
CVE-2025-6514
mcp-remote exposed to OS command injection

mcp-remote exposed to OS command injection

Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.

Cross-platform Node.js library to retrieve MAC addresses per network interface on Linux, macOS, and Windows, with async and sync APIs.

Downloads and aggregates CVSS, EPSS, and CISA known exploited vulnerability data into unified JSON/CSV files and a SQLite database. Enriches…

NotebookLM on steroids — purpose-built for security researchers.

Tools collection to explore CVE and theirs associated data.

A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC

CVE querying library and utility that uses a local store syncing directly to the National Vulnerability Database

golang.org/x/text v0.33.0 backport of CVE-2026-56852 (GO-2026-5970) for Go 1.24

TinyXML 2.6.2 with fixes for CVE-2021-42260 and CVE-2023-34194

A plugin for DataSurgeon that Extracts CVE Numbers From Text (e.g: CVE-2021-56789)

SheetJS xlsx 0.18.5 fork with CVE-2023-30533 and CVE-2024-22363 fixes

Clone of suds 0.4 + suds-0.4-CVE-2013-2217.patch

Fast, simple library in Go to fetch CVEs from the National Vulnerability Database feeds

Defense-in-depth bundle for MCP stdio servers: drop-in guardExec/guardSpawn wrappers, AST audit CLI, reference MCP server. Closes the Ox-Security…

Shell script to detect and automatically patch the Bash Shellshock vulnerability (CVE-2014-6271) on macOS systems.

Search and download public exploits from the Vulners database — online, or fully offline from a local SQLite FTS5 index.