An open API service indexing awesome lists of open source software.

Common Vulnerabilities and Exposures (CVE)

The Common Vulnerabilities and Exposures (CVE) system provides a reference-method for publicly known information-security vulnerabilities and exposures. The United States’ National Cybersecurity FFRDC, operated by The Mitre Corporation, maintains the system, with funding from the US National Cyber Security Division of the US Department of Homeland Security

https://github.com/Josexv1/CVE-2022-27925

Zimbra CVE-2022-27925 PoC

cve cve-2022-27925 exploit poc zimbra

Last synced: 10 Mar 2025

https://github.com/r3dxpl0it/CVE-2018-4407

IOS/MAC Denial-Of-Service [POC/EXPLOIT FOR MASSIVE ATTACK TO IOS/MAC IN NETWORK]

attack blueteam cve cyber-security cybersecurity denial-of-service exploit hacking hacking-tool ios macos network penetration-testing poc redteam security

Last synced: 22 Apr 2025

https://github.com/s1lkys/cve-2020-11107

This is a writeup for CVE-2020-11107 reported by Maximilian Barz

cve cve-2020-11107

Last synced: 02 Apr 2025

https://github.com/danielruf/snyk-js-jquery-174006

patches for SNYK-JS-JQUERY-174006, CVE-2019-11358, CVE-2019-5428

cve cve-2019-11358 cve-2019-5428 jquery patch snyk snyk-js-jquery-174006

Last synced: 14 Feb 2025

https://github.com/devmatic-it/debcvescan

Debian CVE Scanner is self-contained CVE scanner for DEBIAN distributions written in golang.

cve debian go golang security-scanner vulnerabilities

Last synced: 12 Apr 2025

https://github.com/mauricelambert/cve-2022-21907

CVE-2022-21907: detection, protection, exploitation and demonstration. Exploitation: Powershell, Python, Ruby, NMAP and Metasploit. Detection and protection: Powershell. Demonstration: Youtube.

bluescreen crash cve cve-2022-21907 denial-of-service detection dos exploit iis metasploit microsoft nmap payload powershell protection python3 ruby vulnerability webserver

Last synced: 11 Apr 2025

https://github.com/danielruf/snyk-js-jquery-565129

patches for SNYK-JS-JQUERY-565129, SNYK-JS-JQUERY-567880, CVE-2020-1102, CVE-2020-11023, includes the patches for SNYK-JS-JQUERY-174006, CVE-2019-11358, CVE-2019-5428

cve cve-2019-11358 cve-2019-5428 cve-2020-11022 cve-2020-11023 jquery patch snyk snyk-js-jquery-174006 snyk-js-jquery-565129 snyk-js-jquery-567880

Last synced: 14 Feb 2025

https://github.com/alexfrancow/cve-search

CVE-Search (name still in alpha), is a Machine Learning tool focused on the detection of exploits or proofs of concept in social networks such as Twitter, Github. It is also capable of doing related searches on Google, Yandex, DuckDuckGo on CVEs and detecting if the content may be a functional exploit, a proof of concept or simply information about the vulnerability.

cve exploits flask machine-learning nlp-machine-learning pandas poc postgresql python3 scikit-learn

Last synced: 20 Nov 2024

https://github.com/zapalm/prestashop-security-vulnerability-checker

PrestaShop security vulnerability checker for known vulnerabilities.

cve hacktoberfest php-library prestashop security vulnerability

Last synced: 09 Feb 2025

https://github.com/3ndg4me/cve-2020-3452-exploit

Just basic scanner abusing CVE-2020-3452 to enumerate the standard files accessible in the Web Directory of the CISCO ASA applicances.

bash cisco cve cve-2020-3452 exploit hacktoberfest shell vulnerability

Last synced: 25 Mar 2025

https://github.com/mr-xn/cve-2024-32113

Apache OFBIZ Path traversal leading to RCE POC[CVE-2024-32113 & CVE-2024-36104]

apache cve cve-2024 cve-2024-32113 cve-2024-36104 ofbiz poc rce rce-exploit

Last synced: 22 Mar 2025

https://github.com/r3drun3/cyberhall

🛡️ 🌐 🥷🏻 Everything CyberSecurity Related 🏴‍☠️ 👾 🕵🏾

ctf cve cybersecurity devsecops hacking infosec secops vapt

Last synced: 21 Apr 2025

https://github.com/vulsio/go-msfdb

CVEs <--> Metasploit-Framework modules

cve cve-search golang metasploit security

Last synced: 11 Feb 2025

https://github.com/0xdea/advisories

A collection of my public security advisories.

advisory cve vulnerability

Last synced: 04 Apr 2025

https://github.com/cedricbonhomme/freshermeat

An open source software directory and release tracker.

cve cve-search freshmeat release-tracking software-directory

Last synced: 14 Apr 2025

https://github.com/friends-of-presta/security-advisories

Security advisories of the FOP security team for prestashop

cve fop prestashop security

Last synced: 09 Feb 2025

https://github.com/maikuolan/vulnerability-charts

Some simple charts for listing CVSS by version for various packages.

charts cve cvss hhvm php phpmyadmin python vulnerabilities vulnerability

Last synced: 21 Mar 2025

https://github.com/cokebeer/go-cves

收录go语言编写的项目、框架和组件出现的cve,或者一些相关的利用方式的文章

bugbounty cve exploit go poc security

Last synced: 02 Dec 2024

https://github.com/justakazh/CVE_Database

The Common Vulnerabilities Exposures (CVE) Database

0day cve cwe database infosec json nvd pentester security vulnerabilities vulnerability zeroday

Last synced: 18 Jan 2025

https://github.com/briandfoy/cpan-security-advisory

CPAN Security Advisory Database

cve data-pack perl security

Last synced: 11 Apr 2025

https://github.com/gwen001/detectify-cves

Find CVEs that don't have a Detectify modules.

bugbounty cve detectify pentesting scanner security-tools

Last synced: 20 Apr 2025

https://github.com/goncalor/cve-ark

All published CVE and their recent changes, ready to be used by humans and machines

cve security security-vulnerability

Last synced: 21 Nov 2024

https://github.com/emo-crab/scap-rs

National Vulnerability Database (NVD) implemented by rust

actix-web cpe cve cvss cvssv3 cvssv4 cwe exploit nuclei-templates nvd rust scap yew

Last synced: 11 Apr 2025

https://github.com/thewhiteh4t/cve-2020-9375

TP-Link Archer C50 V3 devices before Build 200318 Rel. 62209 allows remote attackers to cause a denial of service via a crafted HTTP Header containing an unexpected Referer field.

cve cve-2020-9375 exploit tp-link tplink

Last synced: 12 Apr 2025

https://github.com/staz0t/exploits

Exploits for some of the vulnerabilities I have discovered

cve exploits vulnerabilities

Last synced: 12 Mar 2025

https://github.com/geeknik/cve-fuzzing-poc

PoCs discovered through fuzzing which resulted in a CVE assignment.

cve fuzzing infosec poc security testcase

Last synced: 10 Mar 2025

https://github.com/000pp/pwnfaces

😛 Primefaces 5.X EL Injection Exploit (CVE-2017-1000486)

cve cve-2017-1000486 elinjection exploit golang linux primefaces redteam

Last synced: 24 Apr 2025

https://github.com/thewhiteh4t/cve-2021-31630

Python script for exploiting command injection in Open PLC Webserver v3

cve exploit openplc rce

Last synced: 12 Apr 2025

https://github.com/briandfoy/cpan-audit

Check CPAN modules for known security vulnerabilities

cve perl perl-module perl-tool security security-audit

Last synced: 13 Apr 2025

https://github.com/stealthcopter/CVE-2020-28243

CVE-2020-28243 Local Privledge Escalation Exploit in SaltStack Minion

cve cve-2020-28243 privilege-escalation saltstack saltstack-minion

Last synced: 10 Mar 2025

https://github.com/blackarrowsec/advisories

Advisories and Proofs of Concept by BlackArrow

cve proof-of-concept security-advisories

Last synced: 14 Apr 2025

https://github.com/jakub-przepiora/ps-scan-prestashop-scanner

This tool serves as an initial version scanner specifically designed for PrestaShop, a popular e-commerce platform. The primary purpose of the scanner is to analyze PrestaShop instances for various aspects, such as module information, version details, and potential security vulnerabilities.

cve prestashop security security-tools

Last synced: 09 Feb 2025

https://github.com/stealthcopter/cve-2020-28243

CVE-2020-28243 Local Privledge Escalation Exploit in SaltStack Minion

cve cve-2020-28243 privilege-escalation saltstack saltstack-minion

Last synced: 10 Feb 2025

https://github.com/mrcl0wnlab/checker-cve2020-3452

Cisco Adaptive Security Appliance and FTD Unauthorized Remote File Reading

cisco cve cve2020-3452 hacking hacking-tool python

Last synced: 05 Dec 2024

https://github.com/shadawck/mitrecve

Get all cve corresponding to a specific keyword or a list of keywords from the mitre database (https://cve.mitre.org/)

api cli cve cve-scanning cve-search dependencies mitre mitre-api mitre-attack security security-scanner security-tools

Last synced: 13 Apr 2025

https://github.com/p7e4/cve-alert

懒人必备,CVE漏洞预警脚本,支持钉钉/企业微信群机器人消息通知

cve cve-alert vulnerability-alerts

Last synced: 10 Jan 2025

https://github.com/CnHack3r/Penetration_PoC

FROM:@Mr-xn 渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss penetration-testing-poc csrf-webshell cobub-razor cve rce sql sql-poc poc-exp bypass oa-getshell cve-cms

bypass cms-exploits cms-framework cobaltstrike cve exploit rce sql-scanner

Last synced: 10 Mar 2025

https://github.com/infertux/sysechk

System Security Checker is a bundle of small shell scripts to assess your computer security.

cve cve-scanning security security-checker shell

Last synced: 13 Apr 2025

https://github.com/0xlane/xz-cve-2024-3094

XZ Backdoor Extract(Test on Ubuntu 23.10)

cve cve-2024-3094 xz xz-utils

Last synced: 09 Apr 2025

https://github.com/0x00-0x00/-cve-2017-9805

Exploit script for Apache Struts2 REST Plugin XStream RCE (‎CVE-2017-9805)

apache cve exploit struts

Last synced: 22 Nov 2024

https://github.com/blackhole-consulting/olger

Olger, authomated cybersecurity analyst , check infrastructures and deploy solutions

ansible cve cve-scanning cybersecurity d3-graph d3js dot-files elasticsearch graphviz haproxy haproxy-configuration kibana nmap pdf visualizes-data

Last synced: 01 Apr 2025

https://github.com/qeeqbox/falcon

Collection of exploits that were verified by an automated system

cve exploit patch python

Last synced: 13 Apr 2025

https://github.com/jgamblin/cisa_enrichment

CISA Known Exploited Vulnerabilities Catalog Enrichment

cisa cisa-directives cve cwe

Last synced: 29 Apr 2025

https://github.com/padsalatushal/cve-2011-2523

Python exploit for vsftpd 2.3.4 - Backdoor Command Execution

cve cve-2011-2523 exploit python security vsftpd-exploit

Last synced: 11 Apr 2025

https://github.com/Inplex-sys/CVE-2022-36804

A loader for bitbucket 2022 rce (cve-2022-36804)

bitbucket cve cve-2022-36804 exploit-db poc rce

Last synced: 10 Mar 2025

https://github.com/Supersonic/Wallbreak

Exploit app for CVE-2021-39670 and CVE-2021-39690, two permanent denial-of-service vulnerabilities in Android's wallpaper system

android cve exploit security vrp

Last synced: 10 Mar 2025

https://github.com/richlamdev/dependabot-scraper

Python / Github CLI - Github dependabot alert scraper - Software Composition Analysis (SCA), Vulnerability Management, Patching, Supply Chain Security

api automation bash cve cvss cvssv3 dependabot dependency github github-cli patching python rest-api scraper scripting supplychain vulnerability-detection vulnerability-management

Last synced: 27 Jan 2025

https://github.com/carlospolop/nse_winvulndetection_csv

Checks if a windows machine with the smb service actve is vulnerable to the CVEs of a CSV file passed as argument to the script

cve nse-winvulndetection-csv smb

Last synced: 24 Mar 2025

https://github.com/AmoloHT/CVE-2022-26134

「💥」CVE-2022-26134 - Confluence Pre-Auth RCE

confluence cve cve-2022-26134 exploit hacking infosec rce security

Last synced: 10 Mar 2025

https://github.com/wjl110/Spring_CVE_2022_22947

Spring_CVE_2022_22947:Spring Cloud Gateway现高风险漏洞cve,poc漏洞利用,一键利用,开箱即用

cve cve-2022-22947 poc spring-cloud-gateway spring-cve-2022-22947

Last synced: 10 Mar 2025

https://github.com/plazmaz/cvestack

Scan products in your stack for known vulnerabilities

cve cve-scanning infosec nvd python security security-tools vulnerability

Last synced: 23 Apr 2025

https://github.com/alexandre-bartel/cve-2019-12594

This is a PoC for CVE-2019-12594, a vulnerability in DOSBox 0.74-2.

cve dos dosbox exploit poc proof-of-concept vulnerability

Last synced: 01 Dec 2024

https://github.com/jonpalmisc/cve-2021-40531

Quarantine bypass and RCE vulnerability in Sketch (proof-of-concept)

cve macos sketch

Last synced: 19 Nov 2024

https://github.com/tin-z/Stuff_and_POCs

Containing vulnerabilities I've discovered and maybe CVE

cve vulnerability-research

Last synced: 10 Mar 2025

https://github.com/eqstlab/cve-2024-8353

GiveWP PHP Object Injection exploit

cve exploit php poc proof-of-concept security vulnerability

Last synced: 11 Apr 2025

https://github.com/ignis-sec/cve-details-extension

Hover over cve id's on the website to get a helpful summary.

cve infosec security

Last synced: 13 Nov 2024

https://github.com/center-for-threat-informed-defense/cwe-calculator

The CWE Calculator enables software development teams to score and prioritize discovered weaknesses empirically based on data in the National Vulnerability Database (NVD).

ctid cve cvss cwe cybersecurity threat-informed-defense

Last synced: 12 Apr 2025

https://github.com/m4drat/CVE-2013-2028-Exploit

CVE-2013-2028 python exploit

cve exploit nginx pwn

Last synced: 10 Mar 2025

https://github.com/muchdogesec/cve2stix

A command line tool that turns NVD CVE records into STIX 2.1 Objects.

cve nvd stix2 stix2-patterns vulnerability

Last synced: 02 May 2025

https://github.com/jiguangsdf/cve-2018-11776

CVE-2018-11776(S2-057) EXPLOIT CODE

cve cve-2018-11776 python3 struts2

Last synced: 22 Apr 2025

https://github.com/efchatz/bl0ck

Bl0ck: a tool to interrupt the transmission of QoS Data frames in Wi-Fi 5 and 6 networks

80211 cve dos exploit wifi wpa2 wpa3

Last synced: 27 Mar 2025

https://github.com/mbadanoiu/cve-2024-37081

CVE-2024-37081: Multiple Local Privilege Escalation in VMware vCenter Server

0-day authenticated cve cve-2024-37081 cves local-privilege-escalation

Last synced: 01 Mar 2025

https://github.com/zeyad-azima/cve-2022-1388

F5 BIG-IP iControl REST vulnerability RCE exploit with Java including a testing LAB

cve cve-2022-1388 exploit f5 f5-bigip icontrol rest-api

Last synced: 09 Feb 2025

https://github.com/phylum-dev/vuln-reach

A library for building tools to determine if vulnerabilities are reachable in a code base.

cve security vulnerabilities

Last synced: 19 Nov 2024

https://github.com/pandatix/cvedetect

Yet another Vulnerability Assessment Tool for efficient CVE detection.

cve detection go graphql vulnerability-assessment vulnerability-detection

Last synced: 14 Dec 2024

https://github.com/enty8080/tfp0

tfp0 (task for pid 0) is a kernel task port that grants full control over the iOS device's kernel. Access to this port is necessary for developing many types of exploits, including jailbreaks.

cve exploit ios iphone jailbreak macos payload tfp0 vulnerability

Last synced: 26 Jan 2025

https://github.com/brannondorsey/cve

A collection of vulnerabilities found through independent security research.

cve disclosure security

Last synced: 01 Mar 2025

https://github.com/travispaul/nvd_cve

🔎 Search for CVEs against a local cached copy of NIST National Vulnerability Database (NVD)

cve nist nvd

Last synced: 06 Apr 2025

https://github.com/mudongliang/source-packages

This repo stores source code of the vulnerable program.

cve edb linux reproduction vulnerability

Last synced: 12 Apr 2025

https://github.com/vulnerability-lookup/fedivuln

A client to gather vulnerability-related information from the Fediverse.

cve fediverse mastodon sightings vulnerability vulnerability-lookup

Last synced: 25 Jan 2025

https://github.com/hunthubspace/cve-2024-0757-exploit

A PoC Exploit for CVE-2024-0757 - Insert or Embed Articulate Content into WordPress Remote Code Execution (RCE)

bugbounty cve ethical-hacking exploit penetration-testing web

Last synced: 13 Apr 2025

https://github.com/enty8080/macdirtycow

Example of CVE-2022-46689 aka MacDirtyCow.

cve cve-2022-46689 exploit jailbreak macdirtycow macos

Last synced: 14 Apr 2025

https://github.com/zaghaghi/neo4j-cve-scripts

Scripts for downloading and importing CVE json feeds into Neo4j

analysis cve cwe graphql neo4j security-vulnerability

Last synced: 08 Apr 2025

https://github.com/mawg0ud/cveforge

A tool to track & analyze Common Vulnerabilities and Exposures (CVEs).

automation cve cybersecurity detection exploit infosec malware pentesting python risk security vulnerability

Last synced: 05 Mar 2025

https://github.com/jgamblin/cvereview

2023 CVE Data Review

cve nvd vulnerabilities

Last synced: 29 Apr 2025

https://github.com/martinclauss/exim-rce-cve-2018-6789

This repository provides a learning environment to understand how an Exim RCE exploit for CVE-2018-6789 works.

binary-exploitation cve docker educational exim exim-exploit exploit exploit-development gdb learning-by-doing pwndbg pwntools rce vagrant

Last synced: 16 Dec 2024

https://github.com/codedsprit/cve-2022-22965

🤯 Exploit for SpringShell.

cve exploit springshell

Last synced: 27 Apr 2025

https://github.com/vulnerability-lookup/FediVuln

A client to gather vulnerability-related information from the Fediverse.

cve fediverse mastodon sightings vulnerability vulnerability-lookup

Last synced: 07 Apr 2025

https://github.com/0xsyr0/log4shell

This repository contains all gathered resources we used during our Incident Reponse on CVE-2021-44228 and CVE-2021-45046 aka Log4Shell.

cve cve-2021-44228 log4j log4shell

Last synced: 20 Feb 2025

https://github.com/mbadanoiu/cve-2024-34693

CVE-2024-34693: Server Arbitrary File Read in Apache Superset

0-day arbitrary-file-read cve cve-2024-34693 cves

Last synced: 01 Mar 2025

https://github.com/hansmach1ne/myexploits

Repo for discovered zero day vulnerabilities/exploits

bug-hunting cve exploit vulnerability

Last synced: 21 Nov 2024