Exploiting CVE-2017-7525 demo project with Angular7 frontend and Spring.
☆18Feb 21, 2019Updated 7 years ago
Alternatives and similar repositories for Demo-Exploit-Jackson-RCE
Users that are interested in Demo-Exploit-Jackson-RCE are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- CVE-2020-36188 &&Jackson-databind RCE☆11Jan 11, 2021Updated 5 years ago
- CVE-2020-36184 && Jackson-databind RCE☆15Jan 11, 2021Updated 5 years ago
- ☆16Jun 22, 2022Updated 4 years ago
- ☆19Mar 27, 2020Updated 6 years ago
- jre8u20 gadget☆34May 23, 2021Updated 5 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- CVE-2019-12384 漏洞测试环境☆21Nov 16, 2022Updated 3 years ago
- CVE-2020-9547:FasterXML/jackson-databind 远程代码执行漏洞☆23Mar 2, 2020Updated 6 years ago
- PoC for CVE-2021-43557☆22Nov 22, 2021Updated 4 years ago
- An example project that exploits the default typing issue in Jackson-databind via Spring application contexts and expressions☆122Jan 9, 2018Updated 8 years ago
- CVE-2020-8840:FasterXML/jackson-databind 远程代码执行漏洞☆37Feb 24, 2020Updated 6 years ago
- GQL Burp Extension☆21Sep 16, 2022Updated 3 years ago
- Struts2の脆弱性S2-045, S2-055 および Jackson の脆弱性 CVE-2017-7525, CVE-2017-15095 の調査報告☆107Dec 13, 2017Updated 8 years ago
- A Golang implementation of the Jackson-Smile data format☆12Jan 28, 2026Updated 5 months ago
- ☆14May 26, 2026Updated last month
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- 通过censys搜索引擎中的ssl证书信息进行资产探测及子域名收集☆11Apr 15, 2019Updated 7 years ago
- Jackson nested property filter that performs with almost no overhead☆11Nov 18, 2016Updated 9 years ago
- Deserialization support for Scala case classes, including proper handling of default values.☆11Apr 5, 2016Updated 10 years ago
- Spring Cloud SnakeYAML 反序列化一键注入cmdshell和reGeorg☆136Sep 24, 2020Updated 5 years ago
- 一些结合第三方组件的Fastjson POC,在1.2.48以后版本中陆续被添加至黑名单。☆56Oct 29, 2019Updated 6 years ago
- Experimenting protostuff☆13Mar 5, 2016Updated 10 years ago
- A comparison of JSON frameworks: JSON Binding, Jackson, Gson, Boon☆14Oct 30, 2017Updated 8 years ago
- CVE-2022-37042 Zimbra Auth Bypass leads to RCE☆29Dec 9, 2022Updated 3 years ago
- Exploiting Jackson deserialization vulnerability with 3 gadgets☆10May 3, 2021Updated 5 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- CVE-2018-19276 - OpenMRS Insecure Object Deserialization RCE☆16Mar 11, 2019Updated 7 years ago
- The PoC files for ethereum client's JSON-RPC DNS Rebinding☆35Jan 22, 2018Updated 8 years ago
- A Docker Image For the Open Vulnerability Assessment Scanner (OpenVAS)☆19Aug 18, 2023Updated 2 years ago
- Multi-module project that contains Jackson-based "new" Jakarta-RS (nee "JAX-RS" -- ones under `jakarta.ws.rs`) providers for JSON, XML, Y…☆19Jul 10, 2026Updated last week
- couchdb remote command exec.☆14Mar 27, 2018Updated 8 years ago
- Documents generation system in docx, odt, pdf, xhtml and pptx formats based on templates☆16Jun 6, 2022Updated 4 years ago
- XXE injection (file disclosure) exploit for Apache OFBiz < 16.11.04☆13Oct 16, 2018Updated 7 years ago
- Amazon Web Services (AWS) Microsoft Threat Modeling Tool Template☆16Aug 19, 2021Updated 4 years ago
- GreHack 2021 CodeQL for Java workshop☆73Nov 19, 2021Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- REST API using: Spring Boot + Hibernate + MySQL + Jackson + Retrofit☆10Jan 22, 2016Updated 10 years ago
- ☆14May 21, 2017Updated 9 years ago
- ☆27Dec 5, 2019Updated 6 years ago
- An interactive TLS-capable intercepting HTTP [& QUIC] proxy for penetration testers and software developers.☆15Jan 16, 2025Updated last year
- A fairly simple music player for Mac OSX☆14Feb 26, 2025Updated last year
- The Jackson Laboratory Colony Management System☆14Mar 27, 2020Updated 6 years ago
- GitHub Action安全工具,可以将Action Secrets还原拿到明文,用于证明Secrets并不是绝对的安全。(测试通过,放心使用,再有问题来issues区锤我...)☆24Sep 12, 2022Updated 3 years ago