unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
增加标签
Tags (allow clear + 0 threshold)
Choose a tag...
Please select a valid tag.
sonnelon/CVE-2026-23744-PoC
Create: 2026-08-10 15:57:48 +0000 UTC Push: 2026-08-10 15:57:49 +0000 UTC |
HORKimhab/CVE-2026-34348
CVE-2026-34348 - Draft or TODO
Create: 2026-08-10 14:48:40 +0000 UTC Push: 2026-08-10 14:48:44 +0000 UTC |
murrez/CVE-2026-65891
CVE-2026-65891 PoC — Joomla Content Editor file rename vulnerability (auth required, fixed in JCE 2.20.2)
Create: 2026-08-10 14:22:57 +0000 UTC Push: 2026-08-10 14:22:58 +0000 UTC |
hacbs-release-tests/collectors-no-cve-20014992
Create: 2026-08-10 14:15:27 +0000 UTC Push: 2026-08-10 14:15:31 +0000 UTC |
Boreas37/CVE-2026-64824-PoC
CVE-2026-64824 — Home Assistant backup-restore symlink path traversal → root RCE. First working PoC, verified on real HA 2026.5.4 (sitecustomize.py overwrite). GHSA-cwh8-w64c-4j5h
Create: 2026-08-10 12:21:47 +0000 UTC Push: 2026-08-10 12:21:51 +0000 UTC |
Procjevt/CVE-2026-9198
Create: 2026-08-10 12:10:29 +0000 UTC Push: 2026-08-10 12:10:53 +0000 UTC |
alexojocyber/cve-2011-2523-vsftpd-validation-lab
Python Nmap scanner for authorized lab environments that checks selected FTP and SMB services with NSE scripts.
Create: 2026-08-10 11:09:47 +0000 UTC Push: 2026-08-10 11:16:24 +0000 UTC |
IamDremig/CVE-2026-14802
Create: 2026-08-10 11:08:50 +0000 UTC Push: 2026-08-10 11:09:07 +0000 UTC |
IamDremig/CVE-2026-15598
Create: 2026-08-10 11:05:40 +0000 UTC Push: 2026-08-10 11:06:13 +0000 UTC |
IamDremig/CVE-2026-65591
Create: 2026-08-10 11:02:56 +0000 UTC Push: 2026-08-10 11:03:37 +0000 UTC |
open-flaw/CVE-2026-2005
Create: 2026-08-10 10:14:52 +0000 UTC Push: 2026-08-10 10:14:53 +0000 UTC |
Saku0512/CVE-2026-9086-poc
Create: 2026-08-10 10:06:00 +0000 UTC Push: 2026-08-10 10:06:01 +0000 UTC |
amao26/CVE-2026-23744-MCPJam-Inspector-Unauthenticated-RCE-Proof-of-Concept
CVE-2026-23744 is an unauthenticated command injection in MCPJam Inspector ≤1.4.2 via /api/mcp/connect. This POC exploits it by sending a crafted JSON payload to execute arbitrary commands, granting a reverse shell with PTY.
Create: 2026-08-10 09:07:16 +0000 UTC Push: 2026-08-10 09:07:17 +0000 UTC |
amao26/CVE-2026-23744-PoC
CVE-2026-23744 is an unauthenticated command injection in MCPJam Inspector ≤1.4.2 via /api/mcp/connect. This POC exploits it by sending a crafted JSON payload to execute arbitrary commands, granting a reverse shell with PTY.
Create: 2026-08-10 09:07:16 +0000 UTC Push: 2026-08-10 09:52:16 +0000 UTC |
Mluex0/CVE-2026-23744-PoC
CVE-2026-23744 is an unauthenticated command injection in MCPJam Inspector ≤1.4.2 via /api/mcp/connect. This POC exploits it by sending a crafted JSON payload to execute arbitrary commands, granting a reverse shell with PTY.
Create: 2026-08-10 09:07:16 +0000 UTC Push: 2026-08-11 01:41:53 +0000 UTC |
DarkLycn1976/CVE-2026-19264
CVE-2026-19264 - Critical unauthenticated path traversal to full instance takeover in Postiz (< 2.22.1). Technical writeup: decode-order bypass, JWT_SECRET escalation, and analysis of the upstream fix.
Create: 2026-08-10 08:37:25 +0000 UTC Push: 2026-08-10 08:53:03 +0000 UTC |
LazyBear8372/CVE-2023-31014_Lab
Educational Android lab for CVE-2023-31014 implicit intent hijacking
Create: 2026-08-10 08:35:06 +0000 UTC Push: 2026-08-10 08:35:10 +0000 UTC |
sonnelon/CVE-2025-59528-PoC
The poc of CVE-2025-59528
Create: 2026-08-10 06:54:32 +0000 UTC Push: 2026-08-10 06:54:33 +0000 UTC |
HORKimhab/CVE-2026-20685
CVE-2026-20685 - Draft or TODO
Create: 2026-08-10 06:46:13 +0000 UTC Push: 2026-08-10 06:46:16 +0000 UTC |
LazyBear8372/CVE-2020-23349_Lab
Educational Android lab for CVE-2020-23349 in Sina Weibo SDK 4.2.7
Create: 2026-08-10 05:07:36 +0000 UTC Push: 2026-08-10 05:07:42 +0000 UTC |
Previous
59
60
61
62
63
64
65
66
Next