unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
增加标签
Tags (allow clear + 0 threshold)
Choose a tag...
Please select a valid tag.
offseckit/CVE-2026-23813
CVE-2026-23813 — AOS-CX pre-auth bypass via nginx regex. Detection script, bypass demo, config-disclosure PoC, and IDS rules.
Create: 2026-05-23 03:41:46 +0000 UTC Push: 2026-05-23 03:41:49 +0000 UTC |
HORKimhab/CVE-2025-46822
CVE-2025-46822
Create: 2026-05-23 03:14:55 +0000 UTC Push: 2026-05-23 03:14:58 +0000 UTC |
HORKimhab/CVE-2026-41901
CVE-2026-41901
Create: 2026-05-23 01:25:51 +0000 UTC Push: 2026-05-23 01:25:53 +0000 UTC |
felisha-elmer/Sandbox-Challenge-Log4Shell-CVE-2021-44228-
Create: 2026-05-23 01:24:46 +0000 UTC Push: 2026-05-23 01:24:47 +0000 UTC |
r3nsi15/CVE-2026-33017-langflow-rce
Create: 2026-05-22 22:01:05 +0000 UTC Push: 2026-05-22 22:01:06 +0000 UTC |
portbuster1337/CVE-2026-20182
CVE-2026-20182 PoC - Cisco Catalyst SD-WAN Controller / Manager Authentication Bypass (CVSS 10.0)
Create: 2026-05-22 21:17:01 +0000 UTC Push: 2026-05-22 21:17:03 +0000 UTC |
ridhinva/CVE-2025-34291-Langflow-Scanner
Langflow Origin Validation Error / CORS Misconfiguration Scanner
Create: 2026-05-22 20:44:28 +0000 UTC Push: 2026-05-22 20:44:31 +0000 UTC |
ridhinva/CVE-2026-1731-BeyondTrust-RCE
BeyondTrust Remote Support / PRA Pre-auth RCE Scanner
Create: 2026-05-22 20:44:24 +0000 UTC Push: 2026-05-22 20:44:27 +0000 UTC |
ridhinva/CVE-2026-3854-GHE-RCE
GitHub Enterprise Server Pre-auth RCE via Push Option Injection Scanner
Create: 2026-05-22 20:44:20 +0000 UTC Push: 2026-05-22 20:44:21 +0000 UTC |
ridhinva/CVE-2026-0073-ADBD-Bypass
Android ADB Authentication Bypass - Wireless ADB RCE Scanner
Create: 2026-05-22 20:44:16 +0000 UTC Push: 2026-05-22 20:44:19 +0000 UTC |
ridhinva/CVE-2026-0300-PANOS-RCE
PAN-OS User-ID Captive Portal Buffer Overflow RCE Scanner & Checker
Create: 2026-05-22 20:44:11 +0000 UTC Push: 2026-05-22 20:44:15 +0000 UTC |
ridhinva/CVE-2026-9082
Drupal PostgreSQL SQLi Scanner - Unauthenticated SQL Injection in Drupal Core via JSON:API (CISA KEV May 2026)
Create: 2026-05-22 19:49:06 +0000 UTC Push: 2026-05-22 19:49:07 +0000 UTC |
0xBlackash/CVE-2026-43494
CVE-2026-43494
Create: 2026-05-22 19:29:17 +0000 UTC Push: 2026-05-22 19:29:18 +0000 UTC |
BishopFox/CVE-2026-27886-check
Detect whether a Strapi instance is vulnerable to CVE-2026-27886 (unauthenticated boolean-oracle exfiltration of administrator secrets).
Create: 2026-05-22 19:07:00 +0000 UTC Push: 2026-05-22 19:07:17 +0000 UTC |
F2u0a0d3/CVE-2026-42945-nginx-rift-poc
PoC for CVE-2026-42945 (nginx Rift) — heap buffer overflow in ngx_http_rewrite_module. Includes detect/probe/exploit modes, dual-fixture Docker lab, empirical address discovery, OOB-verified offset sweep. Original disclosure by depthfirst.
Create: 2026-05-22 18:23:24 +0000 UTC Push: 2026-05-22 18:23:26 +0000 UTC |
Yucaerin/CVE-2026-8181
The BookingPress Pro plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation
Create: 2026-05-22 17:05:11 +0000 UTC Push: 2026-05-22 17:05:12 +0000 UTC |
SpeatX/CVE-2019-8942-WordPress-RCE
Python exploit toolkit for WordPress Crop Image RCE — CVE-2019-8942 & CVE-2019-8943
Create: 2026-05-22 16:36:35 +0000 UTC Push: 2026-05-23 22:59:47 +0000 UTC |
SpeatX/WordPress-RCE-CVE-2019-8942
Python exploit toolkit for WordPress Crop Image RCE — CVE-2019-8942 & CVE-2019-8943
Create: 2026-05-22 16:36:35 +0000 UTC Push: 2026-05-23 22:59:47 +0000 UTC |
x48ps/CVE-2026-8181
This vulnerability allows unauthenticated attackers who know a valid administrator username to impersonate that admin during REST API requests by using any incorrect password in a Basic Authentication header. Attackers could abuse this flaw to create a new administrator account without prior authentication.
Create: 2026-05-22 16:12:48 +0000 UTC Push: 2026-05-22 16:12:49 +0000 UTC |
Pumila03/CVE-2026-6009
Create: 2026-05-22 15:43:22 +0000 UTC Push: 2026-05-23 21:08:41 +0000 UTC |
Previous
85
86
87
88
89
90
91
92
Next