
CVE-2018-6574
Exploit for remote command execution in Golang go get command.

Exploit for remote command execution in Golang go get command.

.NET 7 fork of seal-security-nuget-demo: same CVE-2024-21907 exploit story, retargeted for customers locked to .NET SDK 7.

CVE-2025-55182 Detector. Find which of your GitHub repositories are exposed to the critical React/Next.js RCE vulnerability and generate a clean…

A vulnerability scanner for container images and filesystems

Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration

A source code static analysis platform for AppSec enthusiasts.

Git diff for SBOMs—compare CycloneDX, SPDX, and Syft documents, detect tampering, and gate CI.

A Public Package Scanner for The Community

Code injection (RCE) in datamodel-code-generator via unvalidated customBasePath (CVE-2026-63720)

Security Scanner for Agent Skills

Runtime-aware SCA — proves which CVEs are actually reachable, not just installed.

PoC for CVE-2026-4660: arbitrary file read via git checkout in hashicorp/go-getter

Log4j 2 (CVE-2021-44228) vulnerability scanner for Windows OS

High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.

Go library and CLI for managing database schema migrations with support for PostgreSQL, MySQL, SQLite, and Cassandra, including up/down migration…

go CVE-2023-24538 patch issue resolver - Dunfell

go CVE-2023-24538 patch issue resolver - Kirkstone

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more