momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 10530 条情报 漏洞监控 6152 / 网安开源项目 4378
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
Lutfifakee-Project/CVE-2026-87902
CVE-2026-87902 PoC — WordPress Path Traversal → LFI → Conditional RCE | topics: cve-2026-87902, lfi, local-file-inclusion, path-traversal, python, rce, security-research, security-scanner, vulnerability-research, wordpre...
tc4dy/CVE-2026-87902-Toolkit
CVE-2026-87902 – WordPress Core LFI→RCE Toolkit (CVSS 9.2) - Red/Blue Team suite for WordPress 4.7–7.1.1. | 2 tools: Full Exploit (LFI, PEAR RCE, admin create, webshell, reverse shell, loot, mass scan, stealth) & SafeChe...
abdelhakimgaferNetworkSec/Enigm-Writeup
Comprehensive penetration testing write-up and exploit details for Hack The Box - Enigma machine, covering local enumeration, OliveTin CVE-2026-27626 command injection, and root privilege escalation
Hassham1/CVE-2026-89274-wp-recipe-maker-poc
CVE-2026-89274 — WP Recipe Maker <= 10.8.1 arbitrary shortcode execution via rating-comment reviewBody (CVSS 9.1): Docker validation lab with vulnerable (10.8.1) vs patched (10.8.2) controls, Python PoC proving server-si...
SaiTeja-Erukude/CVE-2026-93349-frictionless-command-injection
Frictionless <= 5.20.0rc1 OS command injection via CLI explore. | language: Python
bhideki/CVE-2026-87902
CVE-2026-87902: PoC for WordPress's critical path traversal | language: Python
Hassham1/CVE-2026-94545-nextjs-og-poc
CVE-2026-94545 / GHSA-vcvr-r3jv-pc5j — Next.js next/og ImageResponse SVG injection (Satori, GHSA-wx4j-mvgx-mqwp): isolated Docker validation lab with vulnerable (16.3.5) vs patched (16.3.6) controls, non-destructive Pyth...
AriyanPegu/ghostlock-app
GhostLock One-Tap Execution App (CVE-2026-43499)
Polosss/By-Poloss..-..CVE-2026-19125
Unauthenticated Authentication Bypass | language: Python
digiprosec/MicroTrick
cve-2026-86060 PoC | language: Python
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
linyuanguo/Yugsight
Yugsight (御视):Go 编写的网络扫描工具,内置 WebUI,支持资产探测、漏洞扫描、分布式探针与安全报告。 | language: Go | stars: 0 | forks: 0 | updated 2026-09-25T01:20:14Z | pushed 2026-09-25T01:20:07Z
junfennie162-sketch/junfennie162-sketch
个人主页 · RAG / LLM Agent / 安全工具链(头图与徽标由 scripts/make_assets.py 生成) | language: Python | stars: 1 | forks: 0 | updated 2026-09-23T13:39:23Z | pushed 2026-09-23T23:23:19Z
We5ter/Scanners-Box
The Ultimate Open-Source Security Arsenal for Hackers, Enterprises, and AI Agents——面向极客、企业与 AI 智能体的全域开源网络安全工具矩阵 | topics: agent-security-audit, agent-security-benchmark, agent-security-red-teaming, agent-security-tools, ...
Starskymaker/demo
渗透测试 | stars: 0 | forks: 0 | 2026-09-22T12:13:49Z
MINA-sudo985/pen-test-blog
网络安全与渗透测试学习仓库,包含课堂实验、CTF题目wp、漏洞复现、安全技术学习笔记。大部分使用markdown语法编写。 | stars: 0 | forks: 0 | 2026-09-22T13:05:09Z
sk0n3r/rmq5cea
r9edw8u0在一次渗透中学会编写Tamper脚本qridhrkaifkm | stars: 0 | forks: 0 | updated 2026-09-23T03:32:56Z | pushed 2026-09-23T03:32:53Z
guaidao2/fastcrack
现代化的多协议渗透测试工具。 | language: Go | stars: 2 | forks: 0 | updated 2026-09-23T04:38:37Z | pushed 2026-09-22T11:29:44Z
Github推送中心
创建者: hhh-c LLM-Agent 自动化红队测试与越狱攻击评估平台 | An automated red-teaming and jailbreak evaluation platform for LLM Agents.
Github推送中心
创建者: RoourChen 提出创业、转行或其他现实计划 → 用 Codex 挑出方案漏洞、联网核验关键事实,并给出风险分析、低成本验证实验与停止条件,区分事实、推测和未知。
Github推送中心
创建者: zzycxz FreeCodeZ — 开源 AI 编程工作台:桌面应用(Windows/macOS/Linux)、Web 与终端 Agent。本地 API Key 直连多家大模型,内置插件商店与技能生态,支持手机远控;无遥测,业务数据不外发。基于 ZCode 二次开发,Apache-2.0。