
gha-lab-a815a82f03-1
GitHub Actions workflow sandbox for CVE-2026-45132 reproduction

GitHub Actions workflow sandbox for CVE-2026-45132 reproduction

Find log4j for CVE-2021-44228 on some places * Log4Shell

Malicious Maven pom.xml that uses "groovy-maven-plugin" to get RCE

Sean's Surf & Skate Co. — Spring Boot storefront with a vulnerable SnakeYAML dep (CVE-2022-1471) for Seal Security demos

Seal Security example — vulnerable Maven app (SnakeYAML CVE-2022-1471) remediated to sealed versions; GitHub Actions + Jenkins integration

CVE-2024-24787 Proof of Concept

Production Ready Steps for Remediating a openssl CVE(https://nvd.nist.gov/vuln/detail/cve-2021-3712) on EOL CentOS7 box

Seal Security example — vulnerable pip app (PyYAML CVE-2020-14343) remediated to sealed versions; GitHub Actions + Jenkins integration

Spring Boot app with log4j 2.14.1 (CVE-2021-44228) — VulnFix agent test target

A proof of concept for the git vulnerability CVE-2024-32002

CVE-2026-32662: Active Debug Code in Production — Gardyn Home Kit (ICSA-26-055-03)

Scan a repo's .claude/ config (settings.json hooks, MCP servers, env, allowed-tools) for the RCE & API-key-exfiltration footguns (CVE-2025-59536,…

Proof-of-concept demonstrating a path traversal vulnerability (CVE-2026-35204) in Helm plugin installation, allowing arbitrary file write via crafted…

Proof-of-concept demonstrating arbitrary command execution via malicious virtual environment activation scripts in PyCharm before 2020.3.4,…

Azure IoT Hub where exposure of an owner-level Shared Access Key enables unauthenticated remote code execution (RCE) against connected IoT devices.…

Docker-based reproduction environment for CVE-2021-32804, a path traversal vulnerability in node-tar affecting npm, with step-by-step exploitation…

CVE-2026-25541 impact analysis for Fuel infrastructure (bytes crate integer overflow)

Advisory for pdf-image ⌯⌲ 10 000 weekly downloads