
vex8s
Suppress vulnerabilities applying Kubernetes context to scans

Suppress vulnerabilities applying Kubernetes context to scans

A tool to reverse engineer and inspect the RPM and APT databases to list all the packages along with executables, service, versions and CVE.

Exploits CVE-2026-21005 by poisoning Docker Registry V2 Schema 1 manifests via unauthenticated pushes, enabling tag overwrite and supply-chain…

Tracking IPV6_FRAG_ESCAPE (CVE-2026-53362, CVE-2026-53366), the IPv6 fragmentation container escape

Crafting raw TCP/IP packets to send to poorly configured Kubernetes servers - CVE-2020-8558 PoC

Docker images of Xpdf 4.04, vulnerable to CVE-2022-30524

OPA Gatekeeper-based policy templates to mitigate CVE-2020-8554 by restricting Kubernetes Service external IPs to an allow list, preventing traffic…

Kubernetes-native CVE-2026-31431 mitigation with automated kernel module blocking, runtime Falco detection rules, and bashible-based node…

Sample project that uses VEX to supress CVE-2024-29415.

Proof-of-concept exploit for CVE-2024-38819, demonstrating path traversal via symbolic links and percent-encoding in Spring Boot static file routing.

Log4Shell (CVE-2021-44228) docker lab

Proof of Concept code for proving CVE-2024-40635 vulnerability

Jenkins plugin providing shared API for Docker credential management, registry authentication, daemon configuration, and image fingerprinting across…

Open-source, cross-platform, multi-purpose security auditing tool

Vulnerability scanner based on vulners.com audit API