
CVE-2023-37941
Exploit on the default cache of superset by using pickle

Exploit on the default cache of superset by using pickle

Android Security Suite for in-depth reconnaissance and static bytecode analysis based on Ghera benchmarks.

A lightweight security auditor and sandbox for shell scripts. Oversight combines a Static Analysis engine (Rust) with Dynamic Enforcement (Linux…

Script to quick check CVE-2025-55182 (React) and CVE-2025-66478 (Next.js) - Critical unauthenticated RCE vulnerabilities in the React Server…

Async RCE scanner for CVE-2025-55182 / CVE-2025-66478 — prototype-pollution → code execution via React Server Actions.

🔍 A simple Bash script to detect malicious JSP webshells, including those used in exploits of SAP NetWeaver CVE-2025-31324.

UT based automated fuzz driver generation


The code of VulTriage: Triple-Path Context Augmentation for LLM-Based Vulnerability Detection

Tree-sitter based static vulnerability scanner with pattern matching and taint-flow analysis for multi-language source code. Outputs findings as…

Custom version of sudo 1.8.3p1 with CVE-2021-3156 patches applied

A tool that automatically creates fuzzing harnesses based on a library

Coverage-based fuzzer for python applications

🐺 Vulfy – Fast Rust based package version scanner

The code in "DCVD: Dual-Channel Cross-Modal Fusion for Joint Vulnerability Detection and Localization"

Detect-only scanner for CVE-2026-42945 (NGINX Rift), a heap overflow in ngx_http_rewrite_module. Version detection + nginx.conf pattern analysis.…


web2py/web2py @ e94946d