Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
omer-efe-curkus/CVE-2026-33017-Langflow-RCE-PoC
The vulnerability in Langflow 1.8.1 and earlier allows a remote, unauthenticated attacker to achieve arbitrary command execution on the host. | topics: langflow, proof-of-concept | language: Python
SimoesCTT/Sovereign-Echo-33017
Resonant RCE for CVE-2026-33017 via CTT Phase-Lock. Exploits Langflow build_public_tmp flow_id endpoint. Bypasses auth using 34th-layer negative refraction to inject Python exec() payloads. Calibrated for 16.6fs jitter r...
g0w6y/CVE-2026-21994
ekomsSavior/Lang_path
LangfLow path traversal poc CVE-2026-1302 | language: Python
Samres27/CVE-2026-25769---CVE-2026-25770
repo con las pruebas de concepto | language: Python
z3r0h3ro/CVE-2026-32194-POC
MaxMnMl/langflow-CVE-2026-33017-poc
CVE-2026-33017 - An unauthenticated remote code execution in Langflow <= 1.8.1 via Public Flow Build Endpoint | language: Python
crazymind90/CVE-2026-XNU-AIO-KEVENT-UAF
XNU AIO kevent use-after-free — kernel panic from app sandbox on iOS 26.2 (no entitlements). Patched in iOS 26.3 | language: Objective-C
skiraware/Gerapy-0.9.8---Remote-Code-Execution-RCE-Fixed-Exploit
This repository contains a refined and fully working Python 3 exploit for the Gerapy Authenticated Remote Code Execution vulnerability. | language: Python
naozibuhao/CVE-2026-21962_Java_GUI_Exploit_Tool
language: Java
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
anujatappeta/sql_injection
A web security testing project demonstrating SQL injection vulnerability detection using sqlmap and analyzing how WAF protections affect automated attacks. | stars: 0 | forks: 0 | updated 2026-03-16T19:44:18Z | pushed 20...
akbarmaulaa/scaling-waffle
stars: 0 | forks: 0 | updated 2026-03-16T19:48:35Z | pushed 2026-03-16T19:48:31Z
cendrawasihdevnanda/congenial-waffle
stars: 0 | forks: 0 | updated 2026-03-16T19:49:10Z | pushed 2026-03-16T19:49:05Z
saadwafra/wafrafinal
language: TypeScript | stars: 0 | forks: 0 | updated 2026-03-16T19:54:42Z | pushed 2026-03-16T19:54:38Z | homepage: https://wafrafinal.vercel.app
trevoragilbert/waffleclock
language: HTML | stars: 0 | forks: 0 | updated 2026-03-16T19:58:13Z | pushed 2026-03-16T19:58:10Z
BasharTaha06/Mr_Wafai_React_FrontEnd
language: HTML | stars: 0 | forks: 0 | updated 2026-03-16T20:00:02Z | pushed 2026-03-16T19:59:59Z
xMhaty/AWS_WAF_ALB_Security
🐙 AWS WAF on ALB: Deploy two EC2 behind an Application Load Balancer with WAF rules to block SQLi, geolocation, and risky query strings. | topics: alb, aws, aws-waf, cloud, ec2, geo-location, igw, query-string, security,...
Cyrusparzian/cyrusparzian.github.io
Analysing Waf Reports in interactive way. | language: HTML | stars: 0 | forks: 0 | updated 2026-03-16T20:06:00Z | pushed 2026-03-16T20:05:53Z
rhys-y2/probable-octo-waffle
stars: 0 | forks: 0 | 2026-03-16T20:08:13Z
wadefagen/waf.cs.illinois.edu
language: JavaScript | stars: 5 | forks: 2 | updated 2026-03-16T20:09:45Z | pushed 2026-03-16T20:09:40Z