Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
Add FailureAnalyzedException to reduce the number of internal FailureAnalizers required
We currently have a pattern where we create a package-private exception and a related `FailureAnalizer` to report it. For example [`NoSuchHealthContributorFailureAnalyzer`](https://github.com/spring-projects/spring-boot/...
saintxploit/laravel-rce
language: Python
D3m0nicw0lf/CVE-2023-43208
mirth-connect-rce-poc | language: Python
Missing ch.logback.core.util.VersionUtil class on classpath. The version of logback-core is probably older than 1.5.26.
After upgradin my project to `spring-boot-starter-parent 4.0.2` the following WARN appears in the log during executing Tests:
```
WARN in ch.qos.logback.classic.util.ContextInitializer@42e3ede4 -
Missing ch.logback....
TFTP Path Traversal
Cloud Hypervisor: Host File Exfiltration via QCOW Backing File Abuse
khadafigans/React2Shell
React2Shell - CVE-2025-66478 RCE Exploit | topics: exploit, nextjs, rce, react2shell, react2shell-exploitation | language: Python
Upgrade to Kafka 3.9.2 for Spring Boot 3.5.
Upgrade to [Kafka 3.9.2](https://downloads.apache.org/kafka/3.9.2/RELEASE_NOTES.html) to fix various CVEs in the transitive dependencies.
joshuavanderpoll/CVE-2021-3129
Laravel RCE Exploit PoC - CVE-2021-3129 (user-friendly with automatic log path detection) | topics: cve, cve-2021-3129, exploit, exploits, laravel, pentest-tool, pentesting, python, rce, scanner, security, security-tools...
Unable to run nativeTests when non-constant value is passed as command-line app args
Hi,
I find out that when I have CLI application and wan to test `nativeTest` mode of it, it fails badly on following application.
I am not using standard `@SpringBootTest` annotation because one of the CLI parameters is ...
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
当前条件下没有命中网安开源项目。