securingdev / custom-codeql-queriesLinks
Custom / Experimental CodeQL queries
☆37Updated 3 years ago
Alternatives and similar repositories for custom-codeql-queries
Users that are interested in custom-codeql-queries are comparing it to the libraries listed below
Sorting:
- My CodeQL queries collection☆98Updated last year
- GreHack 2021 CodeQL for Java workshop☆75Updated 3 years ago
- ☆71Updated 3 years ago
- Unofficial Dockerfile and scripts for building CodeQL databases for the OpenJDK☆49Updated last year
- A project demonstrating an app that is vulnerable to Spring Security authorization bypass CVE-2022-31692☆36Updated 2 years ago
- Dependencies with Log4j2 Checklist☆35Updated 3 years ago
- Several XStream gadgets ported from ysoserial☆33Updated 3 years ago
- An example repository that demonstrates how the build custom CodeQL bundles that include query customizations through the `Customizations…☆25Updated 3 years ago
- ☆33Updated 2 years ago
- 收集规则☆30Updated 2 years ago
- ☆73Updated 3 years ago
- Apache/Alibaba Dubbo <= 2.7.3 PoC Code for CVE-2021-25641 RCE via Deserialization of Untrusted Data; Affects Versions <= 2.7.6 With Diffe…☆52Updated 4 years ago
- CodeQL model generation for Go.☆17Updated 4 years ago
- ☆29Updated 3 years ago
- Ready to use docker image for CodeQL☆90Updated last year
- CodeQL extractor for java, which don't need to compile java source☆10Updated 2 years ago
- POC for leaking java version through file and ftp protocols☆24Updated 4 years ago
- [CVE-2020-1948] Apache Dubbo Provider default deserialization cause RCE☆16Updated 3 months ago
- A proof-of-concept tool for detection and exploitation Object Injection Vulnerabilities in .NET applications☆63Updated 4 years ago
- neo4j plugin of ByteCodeDL for the IntelliJ Platform. ByteCodeDL-Neo4j-IDEA-Plugin☆16Updated last year
- CVE-2020-26259: XStream is vulnerable to an Arbitrary File Deletion on the local host when unmarshalling as long as the executing process…☆25Updated 4 years ago
- ☆22Updated 2 years ago
- ☆14Updated 3 years ago
- Library for manually creating Java serialization data.☆31Updated 2 years ago
- Oracle Access Manager Unauthenticated Attacker Vulnerability CVE-2021-35587☆40Updated 3 years ago
- Sample Spring application to Demonstrate the Gateway Actuator☆47Updated 3 years ago
- 知识星球《漏洞百出》最新 20条 Topic☆113Updated 3 years ago
- Java After-Deserialization Attack☆79Updated 4 years ago
- CVE-2021-4204: Linux Kernel eBPF Local Privilege Escalation☆61Updated 3 years ago
- Atlassian Jira Seraph Authentication Bypass RCE(CVE-2022-0540)☆72Updated 3 years ago