Initial Access Intelligence
The "Initial Access Intelligence" module is a vital tool for cybersecurity, designed to scan GitHub repositories for the latest exploit and proof-of-concept codes for new vulnerabilities. It provides users with crucial updates on potential security threats, enabling proactive defense measures. This module helps close the gap between vulnerability discovery and patching, significantly enhancing system security.
-
July 18, 2026, 10:12 p.m.
The Joomla extension Balbooa Forms is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to full RCE.
Python
Updated: 2 weeks, 2 days ago0 stars 0 fork 0 watcherBorn at : July 18, 2026, 10:12 p.m. This repo has been linked 1 different CVEs too. -
July 18, 2026, 10:03 p.m.
iCagenda extension for Joomla allows the upload of arbitrary files in the file attachment feature, ultimately resulting in PHP code upload and execution.
Python
Updated: 2 weeks, 2 days ago0 stars 0 fork 0 watcherBorn at : July 18, 2026, 10:02 p.m. This repo has been linked 1 different CVEs too. -
July 18, 2026, 9:49 p.m.
Unauthenticated Remote Code Execution in Astroid Framework 2.0.0 - 3.3.10 for Joomla
Python
Updated: 2 weeks, 2 days ago0 stars 0 fork 0 watcherBorn at : July 18, 2026, 9:49 p.m. This repo has been linked 1 different CVEs too. -
July 18, 2026, 10:23 p.m.
An AI native Cybersecurity vulnerability scanning and incidence response generation
Python Dockerfile
Updated: 2 weeks, 2 days ago0 stars 0 fork 0 watcherBorn at : July 18, 2026, 9:46 p.m. This repo has been linked 1 different CVEs too. -
July 19, 2026, 4:02 p.m.
AI-Powered Application Security Platform
Dockerfile Makefile Python Mako
Updated: 2 weeks, 1 day ago0 stars 0 fork 0 watcherBorn at : July 18, 2026, 9:46 p.m. This repo has been linked 3 different CVEs too. -
July 18, 2026, 9:46 p.m.
None
Updated: 2 weeks, 2 days ago0 stars 0 fork 0 watcherBorn at : July 18, 2026, 9:46 p.m. This repo has been linked 1 different CVEs too. -
July 19, 2026, 1:23 p.m.
wp2shell — Pre-authentication RCE in WordPress Core (CVE-2026-60137 + CVE-2026-63030). Chains an SQL injection in author__not_in with batch-route confusion for unauthenticated remote code execution on WP 6.9.0–6.9.4 / 7.0.0–7.0.1.
codeb0ss cve-2026-60137 cve-2026-63030 realcodeb0ss thecodeb0ss wordfence wordpress wordpress-core wp2shell
Python
Updated: 2 weeks, 2 days ago5 stars 1 fork 1 watcherBorn at : July 18, 2026, 9:16 p.m. This repo has been linked 2 different CVEs too. -
July 19, 2026, 12:38 p.m.
WordPress 未授权RCE EXP | CVE-2026-63030
Python
Updated: 2 weeks, 2 days ago3 stars 4 fork 4 watcherBorn at : July 18, 2026, 9:13 p.m. This repo has been linked 1 different CVEs too. -
July 19, 2026, 3:05 p.m.
wp2shell - WordPress RCE & PoC (CVE-2026-63030 + CVE-2026-60137)
Python
Updated: 2 weeks, 1 day ago2 stars 0 fork 0 watcherBorn at : July 18, 2026, 9:11 p.m. This repo has been linked 2 different CVEs too. -
July 19, 2026, 5:16 p.m.
Blackbox, non-intrusive detector for wp2shell (WordPress core pre-auth RCE, CVE-2026-63030 / CVE-2026-60137). Detection only.
Python
Updated: 2 weeks, 1 day ago3 stars 0 fork 0 watcherBorn at : July 18, 2026, 9:06 p.m. This repo has been linked 2 different CVEs too.