momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 10783 条情报 漏洞监控 6288 / 网安开源项目 4495
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
diedromeo/CVE-2026-62201-OpenClaw-SSRF
Deep-dive analysis of CVE-2026-62201: OpenClaw sandbox exec-server network policy bypass (SSRF). Root cause, vulnerable vs patched code, exploitation, detection, remediation.
jithinkrishnanrs/stylesmuggler-ioc-toolkit
StyleSmuggler (CVE-2026-75650) IOC toolkit for Magento Open Source and Adobe Commerce. Detect compromised stores, Rust implants, PHP web shells, persistence artifacts, and known indicators of compromise. | topics: adobe-...
Supersonic/TLPE
CVE-2026-49881, using insecure context creation in Android 17's Telecom service to execute arbitrary code as UID 1000 system_server from an unprivileged app | language: Kotlin
karollooool/CVE-2026-83991-writeup-and-poc
CVE-2026-83991: Windows Cloud Files access-check bypass | language: C | homepage: https://x.com/karollooool/status/2097504394170216772
abraxas/CVE-2026-19089-WooCommerce-Tyche
CVE-2026-19089 WooCommerce Tych Remote Command Execution | language: Python
ntop nDPI before 6.0 Heap Buffer Overflow via ndpi_json_string_escape
undici vulnerable to Denial of Service via orphaned RetryHandler response body
undici vulnerable to downstream response splitting via retry interceptor
Libtpms: libtpms: heap out-of-bounds read in tpm2 state unmarshalling via unchecked block_skip_read() blocksize
Libsoup: libsoup: heap use-after-free in libsoup http/2 client on_data_read() via goaway during body upload
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
绕过人机验证的github注册机,万人骑ip随便注册
创建者: ciouskeila-hue 绕过人机验证的github注册机,万人骑ip随便注册
绕过 HelloTalk 6.4.0 注册时的网易易盾设备风控拦截(Xposed 模块)
创建者: Kimu00662 绕过 HelloTalk 6.4.0 注册时的网易易盾设备风控拦截(Xposed 模块)
绕过人机验证的github注册机,万人骑ip随便注册
创建者: ciouskeila-hue 绕过人机验证的github注册机,万人骑ip随便注册
fastjson vulnerability scanner - detect fastjson in JARs and Spring Boot fat-JARs, check exposure to CVE-2026-16723, and verify whether you already run the official patch 1.2.84. Zero-dependency offline CLI. fastjson 漏洞检测与排查工具:一条命令扫描依赖,支持 fat-JAR 与 shaded 依赖,并判定是否已升到官方补丁版本 1.2.84。
创建者: xiaoqiMikko fastjson vulnerability scanner - detect fastjson in JARs and Spring Boot fat-JARs, check exposure to CVE-2026-16723, and verify whether you already run the official patch 1.2.84. Zero-dependency offline ...
一个综合性的灾害风险管理平台,集成了风险评估、实时监测、预警发布、应急响应等功能。
创建者: alanbulan 一个综合性的灾害风险管理平台,集成了风险评估、实时监测、预警发布、应急响应等功能。
SKILL.md
创建者: galact-byte 个人自用 Agent Skill 库(
Filename wordlist generator for file-upload bypass testing. Eevery Upload_Bypass technique, plus ready-to-use webshells and clean samples
创建者: Justice-Reaper Filename wordlist generator for file-upload bypass testing. Eevery Upload_Bypass technique, plus ready-to-use webshells and clean samples
佛跳墙 · m-ui 的多平台客户端:Windows / Linux(软路由网关模式)/ Android(手机与电视),内嵌 sing-box,TUN、规则分流、fake-ip、禁 IPv6 且不让 v6 绕过隧道、多订阅回退刷新、可编辑的默认规则与可视化规则组、应用内升级
创建者: Maoyangui 佛跳墙 · m-ui 的多平台客户端:Windows / Linux(软路由网关模式)/ Android(手机与电视),内嵌 sing-box,TUN、规则分流、fake-ip、禁 IPv6 且不让 v6 绕过隧道、多订阅回退刷新、可编辑的默认规则与可视化规则组、应用内升级
远控项目
创建者: BSVV 远控项目
计算机基础与网络安全自学笔记:Linux/Python/C/MySQL 速查 + Kali/Metasploit 安全笔记
创建者: fishlmg 计算机基础与网络安全自学笔记:Linux/Python/C/MySQL 速查 + Kali/Metasploit 安全笔记