momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 7506 条情报 漏洞监控 4737 / 网安开源项目 2769
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
Sl4cK0TH/CVE-2026-42167-PoC
Pre-Auth RCE in ProFTPD via mod_sql is_escaped_text() bypass (CVE-2026-42167) | language: Python
fckoo/mcpjaminspector-unauth-rce
CVE-2026-23744 RCE in MCPJam inspector <= 1.4.2 | language: Python
unionnx/CVE-2026-21385
language: Python
poxsky/CVE-2026-24516-DigitalOcean-RCE
Critical Pre-Auth Root RCE (CVSS 10.0) in DigitalOcean Droplet Agent up to v1.3.2 via Command Injection.
GarethMSheldon/cve-2026-22557-unifi-detection
Detection content for CVE-2026-22557 — UniFi Network Application unauthenticated path traversal (CVSS 10.0). Includes YARA, Sigma, KQL, Splunk SPL, Sysmon config, and a bash detection script. | language: Shell
zensheII/CVE-2026-1731-PoC
A Python-based security research tool for identifying and verifying CVE-2026-1731 | language: Python
n0rmh3ll/CVE-2026-23520
CVE-2026-23520: Arcane MCP Command Injection PoC | language: Python
H1sok444/CVE-2026-23744-PoC
language: Python
suljov/CVE-2026-23744-Remote-Code-Execution-POC
MCPJam inspector contains a remote code execution | language: Python
Augmaster/POC-CVE-2026-23520
language: Python
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
amenk08/LuaShield-WAF
🛡️ Protect web applications with LuaShield WAF, a high-performance firewall built on OpenResty/Nginx, using pure Lua for robust security. | topics: alibaba, android, auth, badge-maker, github, hacktoberfest, ios, javascr...
faridahkamila/super-duper-waffle
stars: 0 | forks: 0 | updated 2026-03-16T19:15:24Z | pushed 2026-03-16T19:15:19Z
axllent/iplists
A personal curated list of IP addresses for WAF usage | language: Go | stars: 0 | forks: 0 | updated 2026-03-16T19:20:35Z | pushed 2026-03-16T19:20:31Z
nezzyomran/ExecEvasion
🛠️ Generate obfuscated commands to bypass WAFs easily with ExecEvasion, designed for pentesters and bug bounty hunters facing command injection challenges. | topics: backdoor, backdooring, backdoors, dynamic-analysis, ev...
IvanAchire/waf-for-gmssh
topics: anti-cc, gmssh, linux-security, lua, luajit, nginx, ngx-lua, openresty, waf, web-security | language: Lua | stars: 1 | forks: 0 | updated 2026-03-16T19:22:55Z | pushed 2026-03-16T19:22:52Z | homepage: https://iva...
ZEREX222/HttpWard
HttpWard is a lightweight, high-performance L7 reverse proxy written in Rust, focused on strong security (WAF, rate limiting, DDoS mitigation), intelligent caching, flexible virtual host routing, and extremely low resour...
Zidane109/cloud-honeypot-auto-block
🛡️ Automate detection and blocking of abusive IPs on AWS using honeypot data, Terraform, Lambda, and WAF for cloud security. | topics: aws, cloud-security, cloudwatch, devsecops, dynamodb, honeypot, infrastructure-as-cod...
primituga/OSIRIS
is a fast, terminal-based forensic URL analyzer. Instead of just relying on static databases, OSIRIS actively reaches out to suspicious links using WAF/Anti-Bot bypass techniques, extracts the raw source code, and dissec...
corazawaf/coraza
OWASP Coraza WAF is a golang modsecurity compatible web application firewall library | topics: coraza, coraza-waf, coreruleset, go, golang, hacktoberfest, http, modsecurity, owasp, owasp-crs, waf, web-application-firewal...
ilyasaftr/coraza-envoy-waf
language: Go | stars: 0 | forks: 0 | updated 2026-03-16T19:38:07Z | pushed 2026-03-16T19:38:03Z