
ClearML-CVE-2024-24590
Proof of concept for CVE-2024-24590

Proof of concept for CVE-2024-24590

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Demonstrates exploitation of CVE-2017-8046 in a Spring Boot application, including a SpEL injection payload and dependency-check verification for…

Seal Security example — vulnerable npm app (EJS CVE-2022-29078) remediated to sealed versions; GitHub Actions + Jenkins integration

Seal Security example — vulnerable Maven app (SnakeYAML CVE-2022-1471) remediated to sealed versions; GitHub Actions + Jenkins integration

Seal Security example — vulnerable pip app (PyYAML CVE-2020-14343) remediated to sealed versions; GitHub Actions + Jenkins integration

ClusterImagePolicy demo for cve-2022-42889 text4shell

Proof-of-concept demonstrating arbitrary code execution in Orval via malicious OpenAPI fields, with setup, exploit steps, and remediation guidance.

Educational demonstration of CVE-2007-4559 Python tarfile symlink attack with a script showing why os.path.realpath() fails to prevent extraction…

The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.

AI-native code security auditor on AgentField that proves exploitability with verdicts, traces, and actionable evidence.

PoC demonstrating SHA-1 code signing forgery and missing High Entropy ASLR in CyberGhostVPN installer, enabling trust bypass and predictable memory…