momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 9291 条情报 漏洞监控 5517 / 网安开源项目 3774
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
VeronnX666/CVE-2026-3891
This tool was created solely for educational purposes, not for criminal activities or anything of the sort. Do not misuse this tool. Good luck trying it out. | language: Python
0xh7ml/CVE-2026-63030
language: Python
CerberusMrXi/Langflow-cve-2026-33017-exploit
CVE-2026-33017 exploitation tool for Langflow <1.9.0. Features reverse shells, command execution, file operations, persistence, and automated testing. Validates critical RCE vulnerability impact. For authorized security ...
Raimu0x19/CVE-2026-13001
language: Python
SY115/CVE-Writeups
Security vulnerability research writeups. CVE-2026-50402: Windows NTFS Elevation of Privilege (CVSS 7.8)
shinthink/CVE-2026-3891
Pix for WooCommerce Unauthenticated File Upload via certificate_crt_path Parameter | CVSS 9.8 | topics: 0day, cve, exploit, file-upload, pentest, security, vulnerability, woocommerce, wordpress | language: Python
zi3lak/wp2shell_scanner
Non-intrusive detection scanner for the WordPress wp2shell pre-auth RCE chain (CVE-2026-63030 + CVE-2026-60137). Detection-only, no exploitation. | language: Python
c0gnit00/Wp2Shell
Exploit POC for Wp2Shell, CVE-2026-63030 + CVE-2026-63137 | language: Python
r00tali/CVE-2026-39200
The value of the produk request parameter is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload xbnw0"><script>alert(1)</script>skc2h was submitted in the produk p...
Jvr2022/CVE-2026-46420
PoC for CVE-2026-46420, command injection in shivammathur/setup-php via repository-controlled PHP version resolution. | topics: command-injection, cve-2026-46420, cwe-78, github-actions, poc, security-research, setup-php
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
APK爆毒免杀处理方案 -
创建者: scdnai APK爆毒免杀处理方案 -
AI渗透测试信息收集 Agent,基于 LangGraph 状态驱动工作流,支持自然语言对话和 CLI 直扫。集成被动信息收集、主动扫描、NVD/CVE 向量知识库、漏洞匹配与 Markdown 报告生成,支持环境自检、缓存管理和快速同步 CVE 数据。
创建者: wnm795 AI渗透测试信息收集 Agent,基于 LangGraph 状态驱动工作流,支持自然语言对话和 CLI 直扫。集成被动信息收集、主动扫描、NVD/CVE 向量知识库、漏洞匹配与 Markdown 报告生成,支持环境自检、缓存管理和快速同步 CVE 数据。
AI-SAST: AI自动扫描漏洞
创建者: pqfhappy AI-SAST: AI自动扫描漏洞
Pallas Bot 4.0 官方扩展:MAA 远控
创建者: PallasBot Pallas Bot 4.0 官方扩展:MAA 远控
窗帘行业每日情报 Skill:行业知识、报告、热点、竞品、供应链与招投标信息收集,自动生成中文 PDF。
创建者: wl13643464077-dev 窗帘行业每日情报 Skill:行业知识、报告、热点、竞品、供应链与招投标信息收集,自动生成中文 PDF。
安全漏洞审计报告集 | Security Vulnerability Assessment Reports
创建者: hackliu 安全漏洞审计报告集 | Security Vulnerability Assessment Reports
MintKangaroo/Cyber-Offensive-and-Defensive-Exercise
공방(攻防) 통합 사이버 레인지 — 11개 ICS/OT 섹터 디지털 트윈, EDR/SIEM, 69 CTF 챌린지, 다중 팀 대회 운영(Range/Match 격리·초기화·안전통제) | topics: blue-team, ctf, cyber-range, ics-security, mitre-attack, ot-security, purple-team, red-team, security-training...
zzzjiushi/web_scanner
一个轻量级模块化 Web 漏洞扫描器(DAST),实现了 SQL 注入,XSS,命令注入等诸多漏洞的 自动化检测,具备可扩展的插件化架构。 | language: Python | stars: 0 | forks: 0 | updated 2026-07-16T09:57:57Z | pushed 2026-07-16T09:57:45Z
gshhwht/python-security-scanner
基于python开发的漏洞扫描小工具 | language: Python | stars: 1 | forks: 0 | updated 2026-07-19T05:10:46Z | pushed 2026-07-19T05:01:59Z
gutddts/SentinelScan
🔍 全栈漏洞扫描管理平台 — React + FastAPI,支持端口扫描/HTTP头检测/SSL验证/漏洞检测,可视化仪表盘与PDF报告 | language: TypeScript | stars: 2 | forks: 0 | updated 2026-08-17T09:48:35Z | pushed 2026-07-21T09:55:22Z