Drupal Core PostgreSQL SQL Injection PoC - CVE-2026-9082. Ethical PoC for the Drupal vulnerability allowing anonymous SQL injection through the JSON:API module on PostgreSQL-backed sites.
CVE-2026-9082 | SA-CORE-2026-004
An issue in Unistal Systems Pvt. Ltd. Protegent 360 v2.0.0.4 allows a local attacker to escalate privileges via a kernel mode driver.
An issue in Unistal Systems Pvt. Ltd. Protegent 360 v2.0.0.4 allows a local attacker to escalate privileges via the kernel driver pgsecdl.sys
An issue in Unistal Systems Pvt. Ltd. Protegent 360 v2.0.0.4 allows a local attacker to escalate privileges via the kernel driver pgsecdl.sys
An issue in Unistal Systems Pvt. Ltd. Protegent 360 v2.0.0.4 allows a local attacker to cause a denial of service in the kernel.
One-command scanner for the Mini Shai-Hulud npm supply-chain worm (CVE-2026-45321). Detect before rotating tokens.
Se realizó una evaluación de vulnerabilidades sobre una máquina virtual con Kali Linux utilizando un script detector para la vulnerabilidad Dirty Frag, asociada a las CVE-2026-43284 y CVE-2026-43500. Posteriormente se ejecutó un Proof of Concept (PoC) público escrito en lenguaje C para validar la posibilidad de realizar una escalada local
Docker Container Escape POC via mlx-metal importlib
A Go implementation of fragnesia (CVE-2026-46300)
A Go implementation of dirtyfrag (CVE-2026-43284 / CVE-2026-43500)
PoC for PwnKit / CVE-2021-4034 - Pkexec Local Privilege Escalation
PoC for PwnKit-CVE-2021-4034 - Pkexec Local Privilege Escalation
CVE-2026-42945 - NGINX Rift Toolkit
CVE-2026-31431-killed page-cache exploit — code exec into containers sharing the same image layer
The code for personally reproducing the corresponding vulnerability
PwnKit (CVE-2021-4034) Safe Checker This tool performs read-only checks and does not attempt exploitation.