
log4noshell
A Java Agent that disables Apache Log4J's JNDI Lookup to mitigate CVE-2021-44228 ("Log4Shell").

A Java Agent that disables Apache Log4J's JNDI Lookup to mitigate CVE-2021-44228 ("Log4Shell").

一个验证对CVE-2023-51385

CVE-2022-46463 harbor公开镜像全自动下载脚本

🐺 Vulfy – Fast Rust based package version scanner

Generate malicious files using recently published bidi-attack (CVE-2021-42574)

Repository for CVE-2014-4936 POC code.

Proof-of-concept for CVE-2026-23001: demonstrates RCE through unsafe pickle deserialization in Hugging Face Transformers by crafting a malicious…

Inspect all of your Heroku apps for vulnerable versions of the JSON gem

Scanner: CVE-2026-31802 npm tar path traversal — Python checker for arbitrary file write via npm pack

Seal Security example — vulnerable npm app (EJS CVE-2022-29078) remediated to sealed versions; GitHub Actions + Jenkins integration

CVE-2025-53547 one of poc code

Code injection (RCE) in datamodel-code-generator via unvalidated customBasePath (CVE-2026-63720)

CVE-2026-45033 PoC for Claude Code, not Github Copilot. Worked for Haiku 4.5.

Path traversal (Tar Slip) in Cornac via _extract_archive (CVE-2026-43637)

Vulnerability Scanner for CVE-2022-42889 (Text4Shell)

Proof of concept for CVE-2024-24590

PoC for CVE-2026-5366: git argument injection in Prefect's GitRepository leading to RCE on the worker.

CVE-2018-17456漏洞复现(PoC+Exp)