Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.6 80480966-7D9A-

Exploit for Server-Side Request Forgery in Vercel Next.Js_80480966-7D9A-5919-9D62-D32D8BB7511D

╔══════════════════════════════════════════════════════════════╗ ║ NextSSRF — CVE-2026-44578 Scanner & Exploit ║ ║ Next.js WebSocket Upgrade Handle...

N/A N/A GITHUBEXPLOIT
NONE 17152BDC-1194-

copyfail-exploit_17152BDC-1194-5229-A3F7-EFE51BDF70A8

No description provided...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.2 CED8F6B1-8F4A-

Exploit for CVE-2026-42945_CED8F6B1-8F4A-5CA0-9406-3E0DD1C64695

CVE-2026-42945 实际风险评估脚本 针对 CVE-2026-42945(Nginx Rift)的本地风险评估工具。不同于直接告诉你"版本受影响就危险",这个脚本会逐层检查真正决定...

N/A N/A GITHUBEXPLOIT
HIGH 7.3 3B2DFEAF-D587-

Exploit for Insecure Default Initialization of Resource in Praison Praisonai_3B2DFEAF-D587-55D4-9E48-CCF6F17C06AC

⚠️ Security Research & Legal Disclaimer 📌 Purpose of This Repository This repository is provided strictly for educational, academic, and authorize...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.2 249FFDA3-A061-

Exploit for CVE-2026-42945_249FFDA3-A061-5AA5-90A9-00C4EA088C4C

CVE-2026-42945 — NGINX Rewrite Module 堆缓冲区溢出 → RCE RCE 已确认成功 — 通过堆溢出 + GDB 进程注入,在 NGINX / OpenResty worker 进程中执行任意命令...

N/A N/A GITHUBEXPLOIT
HIGH 7.5 AE196C5F-21BA-

OrchidMantis_AE196C5F-21BA-5E96-9153-ECDA5BF61BA2

Orchid Mantis A Framework for ZKPoX — Zero-Knowledge Proofs of Exploit Status: experimental v0.1. Bundle format, predicate library, and verifier se...

N/A N/A GITHUBEXPLOIT
NONE 3D01EEDF-77BF-

Vulnerability-Exploit-Correlation-Engine_3D01EEDF-77BF-59C4-B3FF-BA52FA9A53AD

Vulnerability-Exploit-Correlation-Engine Passive-analysis CLI tool that ingests Nmap XML output or raw service banners, queries the NIST NVD API fo...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.2 C954251A-D5DC-

Exploit for CVE-2026-42945_C954251A-D5DC-581F-99D7-C85DE9846EF2

AI-Assisted Rediscovery of CVE-2026-42945 in nginx This repository documents a reproducible AI-assisted vulnerability rediscovery experiment agains...

N/A N/A GITHUBEXPLOIT
NONE 317E7C82-DB8A-

Apache-Shiro-RememberMe-RCE_317E7C82-DB8A-5733-AC2A-587546CDD299

No description provided...

N/A N/A GITHUBEXPLOIT
CRITICAL 10 9F4FA4D1-83CA-

Exploit for Missing Authentication for Critical Function in Flowiseai Flowise_9F4FA4D1-83CA-502D-B410-EA396C1A02AC

Silentium — HackTheBox Writeup Platform: HackTheBox OS: Linux Tags: CVE-2025-58434, Flowise Account Takeover, CVE-2025-59528, Flowise RCE, Docker, ...

N/A N/A GITHUBEXPLOIT