PoC-in-GitHub/2026/CVE-2026-21858.json
2026-02-01 21:45:26 +09:00

314 lines
No EOL
11 KiB
JSON

[
{
"id": 703817807,
"name": "CVE-2026-21858",
"full_name": "MOGMUNI\/CVE-2026-21858",
"owner": {
"login": "MOGMUNI",
"id": 147674995,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/147674995?v=4",
"html_url": "https:\/\/github.com\/MOGMUNI",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/MOGMUNI\/CVE-2026-21858",
"description": "🛠️ Exploit CVE-2026-21858 to demonstrate a full unauthenticated RCE chain in n8n, showcasing vulnerabilities and potential risks in affected versions.",
"fork": false,
"created_at": "2023-10-12T01:36:00Z",
"updated_at": "2026-02-01T12:02:30Z",
"pushed_at": "2026-02-01T12:02:27Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [
"cve",
"cve-2026-21858",
"exploit",
"n8n",
"n8n-exploits",
"ni8mare",
"nuclei",
"poc",
"rce",
"security",
"vuln",
"vulnerability"
],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 0
},
{
"id": 1129928627,
"name": "CVE-2026-21858",
"full_name": "Chocapikk\/CVE-2026-21858",
"owner": {
"login": "Chocapikk",
"id": 88535377,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/88535377?v=4",
"html_url": "https:\/\/github.com\/Chocapikk",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/Chocapikk\/CVE-2026-21858",
"description": "n8n Ni8mare - Unauthenticated Arbitrary File Read to RCE Chain (CVSS 10.0)",
"fork": false,
"created_at": "2026-01-07T19:32:42Z",
"updated_at": "2026-01-31T09:08:20Z",
"pushed_at": "2026-01-09T02:50:22Z",
"stargazers_count": 229,
"watchers_count": 229,
"has_discussions": false,
"forks_count": 46,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [
"cve-2026-21858",
"exploit",
"n8n",
"ni8mare",
"poc",
"rce",
"security",
"vulnerability"
],
"visibility": "public",
"forks": 46,
"watchers": 229,
"score": 0,
"subscribers_count": 0
},
{
"id": 1129958302,
"name": "Ashwesker-CVE-2026-21858",
"full_name": "Ashwesker\/Ashwesker-CVE-2026-21858",
"owner": {
"login": "Ashwesker",
"id": 215029052,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/215029052?v=4",
"html_url": "https:\/\/github.com\/Ashwesker",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/Ashwesker\/Ashwesker-CVE-2026-21858",
"description": "CVE-2026-21858",
"fork": false,
"created_at": "2026-01-07T20:36:24Z",
"updated_at": "2026-01-21T06:52:04Z",
"pushed_at": "2026-01-07T21:56:15Z",
"stargazers_count": 2,
"watchers_count": 2,
"has_discussions": false,
"forks_count": 1,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 1,
"watchers": 2,
"score": 0,
"subscribers_count": 0
},
{
"id": 1132846567,
"name": "ni8mare-scanner",
"full_name": "cropnet\/ni8mare-scanner",
"owner": {
"login": "cropnet",
"id": 44521465,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/44521465?v=4",
"html_url": "https:\/\/github.com\/cropnet",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/cropnet\/ni8mare-scanner",
"description": "Comprehensive vulnerability detection tool for n8n workflow automation instances. Detects the critical CVE-2026-21858 vulnerability (CVSS 10.0) without performing any exploitation.",
"fork": false,
"created_at": "2026-01-12T14:32:04Z",
"updated_at": "2026-01-12T16:20:09Z",
"pushed_at": "2026-01-12T16:20:05Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [
"cve-2026-21858"
],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 0
},
{
"id": 1136114565,
"name": "SASTRA-ADI-WIGUNA-CVE-2026-21858-Holistic-Audit",
"full_name": "sastraadiwiguna-purpleeliteteaming\/SASTRA-ADI-WIGUNA-CVE-2026-21858-Holistic-Audit",
"owner": {
"login": "sastraadiwiguna-purpleeliteteaming",
"id": 248769097,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/248769097?v=4",
"html_url": "https:\/\/github.com\/sastraadiwiguna-purpleeliteteaming",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/sastraadiwiguna-purpleeliteteaming\/SASTRA-ADI-WIGUNA-CVE-2026-21858-Holistic-Audit",
"description": "SASTRA-ADI-WIGUNA-CVE-2026-21858-Holistic-Audit",
"fork": false,
"created_at": "2026-01-17T04:57:53Z",
"updated_at": "2026-01-18T17:49:57Z",
"pushed_at": "2026-01-18T10:16:50Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 0
},
{
"id": 1138220864,
"name": "CVE-2026-21858",
"full_name": "sec-dojo-com\/CVE-2026-21858",
"owner": {
"login": "sec-dojo-com",
"id": 125385764,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/125385764?v=4",
"html_url": "https:\/\/github.com\/sec-dojo-com",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/sec-dojo-com\/CVE-2026-21858",
"description": null,
"fork": false,
"created_at": "2026-01-20T11:50:32Z",
"updated_at": "2026-01-20T18:31:06Z",
"pushed_at": "2026-01-20T18:27:16Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 0
},
{
"id": 1138389383,
"name": "CVE-2026-21858",
"full_name": "SystemVll\/CVE-2026-21858",
"owner": {
"login": "SystemVll",
"id": 69421356,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/69421356?v=4",
"html_url": "https:\/\/github.com\/SystemVll",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/SystemVll\/CVE-2026-21858",
"description": "Proof of Concept: CVE-2026-21858 is vulnerability on n8n where unauthenticated remote attackers can access sensitive files.",
"fork": false,
"created_at": "2026-01-20T15:59:48Z",
"updated_at": "2026-01-30T02:11:46Z",
"pushed_at": "2026-01-20T16:10:56Z",
"stargazers_count": 3,
"watchers_count": 3,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [
"cve",
"cve-2026-21858",
"exploit",
"n8n",
"n8n-exploits",
"nuclei",
"poc",
"vuln"
],
"visibility": "public",
"forks": 0,
"watchers": 3,
"score": 0,
"subscribers_count": 0
},
{
"id": 1139127891,
"name": "mogmuni.github.io",
"full_name": "MOGMUNI\/mogmuni.github.io",
"owner": {
"login": "MOGMUNI",
"id": 147674995,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/147674995?v=4",
"html_url": "https:\/\/github.com\/MOGMUNI",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/MOGMUNI\/mogmuni.github.io",
"description": "🛡️ Exploit CVE-2026-21858 for unauthenticated RCE in n8n; includes proof of concept and mitigation details for critical vulnerabilities.",
"fork": false,
"created_at": "2026-01-21T15:01:43Z",
"updated_at": "2026-01-23T19:40:07Z",
"pushed_at": "2026-01-23T19:40:03Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 0
},
{
"id": 1146309368,
"name": "CVE-2026-21858",
"full_name": "Alhakim88\/CVE-2026-21858",
"owner": {
"login": "Alhakim88",
"id": 116581267,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/116581267?v=4",
"html_url": "https:\/\/github.com\/Alhakim88",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/Alhakim88\/CVE-2026-21858",
"description": "Hack",
"fork": false,
"created_at": "2026-01-30T22:38:06Z",
"updated_at": "2026-01-30T22:40:24Z",
"pushed_at": "2026-01-30T22:40:21Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 0
}
]