

CVE-2026-42945 Nginx Rift

Nginx CVE-2019-20372 PoC, Unauthenticated File Upload Exploit

PoC of CVE-2025-60752

Local read-only scanner for CVE-2026-42945 (NGINX Rift) that checks NGINX, OpenResty, and Tengine instances for vulnerable rewrite configurations…

Mastodon Streaming Server Security Vulnerability PoC - CVE-2026-Mastodon-Streaming-CRLF-Injection

I Found a Zero-Day Vulnerability in OpenClaw — Here’s How It Went

Proof-of-concept reproduction of an nginx heap overflow and info leak (CVE-2026-42533) with two attack surfaces, debug analysis, and a full RCE chain.

Semgrep rules that flag header-trust auth bypass patterns (CVE-2025-29927 class). Companion to bk-security.github.io.

Blue Team lab focused on analyzing Apache web access logs to detect directory brute forcing and web scanning activity.

这是一个面向防守和内网排查的 Apache ActiveMQ Classic 暴露面检测工具,用于辅助评估 CVE-2026-34197 相关风险。

这是一个面向防守和内网排查的 CVE-2026-42945 静态检测工具,用于检查 NGINX ngx_http_rewrite_module 相关配置是否存在高风险 rewrite 组合。

Centralized Wazuh SCA Assessment for CVE-2026-42945 on NGINX Servers

Here is a simple but effective exploit for CVE-2025-29927.

Proof-of-concept for CVE-2022-2466 demonstrating unauthenticated GraphQL request context termination in Quarkus/SmallRye, bypassing authorization…

CVE-2022-41741/742 Nginx Vulnerability Scanner

a dart package to analyze CVE-2025-55182 react2shell

Reproducible AI-assisted vulnerability rediscovery of CVE-2026-42945 in nginx, including technical analysis, PoC trigger, and patch validation for…