momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 6860 条情报 漏洞监控 4484 / 网安开源项目 2376
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
toanln-cov/CVE-2026-66493
The Joomla extension PhocaCommander is vulnerable to Path Traversal in delete, copy, move actions
toanln-cov/CVE-2026-66492
The Joomla extension PhocaCommander is vulnerable to Path Traversal in the file upload action
toanln-cov/CVE-2026-66491
The Joomla extension PhocaCommander is vulnerable to Path Traversal in the getSource function
imzanggg/CVE-2026-24055-OAuth-Langfuse
Reproduction and patch verification of CVE-2026-24055 (CWE-284) - an unauthenticated OAuth access control vulnerability in Langfuse allowing Slack workspace hijacking. Coursework for Web & Application Security. | topics:...
gagaltotal/CVE-2026-60004-poc-gitea
CVE-2026-60004 — Gitea Pre-Auth RCE via diffpatch hook injection | topics: auth, gitea, gitea-api, go, golang, golang-cli, rce, rce-exploit | language: Go
mohwahyudi/poc-CVE-2026-64638
language: Python
tc4dy/CVE-2026-64638-PoC-Exploit
🛡️ CVE-2026-64638 - WordPress Security Assessment Suite (CVSS 8.9) | WordPress 4.7.0-7.0.2 pentest toolkit. Includes vulnerability assessment & advanced analysis modules. 🐍 Safe Check & Exploit, 2 mode. Advanced Blue&Red...
wxxsfxyzm/GhostLock-Galaxy
Root your Galaxy using CVE-2026-43499 | language: C
AnggaTechI/CVE-2026-3844
CVE-2026-3844 — Unauthenticated Arbitrary File Upload to RCE in Breeze Cache (WordPress). CVSS 9.8 CRITICAL. Mass scanner + auto shell injector with multi-threading. | language: Python
4minx/CVE-2026-64638
CVE-2026-64638 (XSS2shell) POC. | language: HTML
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
Binary Ninja逆向破解:许可证字符串定位、条件跳转分析、PE补丁绕过
创建者: NothingFumo Binary Ninja逆向破解:许可证字符串定位、条件跳转分析、PE补丁绕过
Lightweight Webshell panel
创建者: yumao233 Lightweight Webshell panel
Gito AI 代码审查演示 - 故意包含安全漏洞的示例代码
创建者: zurheidegenetthx379-ui Gito AI 代码审查演示 - 故意包含安全漏洞的示例代码
红队部门 Hermes profile 发行版:授权渗透测试/情报/利用验证/报告
创建者: zyj010216y 红队部门 Hermes profile 发行版:授权渗透测试/情报/利用验证/报告
面向青少年的网络安全纵深防御互动课堂
创建者: flyingbluegithub 面向青少年的网络安全纵深防御互动课堂
简单的 Web 漏洞扫描器(端口扫描 + 目录扫描 + 简单漏洞 POC)
创建者: Judy-0206 简单的 Web 漏洞扫描器(端口扫描 + 目录扫描 + 简单漏洞 POC)
网络安全多智能体协同整改平台公开项目策划书
创建者: yilinjiang00-commits 网络安全多智能体协同整改平台公开项目策划书
深度渗透测试 AI Skill | Deep Penetration Testing Methodology — 黑盒渗透 + 白盒审计 + Multi-Agent 协同,以顶尖漏洞挖掘专家标准执行安全测试
创建者: liuzhiyong 深度渗透测试 AI Skill | Deep Penetration Testing Methodology — 黑盒渗透 + 白盒审计 + Multi-Agent 协同,以顶尖漏洞挖掘专家标准执行安全测试
基于 MCP (Model Context Protocol) 的远程 Kali Linux 终端控制服务器。允许 AI 客户端(Claude Desktop、Cursor、Cline 等)通过 HTTP/SSE 远程操控真实的 Kali Shell 会话,适用于安全研究、渗透测试自动化、远程运维等场景。
创建者: lzy1111xoy 基于 MCP (Model Context Protocol) 的远程 Kali Linux 终端控制服务器。允许 AI 客户端(Claude Desktop、Cursor、Cline 等)通过 HTTP/SSE 远程操控真实的 Kali Shell 会话,适用于安全研究、渗透测试自动化、远程运维等场景。
Alfonsobang/open-market-eval
A-Share Agent Arena for reproducible backtest forensics, Harbor tasks, and public research-agent scorecards | topics: a-share, agent-evaluation, backtesting, benchmark, china-stock-market, financial-ai, harbor, llm-evalu...