
cved
A tool to manage vulnerable docker containers

A tool to manage vulnerable docker containers

OPA Gatekeeper constraint policy that detects and prevents Kubernetes clusters from being vulnerable to CVE-2020-8554, enforcing secure configuration.

Ansible role to patch RHSB-2022-001 Polkit Privilege Escalation - (CVE-2021-4034)

A Bash script to mitigate the CVE-2024-6387 vulnerability in OpenSSH by providing an option to upgrade to a secure version or apply a temporary…

Ansible playbook that applies a global JVM environment variable to mitigate the Log4j CVE-2021-44228 remote code execution vulnerability across all…

log4j mitigation work

CVE-2021-44228 log4j mitigation using aws wafv2 with ansible

Ansible role to check the CVE-2014-6271 vulnerability

Playbook update APT package because CVE-2019-3462

Shell script to detect and mitigate CVE-2024-6387 vulnerability by auditing system configurations and applying recommended fixes.

A script to change OpenSSL versions on Ubuntu to 1.1.1q to protect against CVE-2022-2097.

Check with Maven on CVE-2011-1475

This chef cookbook provides numerous security-related configurations, providing all-round base protection.

This Ansible role provides numerous security-related ssh configurations, providing all-round base protection.

Kubernetes DaemonSet that hot-patches JVMs to mitigate Log4j2 vulnerabilities (CVE-2021-44228, CVE-2021-45046) by disabling JNDI lookups, providing…

JetBrains TeamCity On-Premises CVE-2026-63077 Emergency Hardening & Patch Runbook Package

Authorized security-research lab reproducing CVE-2026-31852 (jellyfin/jellyfin-ios pull_request_target pwn in code-quality.yml) — isolated snapshot,…

CVE-2025-55752 CVE-2025-55754 CVE-2025-48988 CVE-2025-52520 CVE-2025-53506 CVE-2025-61795 CVE-2025-66614:Tomcat 8.5 已 EOL,终版 8.5.100。Apache 逐条声明「8.5…