
CVE-2025-34159
A critical Remote Code Execution (RCE) vulnerability exists in Coolify's application deployment workflow. This flaw allows a low-privileged member to…

A critical Remote Code Execution (RCE) vulnerability exists in Coolify's application deployment workflow. This flaw allows a low-privileged member to…

nginx 1.15.10 patch against cve-2021-23017 (ingress version)



A minimal test tool to help detect annotation injection vulnerabilities in Kubernetes NGINX Ingress controllers. This script sends a crafted…


AI coding agents that can't exfiltrate secrets or merge their own PRs.

Simple webhook to block exploitation of CVE-2022-0811

Test utility for cve-2018-1002105

ClusterImagePolicy demo for cve-2022-42889 text4shell

Getting a handle on container security

Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container

A terminal-based AWS Security Scanner with 102+ security checks across VPC, IAM, S3, CloudTrail, containers (ECS/EKS), and AI attack detection.…

CVE-2024-10220 reveals a critical flaw in Kubernetes’ deprecated gitRepo volume type, allowing attackers to execute arbitrary commands via malicious…

CVE-2026-55726: Publicly Listable Azure Blob Storage Container (device logs) - Gardyn (ICSA-26-183-03)

Suppress vulnerabilities applying Kubernetes context to scans

Checks your files for existence of Unicode BIDI characters which can be misused for supply chain attacks. See CVE-2021-42574

👀 A Kubernetes cluster resource sanitizer