unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
增加标签
Tags (allow clear + 0 threshold)
Choose a tag...
Please select a valid tag.
ashshh1/CVE-2025-67126
Create: 2026-01-20 07:15:57 +0000 UTC Push: 2026-01-20 07:15:57 +0000 UTC |
boroeurnprach/CVE-2026-23744-PoC
Create: 2026-01-20 06:55:53 +0000 UTC Push: 2026-01-20 06:55:53 +0000 UTC |
ibreakthingsforaliving/CVE-2026-23744-PoC
CVE-2026-23744 - Versions 1.4.2 and earlier of MCPJam inspector are vulnerable to remote code execution (RCE). Because the tool listens on 0.0.0.0 by default, an attacker can trigger the installation and execution of a malicious MCP server by sending a crafted HTTP request. Version 1.4.3 contains a patch for this issue.
Create: 2026-01-20 06:55:53 +0000 UTC Push: 2026-06-14 14:00:59 +0000 UTC |
amnnrth/CVE-2025-14847
This script is used to identify MongoDB services that are network-exposed and allow unauthenticated protocol handshakes.
Create: 2026-01-20 05:42:45 +0000 UTC Push: 2026-01-20 05:42:45 +0000 UTC |
dragosbanica/CVE-2023-0386_POC
Create: 2026-01-20 01:16:51 +0000 UTC Push: 2026-01-20 01:16:51 +0000 UTC |
y0uki-sec/CVE-2025-3102
Create: 2026-01-19 23:01:29 +0000 UTC Push: 2026-01-19 23:01:30 +0000 UTC |
Sholls000/CVE-2024-8465-PoC
Create: 2026-01-19 21:44:48 +0000 UTC Push: 2026-01-19 21:44:48 +0000 UTC |
0xgh057r3c0n/CVE-2026-22812
OpenCode < v1.0.216 - Unauthenticated RCE
Create: 2026-01-19 21:20:41 +0000 UTC Push: 2026-01-19 21:20:41 +0000 UTC |
AirineiAndrei/Tarmageddon-CVE-2025-62518-
Create: 2026-01-19 19:54:49 +0000 UTC Push: 2026-01-19 19:54:49 +0000 UTC |
sastraadiwiguna-purpleeliteteaming/Holistic-Deconstruction-of-CVE-2019-5736-
This repository provides a high-fidelity technical deconstruction and production-ready exploitation suite for CVE-2019-5736. It demonstrates how a root user inside a container can achieve a Host Root Shell by overwriting the host runc binary using an OverlayFS mount and ld.so.preload manipulation.
Create: 2026-01-19 19:43:44 +0000 UTC Push: 2026-01-19 19:44:05 +0000 UTC |
Uzair-Baig0900/CVE-2026-20805-PoC
The PoC of information disclosure in Microsoft Desktop Windows Management.
Create: 2026-01-19 19:16:25 +0000 UTC Push: 2026-01-19 19:16:26 +0000 UTC |
loursha/Oracle-Weblogic-Server---AsyncResponseService-Deserialization-Remote-Code-Execution-CVE-2019-2725-
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: Web Services). Supported versions that are affected are 10.3.6.0.0 and 12.1.3.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebLogic Server.
Create: 2026-01-19 18:43:27 +0000 UTC Push: 2026-01-19 18:43:28 +0000 UTC |
loursha/Oracle-Weblogic-Server-AsyncResponseService-Deserialization-Remote-Code-Execution-CVE-2019-2725
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: Web Services). Supported versions that are affected are 10.3.6.0.0 and 12.1.3.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebLogic Server.
Create: 2026-01-19 18:43:27 +0000 UTC Push: 2026-01-19 18:43:28 +0000 UTC |
pseudo-securite/CVE-2018-6537
Create: 2026-01-19 16:35:44 +0000 UTC Push: 2026-01-19 16:35:44 +0000 UTC |
exploiteur/CVE-2018-6537
A buffer overflow vulnerability in the control protocol of Flexense SyncBreeze Enterprise v10.4.18 allows remote attackers to execute arbitrary code by sending a crafted packet to TCP port 9121.
Create: 2026-01-19 16:35:44 +0000 UTC Push: 2026-01-19 23:12:14 +0000 UTC |
pseudo-securite/CVE-2017-14980
Create: 2026-01-19 15:32:17 +0000 UTC Push: 2026-01-19 15:32:18 +0000 UTC |
ninjazan420/CVE-2025-60021-Apache-bRPC-Heap-Profiler-Command-Injection
**CVE-2025-60021**: Apache bRPC Heap Profiler Command Injection
Create: 2026-01-19 14:51:52 +0000 UTC Push: 2026-01-19 14:51:52 +0000 UTC |
ninjazan420/CVE-2025-60021-PoC-Apache-bRPC-Heap-Profiler-Command-Injection
CVE-2025-60021 PoC: Apache bRPC Heap Profiler Command Injection
Create: 2026-01-19 14:51:52 +0000 UTC Push: 2026-01-19 14:52:50 +0000 UTC |
qalesyaSN/CVE-2025-6934
This repository contains a Proof of Concept (PoC) exploit for CVE-2025-6934, a critical vulnerability in WordPress Plugin: Opal Estate Pro <= 1.7.5, allowing unauthenticated administrator account creation.
Create: 2026-01-19 13:59:58 +0000 UTC Push: 2026-01-19 14:00:42 +0000 UTC |
0pts/CVE-2023-0214
Secure Web Gateway 10.2.11 - Cross-Site Scripting (XSS)
Create: 2026-01-19 13:22:29 +0000 UTC Push: 2026-01-19 13:22:29 +0000 UTC |
Previous
257
258
259
260
261
262
263
264
Next