DVWA Web Security Labs 项目介绍 本项目基于 DVWA(Damn Vulnerable Web Application)搭建 Web 安全靶场环境,按照学习顺序完成多个常见 Web 基础漏洞的复...
No description provided...
CVE-2026-38422: Remote Code Execution via Combined Buffer Overflows in Tasmota fetchjpg CVE: CVE-2026-38422 Severity: Critical CVSS 9.8 Product: Ar...
POCCVE-2024-36420 Local reproduction lab and nuclei template draft for CVE-2024-36420 affecting Flowise. Summary CVE-2024-36420 is an arbitrary fil...
CVE-2026-38426: strcpy Stack Buffer Overflow in Tasmota fetchjpg boundary40 CVE: CVE-2026-38426 Severity: Critical CVSS 9.8 Product: Arendst Tasmot...
CVE-2026-38427: Integer Wraparound → Heap Buffer Overflow in Tasmota fetchjpg CVE: CVE-2026-38427 Severity: Critical CVSS 9.8 Product: Arendst Tasm...
TP-Link TL-WR841N v14 — Authenticated OS Command Injection RCE + CSRF Chain --- TL;DR The diagnostic module IPPINGDIAG / TRACEROUTEDIAG in TL-WR841...
NGINX Rift — CVE-2026-42945 漏洞扫描与验证工具 NGINX Rift 是一款针对 CVE-2026-42945(NGINX ngxhttprewritemodule 堆溢出漏洞)的开源扫描与验证工具。...
CVE-2026-47101 — LiteLLM Privilege Escalation via /key/generate + /user/update LiteLLM v1.82.6(v1.83.14 之前版本)的 /key/generate 端点允许低权限...
SLEY — PinTheft PoC CVE-2026-43494 Proof of concept — uid=1000raken → uid=0root after ./sley on WSL2 6.6.87.2-microsoft-standard-WSL2 Single-file p...
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.