
CVE-2026-5817-PoC
Docker Model Runner container-to-host RCE / Escape: A critical vulnerability that allows for container-to-host code execution in the Docker Model…

Docker Model Runner container-to-host RCE / Escape: A critical vulnerability that allows for container-to-host code execution in the Docker Model…

Static analysis security rules for vulnerability detection and audit-focused code review across Java, Go, Python, C#, Kotlin, PHP, Kubernetes, and…

Determine whether your compute is truly vulnerable to a specific vulnerability by accounting for all factors which affect *actual* exploitability…

Awesome free cloud native security learning labs. Includes CTF, self-hosted workshops, guided vulnerability labs, and research labs.

Hands-on homelab simulating the Log4Shell (CVE-2021-44228) vulnerability. Deploy Docker containers to build a vulnerable target and attacker machine,…

Whalescan is a vulnerability scanner for Windows containers, which performs several benchmark checks, as well as checking for CVEs/vulnerable…

Trivy for Kubernetes

Vulnerability Assessment Scanner with Report Generation

VULCONHUB provides access to files to build your own hands-on vulnerable container image to learn and practice security

Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

Professional vulnerability assessment report for Helm plugin path traversal risk, including technical analysis, impact, remediation, and mitigation…

PoC for CVE-2021-1056, related to GPU Container Security

CVE-2022-42889 (a.k.a. Text4Shell) RCE Proof of Concept

PoC for CVE-2017-8386 Git-Shell sandbox bypass vulnerability.

A HackIndex.io sandbox environment for the React2Shell vulnerability.

Sudo <= 1.8.14 Local Privilege Escalation and vulnerable container