Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
boot-redis webflux-4.1SNAPSHOT
boot-redis-4.1 -> lettuce7.2.1 -> netty4.2.10.final -> SingleThreadIoEventLoop ->
IllegalStateException: incompatible event loop type: io.netty.channel.SingleThreadIoEventLoop
temporary fixed:
implementation ('org.spri...
KOSEC-LLC/BYOVD-Research
BYOVD research performed by KOSEC. Includes vulnerable drivers and writeups (CVE-2026-0828). | language: C
DeathShotXD/0xKern3lCrush-Foreverday-BYOVD-CVE-2026-0828
Advanced PoC & Research for CVE-2026-0828 (Safetica) and CVE-2025-7771 (ThrottleStop). Analysis of BYOVD (Bring Your Own Vulnerable Driver) TTPs for Ring 0 process termination and physical memory R/W. Researching EDR-Kil...
standard-profile/zsskolni-rce
language: CSS
Alpastx/CVE-2023-3452---WordPress-Canto-Plugin-RCE
CVE-2023-3452 exploit for WordPress Canto plugin RCE, HTTPS support included | language: Python
agustfricke/erlang-ssh-rce-CVE-2025-32433
language: Go
Nixon-H/PHP-Unrestricted-Upload-RCE
A Critical (CVSS 10.0) RCE vulnerability in a PHP e-commerce platform. The app trusts client-side MIME types and preserves extensions during upload. Attackers can bypass checks to upload web shells, gaining full system a...
Auto-configuration overrides authorization server configuration applied by Customizer<HttpSecurity> beans
Spring Boot's auto configuration should use [`HttpSecurity.oauth2AuthorizationServer`](https://docs.spring.io/spring-security/reference/servlet/oauth2/authorization-server/getting-started.html#oauth2AuthorizationServer-d...
Z3YR0xX/CVE-2026-1560-Authenticated-Remote-Code-Execution-in-Lazy-Blocks-4.2.0
language: Python
Lingzesec/CVE-2026-24061-GUI
CVE-2026-24061 GNU Inetutils telnetd 身份验证绕过漏洞检测与利用 GUI 工具 | language: Python
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
当前条件下没有命中网安开源项目。