unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
增加标签
Tags (allow clear + 0 threshold)
Choose a tag...
Please select a valid tag.
hitechcloud-vietnam/CVE-2026-2472-Vertex-AI-SDK-Google-Cloud
Expose and detail an unauthenticated stored XSS vulnerability in the Google Cloud Vertex AI Python SDK affecting versions 1.98.0 to 1.130.9.
Create: 2026-10-03 18:44:33 +0000 UTC Push: 2026-10-03 18:44:34 +0000 UTC |
Pealeap/CVE-2025-21065
A PoC for CVE-2025-21065 that allows any self-attacker to execute commands with Retail Mode privileges (UID 1000/GID 1000, u:r:system_app:s0)
Create: 2026-10-03 16:08:29 +0000 UTC Push: 2026-10-03 16:08:31 +0000 UTC |
gotr00t0day/CVE-2026-39808
An unauthenticated OS command injection vulnerability
Create: 2026-10-03 15:50:23 +0000 UTC Push: 2026-10-03 15:50:25 +0000 UTC |
AlanNewberry/CVE-2026-4480-samba-print-command-injection-rce
Create: 2026-10-03 15:23:16 +0000 UTC Push: 2026-10-03 15:23:21 +0000 UTC |
MRdark-ops/CVE-2026-19660-exploit
Proof-of-concept scanner and exploit helper for CVE-2026-14378: unauthenticated administrator session takeover in the WordPress plugin DevKit Pro (dplugins) through a flawed user-switch “revert” flow.
Create: 2026-10-03 13:28:21 +0000 UTC Push: 2026-10-03 13:28:22 +0000 UTC |
sifatnotes/Learn-SecByte-CTF-Labs-Beelzebub-SQLMap-Auth-CVE-2026-14461-Web-to-Root
Hands-on Learn SecByte CTF labs covering Beelzebub preparation, VM and network clues, Base64, CVE-2026-14461, admin panels, authentication, credential leaks, kernel security, reused keys, SQLMap, and web-to-root concepts.
Create: 2026-10-03 12:25:24 +0000 UTC Push: 2026-10-03 12:25:26 +0000 UTC |
EterNullSec/CVE-2026-103648
CVE-2026-103648 | Path Traversal in image-downloader 4.3.0 | CVSS 9.1 Critical | CWE-22 | By EterNullSec
Create: 2026-10-03 12:03:52 +0000 UTC Push: 2026-10-03 12:03:57 +0000 UTC |
techupdate24/gitlab-ai-gateway-cve-2026-90970
A complete guide and workflow for integrating Agile sprints with DevOps CI/CD pipelines.
Create: 2026-10-03 11:02:32 +0000 UTC Push: 2026-10-03 11:02:38 +0000 UTC |
flavorex0000/libtiff-cve-2022-0891-lab
Isolated ASan/UBSan reproduction and patch verification lab for public CVE-2022-0891
Create: 2026-10-03 10:06:19 +0000 UTC Push: 2026-10-03 10:06:20 +0000 UTC |
XsanFlip/POC-CVE-2026-48842
CVE-2026-48842 Roundcube SQLi Verifier
Create: 2026-10-03 10:00:38 +0000 UTC Push: 2026-10-03 10:00:40 +0000 UTC |
godylockz/CVE-2026-92592
Proof of concept for CVE-2026-92592: Craft CMS authenticated RCE
Create: 2026-10-03 06:29:20 +0000 UTC Push: 2026-10-03 06:29:26 +0000 UTC |
godylockz/cve-2026-92592-craftcms
Proof of concept for CVE-2026-92592 Craft CMS
Create: 2026-10-03 06:25:55 +0000 UTC Push: 2026-10-03 06:26:09 +0000 UTC |
MNM-SEC/CVE-2026-78433
Gitea -- Attachments created before the January 2026 cutoff skip the cross repository check entirely, and permission is then evaluated against the repository named in the URL rather than the repository owning the attachment, so a private repository's attachment is served through any public repository's path
Create: 2026-10-03 04:45:32 +0000 UTC Push: 2026-10-03 04:45:34 +0000 UTC |
Cimihan123/CVE-2026-9558-lab-poc-bundle
POC for mautic SSTI
Create: 2026-10-03 02:59:02 +0000 UTC Push: 2026-10-03 02:59:04 +0000 UTC |
asvorg/CVE-2026-105030-poc
A python3 PoC for CVE-2026-105030 Kener 4.0.0 before 4.1.6 Hidden Monitor Data Disclosure via Dashboard API
Create: 2026-10-03 01:02:50 +0000 UTC Push: 2026-10-03 01:02:52 +0000 UTC |
antid00t/CVE-2026-15989
Unauthenticated Privilege Escalation Mass Exploit Super Forms <= 6.3.316 CVE-2026-15989
Create: 2026-10-03 00:55:33 +0000 UTC Push: 2026-10-03 00:55:35 +0000 UTC |
Ahmed-Elmahgob/POC-CVE-2026-102282
CVE-2026-102282: adm-zip LPE via SUID/SGID preservation during archive extraction (fixed in 0.6.1)
Create: 2026-10-02 23:30:57 +0000 UTC Push: 2026-10-02 23:33:52 +0000 UTC |
fl0ydsec/CVE-2026-15989
SFADMIN - CVE-2026-15989 Super Forms <= 6.3.316 unauthenticated privilege escalation (mass scanner + exploit)
Create: 2026-10-02 23:27:32 +0000 UTC Push: 2026-10-02 23:27:33 +0000 UTC |
hacbs-release-tests/collectors-no-cve-b20790a1
Create: 2026-10-02 20:42:04 +0000 UTC Push: 2026-10-02 20:42:09 +0000 UTC |
LipeOzyy/CVE-2026-42322-
Create: 2026-10-02 20:36:29 +0000 UTC Push: 2026-10-02 20:36:31 +0000 UTC |
Previous
-589
-588
-587
-586
-585
-584
-583
-582
Next