
ai-ide-config-guard
Scan a repo for AI-IDE config files that can trigger RCE via Claude Code hooks, Cursor rules, MCP auto-registration. Detects CVE-2025-59536,…

Scan a repo for AI-IDE config files that can trigger RCE via Claude Code hooks, Cursor rules, MCP auto-registration. Detects CVE-2025-59536,…

🛡️ One-command scanner for CVE-2026-45321 — TanStack npm supply-chain attack

cve-2020-27955

Deserialization of untrusted data can occur in versions 0.17.0 to 1.14.2 of the client SDK of Allegro AI’s ClearML platform, enabling a maliciously…

Verify if your installed version of xz-utils is vulnerable to CVE-2024-3094 backdoor

Synthetic vulnerable Node.js HTTP server used as a demo target for the EXPOSURE vulnerability scanner, tracking CVE-2021-23797 with a one-click…

Synthetic demo target for EXPOSURE — CVE-2018-21268 (traceroute) + CVE-2018-3757 (pdf-image)

Docker Model Runner container-to-host RCE / Escape: A critical vulnerability that allows for container-to-host code execution in the Docker Model…

PoC for CVE-2025-54416 tj-actions/branch-names command injection

Some siimple checks to see if JAR file is vulnerable to CVE-2021-44228


Advisory for textract ⌯⌲ 15 000 weekly downloads

Test application for CVE-2018-1285 alert for Solarwinds DLLs

nltk.tokenize.StanfordSegmenter dynamically loads external Java .jar files without verification or sandboxing. If an attacker can supply or replace…

IOC checker for the TanStack/Mini Shai-Hulud npm supply chain attack (CVE-2026-45321)

PoC: CVE-2025-30065 incomplete fix bypass in Apache Parquet Java 1.15.1

Minimal test repository demonstrating Git's CVE-2017-1000117 recursive clone vulnerability for educational exploitation verification.