CVE-2026-42945 NGINX 堆溢出漏洞扫描与验证工具
CVE-2026-0091, play with an issue in android window management to perform arbitrary code execution in Launcher process from adb
This repository documents a defensive backport workflow for teams running ingress-nginx controller images that still bundle an NGINX version affected by CVE-2026-42945. It is not an official NGINX or k8s ingress-nginx release. Treat it as an emergency mitigation pattern you can inspect, rebuild, and validate while you wait for an official fixed
CVE-2026-39987 Exploitation Tool - Marimo < 0.23.0 Pre-Auth RCE (WebSocket)
Lab detection exercise for DirtyFrag (CVE-2026-43284) - Linux kernel privilege escalation via xfrm-ESP page cache corruption. Full write-up covering exploit execution, detection gaps, and corrected EQL rules using Elastic Stack
Automated scanner & post-exploitation toolkit for CVE-2026-41940 — cPanel & WHM root authentication bypass via session-file CRLF injection
Tracking the nginx CVE-2026-9256 rewrite-module heap overflow
Drupal CVE-2026-9082 Blind SQL Injection Checker (Single & Bulk)
CVE-2025-55182 — Unauthenticated RCE in React Server Components (React2Shell). CVSS 10.0 exploit tool for authorized penetration testing.
Langflow remote code execution exploit
cPanel user run arbitrary scripts as root
Unauthenticated Privilege Escalation CVE-2026-9018: Easy Elements for Elementor
CVE-2026-23813 — AOS-CX pre-auth bypass via nginx regex. Detection script, bypass demo, config-disclosure PoC, and IDS rules.
CVE-2026-41091 / CVE-2026-45498 Microsoft Defender vulnerability scanner
CVE-2026-42208 - LiteLLM SQL Injection vulnerability scanner for BerriAI LiteLLM proxy instances