momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 8976 条情报 漏洞监控 5357 / 网安开源项目 3619
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
abhinandanpandey-in/Command-Injection-Lab
Security research lab on OS Command Injection (CWE-78) & RCE. Features a vulnerable Flask diagnostic tool and a Python exploit engine demonstrating command chaining to achieve full system compromise. Includes architectur...
Typo in rest.client.adoc: extraneous semicolon in read-timeout value
In the `rest.client.adoc` documentation, the YAML example for HTTP client configuration contains a trailing semicolon in the `read-timeout` value. **Current:** ```yaml read-timeout: 2s; ``` **Expected:** ```yaml read-...
bamov970/CVE-2026-21858
language: Python
JoshuaProvoste/Command-Injection-RCE-PyGlove-v0.4.5
Command Injection / Remote Code Execution (RCE) via Insecure Deserialization in decode() of json_conversion.py in PyGlove v0.4.5 - (github.com/google/pyglove) | topics: command-injection, command-injection-attack, deseri...
JoshuaProvoste/Command-Injection-RCE-Vertex-AI-SDK-v1.121.0
Command Injection / Remote Code Execution (RCE) via Insecure Deserialization in load() of predictor.py in Vertex AI SDK v1.121.0 - (github.com/googleapis/python-aiplatform) | topics: command-injection, command-injection-...
JoshuaProvoste/Command-Injection-RCE-AlphaFold-v3.0.1
Command Injection / Remote Code Execution (RCE) via Insecure Deserialization in _load_ccd_pickle_cached() of chemical_components.py in AlphaFold 3 (v3.0.1) - (github.com/google-deepmind/alphafold3) | topics: command-inje...
Consider if we want to support channel defaults for gRPC clients
See https://github.com/spring-projects/spring-grpc/pull/347 If we do this we should also consider HTTP Service Clients
OTEL_SDK_DISABLED and friends doesn't disable publishing OpenTelemetry
I apologize if this turns out to be a documentation thing, but I am unable to find a way to disable OpenTelemetry publishing based on any of the options I can find. I've tried a number of ways to disable publishing to my...
rippsec/CVE-2024-24590-ClearML-RCE-Exploit
language: Python
rippxsec/CVE-2024-24590-ClearML-RCE-Exploit
language: Python
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
当前条件下没有命中网安开源项目。