
Curated repository of vulnerability disclosures from Mandiant, including CVEs discovered through internal research, red team assessments, and wild observations, with optional proof-of-concept code.
This repository details vulnerabilities disclosed by Mandiant. These vulnerabilities were discovered by internal research, through Red Team assessments, or in use in the wild. Proof of concepts (PoCs) may or may not be provided.
The following licenses/licensing apply to this Mandiant repository:
Mandiant coordinates and handles Vulnerability Disclosures in accordance with Google's Vulnerability Disclosure Policy.
Mandiant's CVE Numbering Authority (CNA) Scope: Vulnerabilities within Mandiant code, and vulnerabilities in third-party software discovered by Mandiant that are not in another CNA's scope.