Y4Sec-Team / CVE-2023-21939
JDK CVE-2023-21939
☆95Updated last year
Alternatives and similar repositories for CVE-2023-21939:
Users that are interested in CVE-2023-21939 are comparing it to the libraries listed below
- JDBC Attack Tricks☆137Updated last year
- A list for Spring Security☆119Updated last year
- 抽离出 utf-8-overlong-encoding 的序列化逻辑,实现 2 3 字节加密序列化数组☆118Updated 10 months ago
- The Poc for CVE-2024-20931☆72Updated 11 months ago
- ☆137Updated 2 years ago
- CVE-2022-25845(fastjson1.2.80) exploit in Spring Env!☆80Updated 2 months ago
- Web Cache Poisoning Vulnerability Scanner☆34Updated this week
- 基于污点分析和模拟栈帧技术的JSP Webshell检测☆45Updated 3 weeks ago
- A heapdump leaks Shiro key causing RCE vulnerability environment.☆53Updated 8 months ago
- 用java实现构造openwire协议,利用activeMQ < 5.18.3 RCE 回显利用 内存马注入☆262Updated last year
- My security presentations☆28Updated last year
- Java Agent memory horse scanner combined with Call Graph modus☆62Updated 2 years ago
- 多组件客户端☆73Updated 4 months ago
- pyyso is a Python package that generate java serialized poc. Including CommonsCollections1-7, JDK7u21, JDK8u20, ldap for jndi, shiro-550,…☆50Updated 2 years ago
- A tool specifically designed for Kubernetes environments aims to efficiently and automatically discover hidden vulnerable APIs within clu…☆71Updated last month
- 之前方便自己研究RASP原理和绕过时顺手写的,用于快速启动和重置RASP环境☆54Updated 3 months ago
- SpringBootAdmin-thymeleaf-SSTI which can cause RCE☆77Updated last year
- A Go library for generating Java deserialization payloads.☆158Updated 4 months ago
- EndpointSearch 是一个探测云服务端点的扫描器。Endpoint Search is a sophisticated reconnaissance utility designed to discreetly identify and enumerate end…☆72Updated 2 months ago
- A vul-finder for loading CPG and automated finding vul-call-chains☆37Updated 3 months ago
- ☆92Updated last year
- 如果反序列化过程中使用resolveClass拉黑了TemplatesImpl如何绕过☆49Updated last year
- Apache RocketMQ 远程代码执行漏洞(CVE-2023-33246) Exploit☆79Updated last year
- A IntelliJ Plugin for Tabby to Find Vulnerabilities Easily☆30Updated 2 months ago
- A malicious LDAP server for JNDI injection attacks☆51Updated last year
- A Java Route Collection Tool☆88Updated 5 months ago
- 《Spring漏洞研究》☆44Updated 2 years ago
- ☆54Updated last year
- cve-2022-34169 延伸出的Jdk Xalan的payload自动生成工具,可根据不同的Jdk生成出其所对应的xslt文件☆89Updated 2 years ago
- 如何将Java反序列化Payload极致缩小☆48Updated 3 years ago