
CVE-2026-2395
Proof-of-concept demonstrating a race condition in the tar npm package (v7.5.3) causing file collisions during parallel extraction, leading to data…

Proof-of-concept demonstrating a race condition in the tar npm package (v7.5.3) causing file collisions during parallel extraction, leading to data…

Python Wheel File Security Scanner — scan .whl files for security issues before installation. Detects path traversal (CVE-2026-24049), RECORD…

PoC for CVE-2026-4660: arbitrary file read via git checkout in hashicorp/go-getter

Security advisory and bilingual write-up detailing CVE-2026-30039, a symlink traversal vulnerability in rarfile affecting versions up to 4.2, leading…

Proof of concept and technical write-up for CVE-2026-31802, a symlink path traversal in npm tar allowing arbitrary file overwrite outside extraction…

Proof-of-concept exploit for CVE-2026-21436, demonstrating path traversal in Solus OS eopkg package manager allowing arbitrary file write during…

Found a 0-Day in Ghidra: Shared Project File Became a Code Execution Vector

VEX Repository Specification

RPM DB bindings for go

Advisory for textract ⌯⌲ 15 000 weekly downloads

Portable binary distribution of xz-utils 5.8.3 with CVE-2024-3094 verification. Provides static builds for Linux, macOS, and Windows for compression…

Apache RAT (Release Audit Tool) Gradle Plugin

Multi-language detection scripts for CVE-2025-55182 (React2Shell) that scan package.json files to identify vulnerable React dependency versions and…

PoC for CVE-2026-5366: git argument injection in Prefect's GitRepository leading to RCE on the worker.

Scanner: CVE-2026-31802 npm tar path traversal — Python checker for arbitrary file write via npm pack

Local Bytecode Scanner for the Log4JShell Vulnerability (CVE-2021-44228)

Discover and remediate Log4Shell vulnerability [CVE-2021-45105]

CVE-2025-53547 one of poc code