GitHub Feed
Explore the latest GitHub repositories gathered from our feed. Entries are grouped by day to help you track developments quickly.
Sun Jul 13, 2025
Repository | Description | CVE | Metrics | Action |
---|---|---|---|---|
CVE-2025-27591-PoC | CVE-2025-27591 is a privilege escalation vulnerability that af | n/a | n/a | Visit Repo |
CVE-2025-47981-POC | SPNEGO Extended Negotiation (NEGOEX) Security Mechanism Remote Code Execution Vulnerability |
v3.1
CRITICAL
Score: 9.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
|
Visit Repo | |
Scan-CVE-2025-6058 | WPBookit <= 1.0.4 - Unauthenticated Arbitrary File Upload |
v3.1
CRITICAL
Score: 9.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
Visit Repo | |
CVE-2025-34085-Multi-target | Multi-target unauthenticated RCE scanner for CVE-2025-34085 af | WordPress Simple File List Plugin < 4.2.3 Unauthenticated Remote Code Execution |
v4.0
CRITICAL
Score: 10
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
|
Visit Repo |
Sat Jul 12, 2025
Repository | Description | CVE | Metrics | Action |
---|---|---|---|---|
CVE-2025-27591 | CVE-2025-27591 | n/a | n/a | Visit Repo |
CVE-2025-27591 | Below v0.8.1 - Local Privilege Escalation (CVE-2025-27591) - P | n/a | n/a | Visit Repo |
CVE-2025-24201-WebKit-Vulnerability-Detector-PoC- | CVE-2025-24201 WebKit Vulnerability Detector (PoC) | n/a | n/a | Visit Repo |
Detecting-and-Analyzing-CVE-2024-24919-Exploitation | Information disclosure |
v3.1
HIGH
Score: 8.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
|
Visit Repo | |
CVE-2024-1212 | LoadMaster Pre-Authenticated OS Command Injection |
v3.1
CRITICAL
Score: 10
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
|
Visit Repo | |
CVE-2025-25257 | n/a | n/a | Visit Repo | |
CVE-2025-6058 | WPBookit <= 1.0.4 - Unauthenticated Arbitrary File Upload | WPBookit <= 1.0.4 - Unauthenticated Arbitrary File Upload |
v3.1
CRITICAL
Score: 9.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
Visit Repo |
Student-Result-Management-System | CVE-2025-7534 | n/a | n/a | Visit Repo |
CVE-2025-25257-Exploit-Tool | Tool for detecting and exploiting CVE-2025-25257 in Fortinet F | n/a | n/a | Visit Repo |
Blackash-CVE-2025-25257 | CVE-2025-25257 | n/a | n/a | Visit Repo |
CVE-2011-2523 | Python exploit for vsftpd 2.3.4 - Backdoor Command Execution | n/a | n/a | Visit Repo |
CVE-2025-24813-Apache-Tomcat-RCE-PoC | Proof of Concept for CVE-2025-24813, a Remote Code Execution v | Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT | n/a | Visit Repo |
Fri Jul 11, 2025
Repository | Description | CVE | Metrics | Action |
---|---|---|---|---|
CVE-2025-38001 | Linux HFSC Eltree Use-After-Free - Debian 12 PoC | net_sched: hfsc: Address reentrant enqueue adding class to eltree twice | n/a | Visit Repo |
CVE-2025-52097 | Public Disclosure of CVE-2025-52097 | n/a | n/a | Visit Repo |
CVE-2025-0133-exploit | PAN-OS: Reflected Cross-Site Scripting (XSS) Vulnerability in GlobalProtect Gateway and Portal |
v4.0
MEDIUM
Score: 6.9
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/S:N/AU:N/R:U/V:D/RE:M/U:Amber
|
Visit Repo | |
vinieger-CVE-2025-48384-Dockerfile | PoC dockerfile image for CVE-2025-48384 | Git allows arbitrary code execution through broken config quoting |
v3.1
HIGH
Score: 8.1
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
|
Visit Repo |
CVE-2025-6514 | Documentation for CVE-2025-6514. MCP-Remote RCE. | OS command injection in mcp-remote when connecting to untrusted MCP servers |
v3.1
CRITICAL
Score: 9.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
|
Visit Repo |
sudo-chroot-CVE-2025-32463 | Rust PoC for CVE-2025-32463 (Sudo chroot Local PrivEsc) | n/a |
v3.1
CRITICAL
Score: 9.3
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
|
Visit Repo |
PHP-CGI-INTERNAL-RCE | Delivering PHP RCE (CVE-2024-4577) to the Local Network Server | n/a | n/a | Visit Repo |
CVE-2025-25257 | FortiWeb CVE-2025-25257 exploit | n/a | n/a | Visit Repo |
cve-default-exploitability | Data about Known Exploited Vulnerabilities with a focus on exp | n/a | n/a | Visit Repo |
CVE-2025-48799 | This PoC for CVE-2025-48799 demonstrates an elevation of privi | Windows Update Service Elevation of Privilege Vulnerability |
v3.1
HIGH
Score: 7.8
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
|
Visit Repo |
CVE-2025-5777 | Explore the CVE-2025-5777 vulnerability in Citrix NetScaler. T | NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread |
v4.0
CRITICAL
Score: 9.3
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L
|
Visit Repo |
CVE | CVE's POC | n/a | n/a | Visit Repo |
watchTowr-vs-FortiWeb-CVE-2025-25257 | n/a | n/a | Visit Repo | |
exploit_cve-2007-2447_again | just remeber how small mistake in santisize username could giv | n/a | n/a | Visit Repo |
CVE-2025-32462-32463-Detection-Script- | Critical Sudo Vulnerabilities Let Local Users Gain Root Access | n/a |
v3.1
LOW
Score: 2.8
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:N/I:L/A:N
|
Visit Repo |
CVE-2024-10915 | D-Link DNS-320/DNS-320LW/DNS-325/DNS-340L account_mgr.cgi cgi_user_add os command injection |
v4.0
CRITICAL
Score: 9.2
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
|
Visit Repo | |
CVE-2025-48384 | Git allows arbitrary code execution through broken config quoting |
v3.1
HIGH
Score: 8.1
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
|
Visit Repo | |
-CVE-2024-45352 | Technical report about a critical vulnerability in Xiaomi (CVE | Xiaomi smarthome application Webview has code execution vulnerability |
v3.1
HIGH
Score: 8.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
Visit Repo |
cve-2025-48384 | Git allows arbitrary code execution through broken config quoting |
v3.1
HIGH
Score: 8.1
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
|
Visit Repo | |
Ofbiz-RCE | CVE-2024-32113 & CVE-2024-38856 | n/a | n/a | Visit Repo |
CVE-2024-45352 | vulnerability in Xiaomi (CVE-2024-45352) | Xiaomi smarthome application Webview has code execution vulnerability |
v3.1
HIGH
Score: 8.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
Visit Repo |
CVE-2024-45352-xiaomi | Technical report about a critical vulnerability in Xiaomi (CVE | Xiaomi smarthome application Webview has code execution vulnerability |
v3.1
HIGH
Score: 8.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
Visit Repo |
rejetto-http-file-server-2.3.x-RCE-exploit-CVE-2014-6287 | This repository contains Detailed explanation and working poc | n/a | n/a | Visit Repo |
cve-2025-48384-hub | Git allows arbitrary code execution through broken config quoting |
v3.1
HIGH
Score: 8.1
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
|
Visit Repo | |
CVE-2025-45778 | A stored cross-site scripting (XSS) vulnerability in The Langu | n/a | n/a | Visit Repo |
xiaomi-cve-2024-45352 | Reporte técnico sobre vulnerabilidad crítica de Xiaomi | Xiaomi smarthome application Webview has code execution vulnerability |
v3.1
HIGH
Score: 8.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
Visit Repo |
Thu Jul 10, 2025
Repository | Description | CVE | Metrics | Action |
---|---|---|---|---|
CVE-2025-25257 | Unauthenticated SQL Injection in FortiWeb | n/a | n/a | Visit Repo |
CVE-2025-5777 | Citrix NetScaler Memory Leak PoC | NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread |
v4.0
CRITICAL
Score: 9.3
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L
|
Visit Repo |
CVE-2025-48384 | Git allows arbitrary code execution through broken config quoting |
v3.1
HIGH
Score: 8.1
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
|
Visit Repo | |
CVE-2024-27954 | WordPress Automatic plugin <= 3.92.0 - Unauthenticated Arbitrary File Download and SSRF vulnerability |
v3.1
CRITICAL
Score: 9.3
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N
|
Visit Repo | |
CVE-2024-25600 | WordPress Bricks Theme <= 1.9.6 - Unauthenticated Remote Code Execution (RCE) vulnerability |
v3.1
CRITICAL
Score: 10
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
|
Visit Repo | |
CVE-2025-48384-bad-nginx-submodule | Git allows arbitrary code execution through broken config quoting |
v3.1
HIGH
Score: 8.1
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
|
Visit Repo | |
CVE-2025-4578 | File Provider <= 1.2.3 - Unauthenticated SQL Injection | n/a | n/a | Visit Repo |
CVE-2025-53547-POC | CVE-2025-53547 one of poc code | n/a | n/a | Visit Repo |
GitHub Threat Intelligence at a Glance
Stay on top of cybersecurity developments and open-source research through daily GitHub updates.
Jump into a repository to explore code, documentation, or CVE-related insights.