
WebKitGTK-DND-Fix
Private research and validation for WebKitGTK file DnD restore (CVE-2025-13947 follow-up)

Private research and validation for WebKitGTK file DnD restore (CVE-2025-13947 follow-up)

Educational repository for learning and researching CVE-2026-59822 in controlled environments, with setup instructions and ethical use guidelines for…

CVE intelligence pipeline that compares public CVEs against Nuclei templates to identify missing vulnerability coverage, classify types, and rank…

Security-research lab: reproduction of CVE-2025-10894 (PR-title injection in GitHub Actions) — snapshot of nrwl/nx

Authorized security-research reproduction of CVE-2025-15617 (GHSA-6xqr-4q5g-xc7x): artipacked GITHUB_TOKEN leak in wazuh FIM Windows integration…

Audit and educational toolkit for CVE-2026-5006, a Vault templated-policy slash-injection vulnerability. Includes a read-only audit script generating…

Educational repository for researching CVE-2026-7899, providing setup instructions and resources for authorized security testing in isolated…

Controlled security-research lab reproducing CVE-2024-45798 (GHSA-h52q-xhg2-6jw8) in espressif/arduino-esp32 — poisoned-artifact pwn request via…

Authorized security-research lab reproducing CVE-2024-47179 (GHSL-2024-178): artifact-poisoning pwn-request chain in RSSHub docker-test workflows…

Curated repository of security advisories and vulnerability disclosures researched and reported by the author, including CVE-2025-70336, a stored XSS…

Defensive analysis of CVE-2026-9055, an unauthenticated privilege escalation in Amelia WordPress booking plugin. Provides root cause breakdown,…

CVE-2026-9335: KerasFileEditor and load_weights follow h5py ExternalLinks, disclosing arbitrary local HDF5 file contents in keras ≤ 3.14.0. Advisory…

Educational repository for CVE-2026-9586, providing proof-of-concept resources and guidance for authorized security research, vulnerability analysis,…

.NET 7 fork of seal-security-nuget-demo: same CVE-2024-21907 exploit story, retargeted for customers locked to .NET SDK 7.

Public repository of security advisories with detailed CVE write-ups, including vulnerability descriptions, severity ratings, and remediation…

Educational proof-of-concept for CVE-2026-0768, demonstrating exploitation techniques in controlled environments for authorized security research and…

PostgreSQL の全文検索(tsvector/tsquery)に見つかった範囲外書き込み脆弱性 CVE-2026-14662 を、修正前(18.4)と修正後(18.6)を Docker で並べて動かして検証した記録と発表資料

Educational proof-of-concept for CVE-2026-82329, providing vulnerability analysis and authorized testing resources in isolated environments.