection, geoip, owasp, pingora, rust, security...
adriansahrudin/super-duper-waffle
stars: 0 | forks: 0 | updated 2026-03-16T19:02:47Z | pushed 2026-03-16T19:02:43Z
sagarbanwa/BountySleuth
rofessional bug bounty companion v3.2. Universal scanner with WAF, CSRF, XSS, DOM Sinks, CORS, Cloud Detection, and Smart Payloads. | language: JavaScript | stars: 1 | forks: 0 | updated 2026-03-16T19:04:41Z | pushed 202...
architmeta/wafa-autoscrapper
Palestine News Agency Auto-Scrapper | language: Jupyter Notebook | stars: 0 | forks: 0 | updated 2026-03-16T19:05:21Z | pushed 2026-03-16T19:05:16Z
sequoia-hope/waffle-iron
language: C++ | stars: 2 | forks: 0 | updated 2026-03-16T19:05:37Z | pushed 2026-03-16T19:05:32Z
duggytuxy/Data-Shield_IPv4_Blocklist
Data-Shield IPv4 Blocklist Community provides an official, curated registry of IPv4 addresses identified as malicious. Updated continuously, this resource offers vital threat intelligence to bolster your Firewall and WAF...
dalia-abdallah25/anyrouter-opencode-bridge
🌉 Bridge AnyRouter with a local proxy to bypass WAF and TLS fingerprint issues, ensuring smooth integration with OpenCode and CherryStudio. | topics: agentrouter, ai, anthropic, check-in, claude-skills, cloudflare-worker...
jm-kyle/WAF
language: HTML | stars: 0 | forks: 0 | updated 2026-03-16T19:08:57Z | pushed 2026-03-16T19:08:52Z | homepage: https://waf-beryl.vercel.app
Abhishek-UI-UX/otoroshi-waf-extension
🛡️ Enhance web security with the Otoroshi WAF extension, offering JVM-native ModSecurity support and the OWASP Core Rule Set for robust protection. | topics: corerules, crs, modsecurity, otoroshi, owasp, owasp-crs, secla...
vebrygetafas/sturdy-waffle
stars: 0 | forks: 0 | updated 2026-03-16T19:11:48Z | pushed 2026-03-16T19:11:44Z