unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
增加标签
Tags (allow clear + 0 threshold)
Choose a tag...
Please select a valid tag.
HyperPS/CVE-2026-0897
Allocation of Resources Without Limits or Throttling in the HDF5 weight loading component in Google Keras 3.0.0 through 3.13.0 on all platforms allows a remote attacker to cause a Denial of Service (DoS) through memory exhaustion and a crash of the Python interpreter via a crafted .keras
Create: 2026-03-29 08:44:34 +0000 UTC Push: 2026-03-29 08:44:35 +0000 UTC |
HyperPS/CVE-2026-0848
nltk.tokenize.StanfordSegmenter dynamically loads external Java .jar files without verification or sandboxing. If an attacker can supply or replace the JAR (e.g., a poisoned model download, MITM package swap, or dependency poisoning), arbitrary Java bytecode executes at import time.
Create: 2026-03-29 08:20:30 +0000 UTC Push: 2026-03-29 08:20:31 +0000 UTC |
HyperPS/CVE-2026-0847
A vulnerability in NLTK versions up to and including 3.9.2 allows arbitrary file read via path traversal in multiple CorpusReader classes, including WordListCorpusReader, TaggedCorpusReader, and BracketParseCorpusReader.
Create: 2026-03-29 08:00:18 +0000 UTC Push: 2026-03-29 08:00:19 +0000 UTC |
xitexploiter96-dot/CVE-2025-23419
Create: 2026-03-29 05:03:18 +0000 UTC Push: 2026-03-29 05:03:36 +0000 UTC |
cybermaksxx/CVE-2022-46364-Proof-of-the-concept
This vulnerability allows an attacker to perform SSRF (Server-Side Request Forgery) attacks on Apache CXF webservices that accept MTOM/XOP requests. The issue exists in how the href attribute of xop:Include is parsed, allowing arbitrary URLs to be requested by the server.
Create: 2026-03-29 02:04:26 +0000 UTC Push: 2026-03-29 02:04:26 +0000 UTC |
0xzap/CVE-2025-54123
Create: 2026-03-28 23:15:32 +0000 UTC Push: 2026-03-28 23:24:03 +0000 UTC |
Humberto-pixel/CVE-2023-43208-PoC
Este script es una Prueba de Concepto (PoC) para la vulnerabilidad de Ejecución Remota de Código (RCE) en **Mirth Connect** (versiones anteriores a la 4.4.1). Explota una vulnerabilidad de deserialización.
Create: 2026-03-28 22:02:49 +0000 UTC Push: 2026-03-28 22:02:50 +0000 UTC |
kasem545/CVE-2025-54123-Poc
CVE-2025-54123
Create: 2026-03-28 21:49:30 +0000 UTC Push: 2026-03-28 21:49:32 +0000 UTC |
kasem545/CVE-2022-46364-Poc
CVE-2022-46364-Poc
Create: 2026-03-28 21:10:47 +0000 UTC Push: 2026-03-28 21:10:49 +0000 UTC |
Recorded-texteditor120/CVE-2026-31802
Create: 2026-03-28 20:49:46 +0000 UTC Push: 2026-03-28 20:50:11 +0000 UTC |
d0x-awrqxavc/CVE-2026-23744---HACKTHEBOX
Create: 2026-03-28 20:03:34 +0000 UTC Push: 2026-03-28 20:03:34 +0000 UTC |
d0x-awrqxavc/CVE-2026-23744-HACKTHEBOX
Create: 2026-03-28 20:03:34 +0000 UTC Push: 2026-03-28 20:06:25 +0000 UTC |
0xBlackash/CVE-2026-21643
CVE-2026-21643
Create: 2026-03-28 19:09:38 +0000 UTC Push: 2026-03-28 19:09:38 +0000 UTC |
moua1303-blip/CVE-2025-62168
Create: 2026-03-28 14:18:31 +0000 UTC Push: 2026-03-28 14:18:31 +0000 UTC |
bitt0n/CVE-2026-766
Educational security research: OpenWebUI RCE via tool code injection (CVE-2026-0766 - ZDI-26-032)
Create: 2026-03-28 14:14:23 +0000 UTC Push: 2026-03-28 14:14:23 +0000 UTC |
bitt0n/CVE-2026-0766
Educational security research: OpenWebUI RCE via tool code injection (CVE-2026-0766 - ZDI-26-032)
Create: 2026-03-28 14:14:23 +0000 UTC Push: 2026-03-28 14:14:23 +0000 UTC |
moua1303-blip/CVE-2025-54574
Create: 2026-03-28 13:46:56 +0000 UTC Push: 2026-03-28 13:46:56 +0000 UTC |
dinhvaren/cve-2026-33937
Create: 2026-03-28 13:24:22 +0000 UTC Push: 2026-03-28 13:24:22 +0000 UTC |
dinhvaren/cve-2026-33937-handlebars-rce-poc
CVE-2026-33937 Handlebars RCE exploit PoC (AST Injection)
Create: 2026-03-28 13:24:22 +0000 UTC Push: 2026-03-29 02:01:45 +0000 UTC |
dinhvaren/cve-2021-23369
Create: 2026-03-28 13:24:08 +0000 UTC Push: 2026-03-28 13:24:08 +0000 UTC |
Previous
97
98
99
100
101
102
103
104
Next