NGINX RCE exploits
☆928Jul 25, 2026Updated 2 months ago
Alternatives and similar repositories for Nginx-Rift
Users that are interested in Nginx-Rift are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆5,019May 10, 2026Updated 4 months ago
- poc it like it's hot☆1,037Sep 25, 2026Updated last week
- Steal SSH host private keys and /etc/shadow via the ptrace_may_access mm-NULL bypass + pidfd_getfd. Pre-31e62c2ebbfd kernels.☆758May 15, 2026Updated 4 months ago
- EncryptInterceptor fail-open bypass in Apache Tomcat Tribes clustering leading to unauthenticated RCE via Java deserialization.☆69May 11, 2026Updated 4 months ago
- Full exploit code for CVE-2026-40369 - A Windows kernel arbitrary write vulnerability that allows browser sandbox escape from all browser…☆261May 18, 2026Updated 4 months ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Copy Fail (CVE-2026-31431): 9-year-old Linux kernel LPE found by Theori's Xint Code☆4,075Apr 29, 2026Updated 5 months ago
- Netlogon and CLDAP vulnerability research with a proof of concept.☆231Jun 2, 2026Updated 4 months ago
- Next.js v16.2.4 Security PoC Collection (CVE-2026-23870, CVE-2026-44575, CVE-2026-44579, CVE-2026-44574, CVE-2026-44578, CVE-2026-44573, …☆184May 12, 2026Updated 4 months ago
- Copy Fail 2: Electric Boogaloo☆328May 8, 2026Updated 4 months ago
- PoC: fully unprivileged container escape to node-level code execution on Kubernetes via CVE-2026-31431 page-cache corruption + shared ima…☆191May 7, 2026Updated 4 months ago
- A single archive of public exploit PoCs and vulnerability research writeups. At the time I post these, none have been reported. Feel free…☆5,150Sep 16, 2026Updated 2 weeks ago
- PACKET_EDIT_MEME.c (aka CVE-2026-46331): yet another page cache poisoning nightmare☆146Jun 17, 2026Updated 3 months ago
- Nginx Rewrite CVE Scan(CVE-2026-42945 nginx-rift CVE-2026-9256)☆34May 27, 2026Updated 4 months ago
- wp2shell (CVE-2026-63030 & CVE-2026-60137) - full RCE chain☆784Aug 11, 2026Updated last month
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- PoC Exploit for the NTLM reflection SMB flaw.☆720Feb 18, 2026Updated 7 months ago
- ☆445Apr 29, 2026Updated 5 months ago
- Grafana scanner with all public CVEs that I collected in one script to make grafana testing easier☆244Sep 11, 2026Updated 3 weeks ago
- Extract Windows credentials directly from VM memory snapshots and virtual disks☆1,628Updated this week
- ☆16Jun 26, 2026Updated 3 months ago
- windows api bug☆38May 24, 2026Updated 4 months ago
- ☆946Dec 26, 2025Updated 9 months ago
- ☆267Jul 8, 2025Updated last year
- ☆41Mar 12, 2025Updated last year
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Windows绕过EDR实现DumpHash☆263Jul 30, 2026Updated 2 months ago
- Linux kernel local privilege escalation via `skb_gro_receive()` SKBFL_SHARED_FRAG non-propagation (GRO layer flag stripping).☆39May 17, 2026Updated 4 months ago
- A Go implementation of copyfail (CVE-2026-31431)☆359May 1, 2026Updated 5 months ago
- exploit for CVE-2026-42945☆64May 14, 2026Updated 4 months ago
- CVE-2026-41940 — cPanel & WHM Authentication Bypass via Session-File CRLF Injection☆506May 1, 2026Updated 5 months ago
- PoC & Exploit for CVE-2025-32023 / PlaidCTF 2025 "Zerodeo"☆213Jul 6, 2025Updated last year
- CVE-2025-55182 POC☆792Dec 8, 2025Updated 9 months ago
- CVE-2026-46331☆34Jun 26, 2026Updated 3 months ago
- PoCs and exploits for CVEs discovered by NebuSec.☆1,683Sep 8, 2026Updated 3 weeks ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- https://heyitsas.im/posts/cifswitch☆67Jun 1, 2026Updated 4 months ago
- Proof-of-Concept exploit for CVE-2026-23918 (Apache mod_http2 double-free). Features multi-mode DoS (Rapid-RST, Slow-Drip) and passive RC…☆23May 6, 2026Updated 4 months ago
- High Fidelity Detection Mechanism for RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)☆2,453Dec 7, 2025Updated 9 months ago
- ☆43Jun 25, 2026Updated 3 months ago
- NextSSRF — CVE-2026-44578 Scanner & Exploit ║ ║ Next.js WebSocket Upgrade Handler SSRF☆77May 15, 2026Updated 4 months ago
- AdaptixC2 is a highly modular advanced redteam toolkit☆3,654Sep 24, 2026Updated last week
- ghost-bits-encoder 是一个面向 Woodpecker 的辅助插件,围绕 Ghost Bits / Unicode 高位包装思路,提供通用编解码、JSON 相关编码、URL 相关编码以及若干专项辅助能力。☆55May 15, 2026Updated 4 months ago