Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
rce/unifand
language: Rust
Dev tools causes misconfigured command-line application to exit with 0
I have a really simple spring application that's misconfigured:
```java
@SpringBootApplication()
public class SimpleApplication implements CommandLineRunner {
public static void main(String[] args) {
v...
Jvr2022/CVE-2026-29786
PoC for CVE-2026-29786 demonstrating a node-tar hardlink path traversal that allows overwriting files outside the extraction directory. | language: JavaScript
0xPreDa/Symfony-RCE
Little App to exploit Symfony RCE easily | language: Python
0xAshwesker/CVE-2026-21858
CVE-2026-21858
AdityaBhatt3010/CVE-2026-27579-CORS-Misconfiguration-Leading-to-Authenticated-Data-Exposure
CVE-2026-27579 - CORS Misconfiguration – Arbitrary Origin with Credentials → Authenticated Cross-Origin Account Data Exposure | topics: collab, cors, cross-origin-resource-sharing, cve, cybersecurity, exploit | language:...
AdityaBhatt3010/CVE-2026-23842-Denial-of-Service-via-Database-Connection-Pool-Exhaustion-version-1.2.10
CVE-2026-23842 — High severity Denial-of-Service vulnerability caused by SQLAlchemy connection pool exhaustion in concurrent get_response() calls in ChatterBot ≤ 1.2.10. | topics: chatterbot, cve, cybersecurity, dos, exp...
aksalsalimi/CVE-2026-26418
aksalsalimi/CVE-2026-26416
aksalsalimi/CVE-2026-26417
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
当前条件下没有命中网安开源项目。