GitHub Feed

Explore the latest GitHub repositories gathered from our feed. Entries are grouped by day to help you track developments quickly.

Sun Jul 13, 2025

Repository Description CVE Metrics Action
CVE-2025-27591-PoC CVE-2025-27591 is a privilege escalation vulnerability that af n/a n/a Visit Repo
CVE-2025-47981-POC SPNEGO Extended Negotiation (NEGOEX) Security Mechanism Remote Code Execution Vulnerability
v3.1 CRITICAL Score: 9.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
Visit Repo
Scan-CVE-2025-6058 WPBookit <= 1.0.4 - Unauthenticated Arbitrary File Upload
v3.1 CRITICAL Score: 9.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Visit Repo
CVE-2025-34085-Multi-target Multi-target unauthenticated RCE scanner for CVE-2025-34085 af WordPress Simple File List Plugin < 4.2.3 Unauthenticated Remote Code Execution
v4.0 CRITICAL Score: 10
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
Visit Repo

Sat Jul 12, 2025

Repository Description CVE Metrics Action
CVE-2025-27591 CVE-2025-27591 n/a n/a Visit Repo
CVE-2025-27591 Below v0.8.1 - Local Privilege Escalation (CVE-2025-27591) - P n/a n/a Visit Repo
CVE-2025-24201-WebKit-Vulnerability-Detector-PoC- CVE-2025-24201 WebKit Vulnerability Detector (PoC) n/a n/a Visit Repo
Detecting-and-Analyzing-CVE-2024-24919-Exploitation Information disclosure
v3.1 HIGH Score: 8.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Visit Repo
CVE-2024-1212 LoadMaster Pre-Authenticated OS Command Injection
v3.1 CRITICAL Score: 10
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Visit Repo
CVE-2025-25257 n/a n/a Visit Repo
CVE-2025-6058 WPBookit <= 1.0.4 - Unauthenticated Arbitrary File Upload WPBookit <= 1.0.4 - Unauthenticated Arbitrary File Upload
v3.1 CRITICAL Score: 9.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Visit Repo
Student-Result-Management-System CVE-2025-7534 n/a n/a Visit Repo
CVE-2025-25257-Exploit-Tool Tool for detecting and exploiting CVE-2025-25257 in Fortinet F n/a n/a Visit Repo
Blackash-CVE-2025-25257 CVE-2025-25257 n/a n/a Visit Repo
CVE-2011-2523 Python exploit for vsftpd 2.3.4 - Backdoor Command Execution n/a n/a Visit Repo
CVE-2025-24813-Apache-Tomcat-RCE-PoC Proof of Concept for CVE-2025-24813, a Remote Code Execution v Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT n/a Visit Repo

Fri Jul 11, 2025

Repository Description CVE Metrics Action
CVE-2025-38001 Linux HFSC Eltree Use-After-Free - Debian 12 PoC net_sched: hfsc: Address reentrant enqueue adding class to eltree twice n/a Visit Repo
CVE-2025-52097 Public Disclosure of CVE-2025-52097 n/a n/a Visit Repo
CVE-2025-0133-exploit PAN-OS: Reflected Cross-Site Scripting (XSS) Vulnerability in GlobalProtect Gateway and Portal
v4.0 MEDIUM Score: 6.9
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/S:N/AU:N/R:U/V:D/RE:M/U:Amber
Visit Repo
vinieger-CVE-2025-48384-Dockerfile PoC dockerfile image for CVE-2025-48384 Git allows arbitrary code execution through broken config quoting
v3.1 HIGH Score: 8.1
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
Visit Repo
CVE-2025-6514 Documentation for CVE-2025-6514. MCP-Remote RCE. OS command injection in mcp-remote when connecting to untrusted MCP servers
v3.1 CRITICAL Score: 9.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Visit Repo
sudo-chroot-CVE-2025-32463 Rust PoC for CVE-2025-32463 (Sudo chroot Local PrivEsc) n/a
v3.1 CRITICAL Score: 9.3
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Visit Repo
PHP-CGI-INTERNAL-RCE Delivering PHP RCE (CVE-2024-4577) to the Local Network Server n/a n/a Visit Repo
CVE-2025-25257 FortiWeb CVE-2025-25257 exploit n/a n/a Visit Repo
cve-default-exploitability Data about Known Exploited Vulnerabilities with a focus on exp n/a n/a Visit Repo
CVE-2025-48799 This PoC for CVE-2025-48799 demonstrates an elevation of privi Windows Update Service Elevation of Privilege Vulnerability
v3.1 HIGH Score: 7.8
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
Visit Repo
CVE-2025-5777 Explore the CVE-2025-5777 vulnerability in Citrix NetScaler. T NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
v4.0 CRITICAL Score: 9.3
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L
Visit Repo
CVE CVE's POC n/a n/a Visit Repo
watchTowr-vs-FortiWeb-CVE-2025-25257 n/a n/a Visit Repo
exploit_cve-2007-2447_again just remeber how small mistake in santisize username could giv n/a n/a Visit Repo
CVE-2025-32462-32463-Detection-Script- Critical Sudo Vulnerabilities Let Local Users Gain Root Access n/a
v3.1 LOW Score: 2.8
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:N/I:L/A:N
Visit Repo
CVE-2024-10915 D-Link DNS-320/DNS-320LW/DNS-325/DNS-340L account_mgr.cgi cgi_user_add os command injection
v4.0 CRITICAL Score: 9.2
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Visit Repo
CVE-2025-48384 Git allows arbitrary code execution through broken config quoting
v3.1 HIGH Score: 8.1
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
Visit Repo
-CVE-2024-45352 Technical report about a critical vulnerability in Xiaomi (CVE Xiaomi smarthome application Webview has code execution vulnerability
v3.1 HIGH Score: 8.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Visit Repo
cve-2025-48384 Git allows arbitrary code execution through broken config quoting
v3.1 HIGH Score: 8.1
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
Visit Repo
Ofbiz-RCE CVE-2024-32113 & CVE-2024-38856 n/a n/a Visit Repo
CVE-2024-45352 vulnerability in Xiaomi (CVE-2024-45352) Xiaomi smarthome application Webview has code execution vulnerability
v3.1 HIGH Score: 8.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Visit Repo
CVE-2024-45352-xiaomi Technical report about a critical vulnerability in Xiaomi (CVE Xiaomi smarthome application Webview has code execution vulnerability
v3.1 HIGH Score: 8.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Visit Repo
rejetto-http-file-server-2.3.x-RCE-exploit-CVE-2014-6287 This repository contains Detailed explanation and working poc n/a n/a Visit Repo
cve-2025-48384-hub Git allows arbitrary code execution through broken config quoting
v3.1 HIGH Score: 8.1
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
Visit Repo
CVE-2025-45778 A stored cross-site scripting (XSS) vulnerability in The Langu n/a n/a Visit Repo
xiaomi-cve-2024-45352 Reporte técnico sobre vulnerabilidad crítica de Xiaomi Xiaomi smarthome application Webview has code execution vulnerability
v3.1 HIGH Score: 8.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Visit Repo

Thu Jul 10, 2025

Repository Description CVE Metrics Action
CVE-2025-25257 Unauthenticated SQL Injection in FortiWeb n/a n/a Visit Repo
CVE-2025-5777 Citrix NetScaler Memory Leak PoC NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
v4.0 CRITICAL Score: 9.3
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L
Visit Repo
CVE-2025-48384 Git allows arbitrary code execution through broken config quoting
v3.1 HIGH Score: 8.1
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
Visit Repo
CVE-2024-27954 WordPress Automatic plugin <= 3.92.0 - Unauthenticated Arbitrary File Download and SSRF vulnerability
v3.1 CRITICAL Score: 9.3
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N
Visit Repo
CVE-2024-25600 WordPress Bricks Theme <= 1.9.6 - Unauthenticated Remote Code Execution (RCE) vulnerability
v3.1 CRITICAL Score: 10
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Visit Repo
CVE-2025-48384-bad-nginx-submodule Git allows arbitrary code execution through broken config quoting
v3.1 HIGH Score: 8.1
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
Visit Repo
CVE-2025-4578 File Provider <= 1.2.3 - Unauthenticated SQL Injection n/a n/a Visit Repo
CVE-2025-53547-POC CVE-2025-53547 one of poc code n/a n/a Visit Repo

GitHub Threat Intelligence at a Glance

Stay on top of cybersecurity developments and open-source research through daily GitHub updates.

Jump into a repository to explore code, documentation, or CVE-related insights.