
CVE-2025-9074
New vulnerability found in Docker. Credit for finding the vulnerability goes to Felix Boulet

New vulnerability found in Docker. Credit for finding the vulnerability goes to Felix Boulet

Docker-based lab for Apache CVE-2021-41773 path traversal and RCE exploitation with Python exploit script, demonstrating vulnerability analysis and…

Proof-of-concept exploit for CVE-2025-9074 demonstrating container-to-host file write via exposed Docker Engine API on Windows. For authorized…

Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

Runtime patches for algertc/alpr-dashboard: async logger fix and CVE-2025-29927 nginx mitigation

K8S and Docker Vulnerability Check for CVE-2024-3094

👀 A Kubernetes cluster resource sanitizer

Web interface for the nftables firewall on Linux, written in Go. The apply undoes itself after 120 seconds unless you confirm it — you cannot lock…

Docker base image with backported Host header validation fix for CVE-2025-12543 in Undertow 1.4.x, enabling secure deployment of WildFly 11…

A critical Remote Code Execution (RCE) vulnerability exists in Coolify's application deployment workflow. This flaw allows a low-privileged member to…

Pentester-focused Docker registry tool to enumerate and pull images

Public PoC and detector for CVE-2026-20896 ("Gitea Docker: One Header, Any User")

PoC Docker lab: chaining file upload bypass + stored XSS to create admin accounts. Educational resource for pen testers.

Test tool for CVE-2024-26144 that checks if web servers and CDNs improperly cache HTTP responses containing Set-Cookie headers, revealing cache…

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Workaround for CVE-2025-52881: Fixes Docker/Podman breakage in Proxmox LXC containers caused by AppArmor incompatibility with runc 1.2.7+. Universal…

Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…