momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 9077 条情报 漏洞监控 5406 / 网安开源项目 3671
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
George0Papasotiriou/CVE-2026-22003-Redis-Lua-Sandbox-Escape-via-debug.sethook
language: Lua
George0Papasotiriou/CVE-2026-22002-VNC-Authentication-Bypass-via-Protocol-Version-Confusion
language: Python
George0Papasotiriou/CVE-2026-22001-SPHINCS-WOTS-Weak-Randomness-Forgeable-Signature
language: Python
pratham220/CVE-2026-17543-PHP-Exposure-Validator
Safe PowerShell validator for PHP CVE-2026-17543 exposure via HTTP headers and non-destructive login-form probes. | language: PowerShell
x-znn/CVE-2026-63030
language: Python
eroorvbsyes-hotmail/CVE-2026-43499_x86_Exploit
CVE-2026-43499 x86 Exploit | language: C
HackSpeak/CVE-2026-66066
CVE-2026-66066 (KindaRails2Shell) PoC - Rails Active Storage/libvips arbitrary file read to RCE; for authorized security testing | language: Python
HackSpeak/CVE-2026-64531
CVE-2026-64531 (OVSwrap) PoC - Linux kernel Open vSwitch LPE; for patch validation and security research | language: Python
HackSpeak/CVE-2026-16232
CVE-2026-16232 (Check Point SmartConsole authentication bypass) PoC - unauth to admin; for authorized security testing | language: Python
johnlodan/wp2shell-rce
WordPress CVE-2026-63030 and CVE-2026-60137 security tool for detecting exposure to the WP2Shell pre-authentication RCE chain. | language: TypeScript
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
全球首个开源的中文 AI Agent 红队攻击与安全评估框架 Global first open-source Chinese AI Agent red-teaming & security evaluation framework
创建者: DJAzzs 全球首个开源的中文 AI Agent 红队攻击与安全评估框架 Global first open-source Chinese AI Agent red-teaming & security evaluation framework
等保大模型测评 Skill:面向大模型系统(训练/推理/RAG/Agent/一体机)的网络安全等级保护测评方法体系,融合 GB/T 22239-2019、T/ISEAA 006-2024、GB/T 45654-2025、GB 45438-2025 及 2025 版高风险判定指引。
创建者: lingfengz 等保大模型测评 Skill:面向大模型系统(训练/推理/RAG/Agent/一体机)的网络安全等级保护测评方法体系,融合 GB/T 22239-2019、T/ISEAA 006-2024、GB/T 45654-2025、GB 45438-2025 及 2025 版高风险判定指引。
Claude Code Skill:补天/SRC 授权范围内漏洞挖掘全流程工作流(侦察/挖掘/验证/报告)
创建者: Lyjan1akIII Claude Code Skill:补天/SRC 授权范围内漏洞挖掘全流程工作流(侦察/挖掘/验证/报告)
Apache 生态系统 CVE 漏洞复现靶场 — Struts2, Tomcat, Solr, HTTP Server, Log4j, Commons Text
创建者: chengbochuan3 Apache 生态系统 CVE 漏洞复现靶场 — Struts2, Tomcat, Solr, HTTP Server, Log4j, Commons Text
Web 框架 CVE 漏洞复现靶场 — Spring, WebLogic, Drupal, GeoServer, OFBiz, PHP
创建者: chengbochuan3 Web 框架 CVE 漏洞复现靶场 — Spring, WebLogic, Drupal, GeoServer, OFBiz, PHP
Atlassian Confluence CVE 漏洞复现靶场
创建者: chengbochuan3 Atlassian Confluence CVE 漏洞复现靶场
CI/CD 工具 CVE 漏洞复现靶场 — Jenkins, TeamCity
创建者: chengbochuan3 CI/CD 工具 CVE 漏洞复现靶场 — Jenkins, TeamCity
企业软件 CVE 漏洞分析 — PaperCut, MOVEit, ManageEngine, ConnectWise, Zimbra
创建者: chengbochuan3 企业软件 CVE 漏洞分析 — PaperCut, MOVEit, ManageEngine, ConnectWise, Zimbra
网络安全设备 CVE 漏洞分析 — Fortinet, Citrix, F5, Ivanti, Palo Alto, Check Point
创建者: chengbochuan3 网络安全设备 CVE 漏洞分析 — Fortinet, Citrix, F5, Ivanti, Palo Alto, Check Point
Windows 协议 CVE 漏洞分析 — BlueKeep, SMBGhost
创建者: chengbochuan3 Windows 协议 CVE 漏洞分析 — BlueKeep, SMBGhost