Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
HashiCorp Consul and Consul Enterprise 1.18.20 up to 1.21.10 and 1.22.4 are vulnerable to arbitrary file read when configured with Kubernetes authentication. This vulnerability, CVE-2026-2808, is fixed in Consul 1.18.21,
CVE-2026-2808;039ffed7f77a6a7375668b50285d36c2;HashiCorp Consul and Consul Enterprise 1.18.20 up to 1.21.10 and 1.22.4 are vulnerable to arbitrary file read when configured with Kubernetes authentication. This vulnerabil...
A security vulnerability has been detected in whyour qinglong up to 2.20.1. Affected is an unknown function of the file back/loaders/express.ts of the component API Interface. The manipulation of the argument command lea
CVE-2026-3965;e49c22fe5e7e82a780aaf8ad3e97de52;A security vulnerability has been detected in whyour qinglong up to 2.20.1. Affected is an unknown function of the file back/loaders/express.ts of the component API Interfac...
A weakness has been identified in OpenAkita up to 1.24.3. This impacts the function run of the file src/openakita/tools/shell.py of the component Chat API Endpoint. Executing a manipulation of the argument Message can le
CVE-2026-3964;a0ae8b30496a2c96535d4b32fb91723c;A weakness has been identified in OpenAkita up to 1.24.3. This impacts the function run of the file src/openakita/tools/shell.py of the component Chat API Endpoint. Executin...
FilipeGaudard/CVE-2026-30945-PoC
language: Python
Lewa-Reka/ha-rce-pse
Rynkowa Cena Energii (RCE) for HomeAssistant | topics: dynamic-energy-tariff, energy-prices, hacs-integration, homeassistant, homeassistant-integration, rce, rce-pse, rynkowa-cena-energii | language: Python
win3zz/CVE-2026-1731
CVE-2026-1731 - Critical command injection vulnerability in BeyondTrust Remote Support and Privileged Remote Access due to unsafe Bash arithmetic evaluation in a WebSocket-reachable script | topics: beyondtrust, cve-2026...
LucasM0ntes/POC-CVE-2026-1357
POC-CVE-2026-1357
daytriftnewgen/CVE-2026-21876
CVE-2026-21876 PoC: WAF charset bypass (Flask, ASP.NET and Spring Boot stands) | language: Python
ChrisSub08/CVE-2026-32127_SqlInjectionVulnerabilityOpenEMR8.0.0
CVE-2026-32127: SQL Injection Vulnerability in OpenEMR <8.0.0.1 | topics: cve, cve-2026-32127, exploit, exploitation, openemr, openemr-exploit, openemr-vulnerability, sql-injection, sqli, vulnerability | language: Python
hackerx7853/fast-ParamRecon
Search URLs for parameters to identify specific vulnerabilities "RCE, XSS, SQLI, REDIRECT, LFI, SSRF" Can scan 10 million URLs in under 2 minutes "Based on the OWASP Top 25 Parameters" | language: Go
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
当前条件下没有命中网安开源项目。