
CVE-2024-24590-ClearML-RCE-CMD-POC
Python exploit for CVE-2024-24590 that uploads a malicious pickle file to ClearML, enabling reverse shell or custom command execution on the target…

Python exploit for CVE-2024-24590 that uploads a malicious pickle file to ClearML, enabling reverse shell or custom command execution on the target…

Encode and decode source code files using Unicode bidi control characters to exploit CVE-2021-42574, enabling invisible injection of malicious logic…

Proof-of-concept for CVE-2026-23001: demonstrates RCE through unsafe pickle deserialization in Hugging Face Transformers by crafting a malicious…

Proof-of-concept exploit for CVE-2024-24590 demonstrating dynamic pickle artifact upload to ClearML with configurable reverse shell execution via…

Proof-of-concept exploit for CVE-2024-32002, a Git submodule vulnerability enabling arbitrary code execution via crafted repositories and symlinks.

Proof-of-concept exploit for CVE-2020-27955, demonstrating remote code execution via Git LFS on Windows by crafting a malicious repository.

Deserialization of untrusted data can occur in versions 0.17.0 to 1.14.2 of the client SDK of Allegro AI’s ClearML platform, enabling a maliciously…

CVE-2018-6574 this vulnerability impacts Golang go get command and allows an attacker to gain code execution on a system by installing a malicious…

Exploit for CVE-2018-6574, a remote code execution vulnerability in Go's 'go get' command, demonstrating typosquatting to execute code on developers'…