Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
asanabriam-cr/rce
Renombrador de Comprobantes Electrónicos | language: JavaScript
estebanzarate/CVE-2024-25600-WordPress-Bricks-Builder-RCE-PoC
Unauthenticated remote code execution vulnerability in WordPress Bricks Builder <= 1.9.6. The template render endpoint accepts PHP code without authentication, allowing arbitrary command execution as the web server user....
aydin5245/CVE-2026-5252-CVE-POC-ivanti
CVE-2026-5252 CVE POC ivantiiiiiiii
jethroballer779/Web-Vulnerability-Labs
A curated collection of Web Application Penetration Testing labs focusing on OWASP Top 10 vulnerabilities, including SQLi, XSS, and RCE. Features Proof-of-Concept (PoC) documentation and technical remediation strategies.
ECS structured logging logs some ECS fields with incorrect types
Hey,
we're using Spring Boot 4.0.2 with structured logging in ECS format enabled:
```yaml
logging:
structured:
format:
console: ecs
file: ecs
```
According to ECS's documentation, there are fields tha...
mbanyamer/CVE-2026-25890-FileBrowser-Access-Control-Bypass
mbanyamer/CVE-2026-27180-MajorDoMo-unauthenticated-RCE
language: Python
garrettbennett78-lgtm/aethel
"A local-first, Rust-hardened security layer for AI agents. Neutralizing RCE and data theft in the OpenClaw ecosystem through hardware-bound attestation and encrypted memory shards.#ai-security#rust#openclaw#cybersecurit...
HTTP Service Interface Client doesn't work for Native Image
It appears that new http service clients are not getting proper configuration from application.properties, as a result these clients don't work at all. This happening when running Spring Boot application in Native Image ...
HttpMediaTypeNotAcceptableException with spring-boot-starter-data-rest
I'm migrating from Boot 3.5 to 4.0 and I'm getting a warning (`HttpMediaTypeNotAcceptableException`) when I return `ProblemDetail` from an `@ExceptionHandler`:
```
org.springframework.web.HttpMediaTypeNotAcceptableExcept...
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
当前条件下没有命中网安开源项目。