
CVE-2023-23946
CVE affecting Git prior to versions 2.39.2, 2.38.4, 2.37.6, 2.36.5, 2.35.7, 2.34.7, 2.33.7, 2.32.6, 2.31.7, and 2.30.8.

CVE affecting Git prior to versions 2.39.2, 2.38.4, 2.37.6, 2.36.5, 2.35.7, 2.34.7, 2.33.7, 2.32.6, 2.31.7, and 2.30.8.

Proof-of-concept exploit for CVE-2017-1000117, demonstrating command injection via git clone to write arbitrary output to a web directory.

This repository contains a PoC for exploiting CVE-2024-32002, a vulnerability in Git that allows RCE during a git clone operation. By crafting…

PoC for CVE-2017-8386 Git-Shell sandbox bypass vulnerability.

Remote Access Shell for Windows (based on cve-2022-30190)

Proof-of-Concept for CVE-2024-52005: ANSI escape sequence injection in Git. Demonstrates incorrect 'not_affected' VEX claims in hardened container…

Test repository for verifying Git's CVE-2017-1000117 vulnerability and upgrading Git versions. Clone with --recursive to check safety.

A submodule to demonstrate CVE-2024-32002. Demonstrates arbitrary write into .git.

Hook for the PoC for exploiting CVE-2024-32002

Proof-of-concept exploit for CVE-2025-48384, demonstrating remote code execution via a crafted git clone operation on vulnerable Git versions.


Ronin is a Free and Open Source Ruby Toolkit for Security Research and Development. Ronin also allows for the rapid development and distribution of…

The system of record for AI-written software. A persistent graph of entities, relationships, changes, and provenance, so humans and AI agents see…

Demonstrates command injection via unsanitized Git URLs in CI/CD pipelines, including a vulnerable build script and exploit example for a critical…

Educational CTF demo demonstrating command execution via Git hooks by abusing core.hooksPath in automation workflows. Highlights local hook execution…

Proof-of-concept exploit script for CVE-2024-6387, a critical unauthenticated remote code execution vulnerability in OpenSSH. Designed for security…

Docker-based lab environment for reproducing and exploiting CVE-2026-1357, with step-by-step setup and Burp Suite exploitation guidance.

An inventory of tools and resources about CyberSecurity that aims to help people to find everything related to CyberSecurity.