mirror of
https://github.com/nomi-sec/PoC-in-GitHub.git
synced 2025-09-07 10:01:54 +02:00
406 lines
No EOL
14 KiB
JSON
406 lines
No EOL
14 KiB
JSON
[
|
|
{
|
|
"id": 821028616,
|
|
"name": "TestCVE-2024-34102",
|
|
"full_name": "ArturArz1\/TestCVE-2024-34102",
|
|
"owner": {
|
|
"login": "ArturArz1",
|
|
"id": 174043872,
|
|
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/174043872?v=4",
|
|
"html_url": "https:\/\/github.com\/ArturArz1",
|
|
"user_view_type": "public"
|
|
},
|
|
"html_url": "https:\/\/github.com\/ArturArz1\/TestCVE-2024-34102",
|
|
"description": null,
|
|
"fork": false,
|
|
"created_at": "2024-06-27T16:59:29Z",
|
|
"updated_at": "2024-06-27T17:07:33Z",
|
|
"pushed_at": "2024-06-27T17:07:29Z",
|
|
"stargazers_count": 0,
|
|
"watchers_count": 0,
|
|
"has_discussions": false,
|
|
"forks_count": 0,
|
|
"allow_forking": true,
|
|
"is_template": false,
|
|
"web_commit_signoff_required": false,
|
|
"topics": [],
|
|
"visibility": "public",
|
|
"forks": 0,
|
|
"watchers": 0,
|
|
"score": 0,
|
|
"subscribers_count": 1
|
|
},
|
|
{
|
|
"id": 821056402,
|
|
"name": "CVE-2024-34102",
|
|
"full_name": "th3gokul\/CVE-2024-34102",
|
|
"owner": {
|
|
"login": "th3gokul",
|
|
"id": 89386101,
|
|
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/89386101?v=4",
|
|
"html_url": "https:\/\/github.com\/th3gokul",
|
|
"user_view_type": "public"
|
|
},
|
|
"html_url": "https:\/\/github.com\/th3gokul\/CVE-2024-34102",
|
|
"description": "CVE-2024-34102: Unauthenticated Magento XXE",
|
|
"fork": false,
|
|
"created_at": "2024-06-27T18:10:13Z",
|
|
"updated_at": "2025-02-18T01:02:48Z",
|
|
"pushed_at": "2025-01-12T15:27:05Z",
|
|
"stargazers_count": 14,
|
|
"watchers_count": 14,
|
|
"has_discussions": false,
|
|
"forks_count": 1,
|
|
"allow_forking": true,
|
|
"is_template": false,
|
|
"web_commit_signoff_required": false,
|
|
"topics": [],
|
|
"visibility": "public",
|
|
"forks": 1,
|
|
"watchers": 14,
|
|
"score": 0,
|
|
"subscribers_count": 1
|
|
},
|
|
{
|
|
"id": 821130227,
|
|
"name": "CVE-2024-34102",
|
|
"full_name": "bigb0x\/CVE-2024-34102",
|
|
"owner": {
|
|
"login": "bigb0x",
|
|
"id": 13532434,
|
|
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/13532434?v=4",
|
|
"html_url": "https:\/\/github.com\/bigb0x",
|
|
"user_view_type": "public"
|
|
},
|
|
"html_url": "https:\/\/github.com\/bigb0x\/CVE-2024-34102",
|
|
"description": "POC for CVE-2024-34102. A pre-authentication XML entity injection issue in Magento \/ Adobe Commerce. ",
|
|
"fork": false,
|
|
"created_at": "2024-06-27T21:57:24Z",
|
|
"updated_at": "2024-12-11T07:03:26Z",
|
|
"pushed_at": "2024-06-29T08:13:05Z",
|
|
"stargazers_count": 29,
|
|
"watchers_count": 29,
|
|
"has_discussions": false,
|
|
"forks_count": 10,
|
|
"allow_forking": true,
|
|
"is_template": false,
|
|
"web_commit_signoff_required": false,
|
|
"topics": [],
|
|
"visibility": "public",
|
|
"forks": 10,
|
|
"watchers": 29,
|
|
"score": 0,
|
|
"subscribers_count": 2
|
|
},
|
|
{
|
|
"id": 821393232,
|
|
"name": "CVE-2024-34102",
|
|
"full_name": "11whoami99\/CVE-2024-34102",
|
|
"owner": {
|
|
"login": "11whoami99",
|
|
"id": 122907550,
|
|
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/122907550?v=4",
|
|
"html_url": "https:\/\/github.com\/11whoami99",
|
|
"user_view_type": "public"
|
|
},
|
|
"html_url": "https:\/\/github.com\/11whoami99\/CVE-2024-34102",
|
|
"description": "POC for CVE-2024-34102 : Unauthenticated Magento XXE and bypassing WAF , You will get http connection on ur webhook",
|
|
"fork": false,
|
|
"created_at": "2024-06-28T12:45:40Z",
|
|
"updated_at": "2024-07-02T12:02:29Z",
|
|
"pushed_at": "2024-07-01T03:20:14Z",
|
|
"stargazers_count": 2,
|
|
"watchers_count": 2,
|
|
"has_discussions": false,
|
|
"forks_count": 0,
|
|
"allow_forking": true,
|
|
"is_template": false,
|
|
"web_commit_signoff_required": false,
|
|
"topics": [],
|
|
"visibility": "public",
|
|
"forks": 0,
|
|
"watchers": 2,
|
|
"score": 0,
|
|
"subscribers_count": 1
|
|
},
|
|
{
|
|
"id": 821443628,
|
|
"name": "CVE-2024-34102",
|
|
"full_name": "d0rb\/CVE-2024-34102",
|
|
"owner": {
|
|
"login": "d0rb",
|
|
"id": 10403781,
|
|
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/10403781?v=4",
|
|
"html_url": "https:\/\/github.com\/d0rb",
|
|
"user_view_type": "public"
|
|
},
|
|
"html_url": "https:\/\/github.com\/d0rb\/CVE-2024-34102",
|
|
"description": "A PoC demonstration , critical XML entity injection vulnerability in Magento",
|
|
"fork": false,
|
|
"created_at": "2024-06-28T14:50:29Z",
|
|
"updated_at": "2024-06-28T14:52:44Z",
|
|
"pushed_at": "2024-06-28T14:52:41Z",
|
|
"stargazers_count": 0,
|
|
"watchers_count": 0,
|
|
"has_discussions": false,
|
|
"forks_count": 2,
|
|
"allow_forking": true,
|
|
"is_template": false,
|
|
"web_commit_signoff_required": false,
|
|
"topics": [],
|
|
"visibility": "public",
|
|
"forks": 2,
|
|
"watchers": 0,
|
|
"score": 0,
|
|
"subscribers_count": 1
|
|
},
|
|
{
|
|
"id": 821600228,
|
|
"name": "CVE-2024-34102",
|
|
"full_name": "Chocapikk\/CVE-2024-34102",
|
|
"owner": {
|
|
"login": "Chocapikk",
|
|
"id": 88535377,
|
|
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/88535377?v=4",
|
|
"html_url": "https:\/\/github.com\/Chocapikk",
|
|
"user_view_type": "public"
|
|
},
|
|
"html_url": "https:\/\/github.com\/Chocapikk\/CVE-2024-34102",
|
|
"description": "CosmicSting (CVE-2024-34102)",
|
|
"fork": false,
|
|
"created_at": "2024-06-28T23:33:21Z",
|
|
"updated_at": "2025-01-08T19:26:47Z",
|
|
"pushed_at": "2024-09-05T18:38:46Z",
|
|
"stargazers_count": 40,
|
|
"watchers_count": 40,
|
|
"has_discussions": false,
|
|
"forks_count": 10,
|
|
"allow_forking": true,
|
|
"is_template": false,
|
|
"web_commit_signoff_required": false,
|
|
"topics": [],
|
|
"visibility": "public",
|
|
"forks": 10,
|
|
"watchers": 40,
|
|
"score": 0,
|
|
"subscribers_count": 1
|
|
},
|
|
{
|
|
"id": 822233085,
|
|
"name": "CVE-2024-34102",
|
|
"full_name": "0x0d3ad\/CVE-2024-34102",
|
|
"owner": {
|
|
"login": "0x0d3ad",
|
|
"id": 18898977,
|
|
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/18898977?v=4",
|
|
"html_url": "https:\/\/github.com\/0x0d3ad",
|
|
"user_view_type": "public"
|
|
},
|
|
"html_url": "https:\/\/github.com\/0x0d3ad\/CVE-2024-34102",
|
|
"description": "CVE-2024-34102 (Magento XXE)",
|
|
"fork": false,
|
|
"created_at": "2024-06-30T16:49:26Z",
|
|
"updated_at": "2024-11-30T19:29:05Z",
|
|
"pushed_at": "2024-07-01T17:42:30Z",
|
|
"stargazers_count": 2,
|
|
"watchers_count": 2,
|
|
"has_discussions": false,
|
|
"forks_count": 0,
|
|
"allow_forking": true,
|
|
"is_template": false,
|
|
"web_commit_signoff_required": false,
|
|
"topics": [],
|
|
"visibility": "public",
|
|
"forks": 0,
|
|
"watchers": 2,
|
|
"score": 0,
|
|
"subscribers_count": 1
|
|
},
|
|
{
|
|
"id": 825491938,
|
|
"name": "cosmicsting-validator",
|
|
"full_name": "SamJUK\/cosmicsting-validator",
|
|
"owner": {
|
|
"login": "SamJUK",
|
|
"id": 7872420,
|
|
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/7872420?v=4",
|
|
"html_url": "https:\/\/github.com\/SamJUK",
|
|
"user_view_type": "public"
|
|
},
|
|
"html_url": "https:\/\/github.com\/SamJUK\/cosmicsting-validator",
|
|
"description": "CosmicSting (CVE-2024-34102) POC \/ Patch Validator",
|
|
"fork": false,
|
|
"created_at": "2024-07-07T23:35:18Z",
|
|
"updated_at": "2025-02-14T17:37:45Z",
|
|
"pushed_at": "2025-02-14T17:37:41Z",
|
|
"stargazers_count": 0,
|
|
"watchers_count": 0,
|
|
"has_discussions": false,
|
|
"forks_count": 0,
|
|
"allow_forking": true,
|
|
"is_template": false,
|
|
"web_commit_signoff_required": false,
|
|
"topics": [
|
|
"cosmicsting",
|
|
"cve-2024-34102",
|
|
"devsecops",
|
|
"magento",
|
|
"magento-security-patches",
|
|
"poc",
|
|
"proof-of-concept",
|
|
"security"
|
|
],
|
|
"visibility": "public",
|
|
"forks": 0,
|
|
"watchers": 0,
|
|
"score": 0,
|
|
"subscribers_count": 1
|
|
},
|
|
{
|
|
"id": 839724541,
|
|
"name": "magento2-cosmic-sting-patch",
|
|
"full_name": "wubinworks\/magento2-cosmic-sting-patch",
|
|
"owner": {
|
|
"login": "wubinworks",
|
|
"id": 127310257,
|
|
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/127310257?v=4",
|
|
"html_url": "https:\/\/github.com\/wubinworks",
|
|
"user_view_type": "public"
|
|
},
|
|
"html_url": "https:\/\/github.com\/wubinworks\/magento2-cosmic-sting-patch",
|
|
"description": "An alternative solution(as a Magento 2 extension) to fix the XXE vulnerability CVE-2024-34102(aka Cosmic Sting). If you cannot upgrade Magento or cannot apply the official patch, try this one.",
|
|
"fork": false,
|
|
"created_at": "2024-08-08T07:47:24Z",
|
|
"updated_at": "2025-02-06T16:00:49Z",
|
|
"pushed_at": "2025-02-06T15:59:22Z",
|
|
"stargazers_count": 1,
|
|
"watchers_count": 1,
|
|
"has_discussions": false,
|
|
"forks_count": 0,
|
|
"allow_forking": true,
|
|
"is_template": false,
|
|
"web_commit_signoff_required": false,
|
|
"topics": [
|
|
"bug",
|
|
"cosmic-sting",
|
|
"cosmicsting",
|
|
"cve-2024-34102",
|
|
"extension",
|
|
"hotfix",
|
|
"magento2",
|
|
"patch",
|
|
"security-hole",
|
|
"xml",
|
|
"xml-entity",
|
|
"xml-security",
|
|
"xxe"
|
|
],
|
|
"visibility": "public",
|
|
"forks": 0,
|
|
"watchers": 1,
|
|
"score": 0,
|
|
"subscribers_count": 1
|
|
},
|
|
{
|
|
"id": 841861554,
|
|
"name": "CVE-2024-34102",
|
|
"full_name": "EQSTLab\/CVE-2024-34102",
|
|
"owner": {
|
|
"login": "EQSTLab",
|
|
"id": 148991397,
|
|
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/148991397?v=4",
|
|
"html_url": "https:\/\/github.com\/EQSTLab",
|
|
"user_view_type": "public"
|
|
},
|
|
"html_url": "https:\/\/github.com\/EQSTLab\/CVE-2024-34102",
|
|
"description": "Adobe Commerce XXE exploit",
|
|
"fork": false,
|
|
"created_at": "2024-08-13T07:33:20Z",
|
|
"updated_at": "2025-02-19T07:19:27Z",
|
|
"pushed_at": "2025-01-12T11:26:54Z",
|
|
"stargazers_count": 3,
|
|
"watchers_count": 3,
|
|
"has_discussions": false,
|
|
"forks_count": 0,
|
|
"allow_forking": true,
|
|
"is_template": false,
|
|
"web_commit_signoff_required": false,
|
|
"topics": [],
|
|
"visibility": "public",
|
|
"forks": 0,
|
|
"watchers": 3,
|
|
"score": 0,
|
|
"subscribers_count": 1
|
|
},
|
|
{
|
|
"id": 844692267,
|
|
"name": "CVE-2024-34102",
|
|
"full_name": "dream434\/CVE-2024-34102",
|
|
"owner": {
|
|
"login": "dream434",
|
|
"id": 114837630,
|
|
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/114837630?v=4",
|
|
"html_url": "https:\/\/github.com\/dream434",
|
|
"user_view_type": "public"
|
|
},
|
|
"html_url": "https:\/\/github.com\/dream434\/CVE-2024-34102",
|
|
"description": "adobe commerce",
|
|
"fork": false,
|
|
"created_at": "2024-08-19T19:25:48Z",
|
|
"updated_at": "2025-02-22T19:38:07Z",
|
|
"pushed_at": "2025-02-22T19:38:04Z",
|
|
"stargazers_count": 0,
|
|
"watchers_count": 0,
|
|
"has_discussions": false,
|
|
"forks_count": 0,
|
|
"allow_forking": true,
|
|
"is_template": false,
|
|
"web_commit_signoff_required": false,
|
|
"topics": [],
|
|
"visibility": "public",
|
|
"forks": 0,
|
|
"watchers": 0,
|
|
"score": 0,
|
|
"subscribers_count": 1
|
|
},
|
|
{
|
|
"id": 898539017,
|
|
"name": "magento2-encryption-key-manager-cli",
|
|
"full_name": "wubinworks\/magento2-encryption-key-manager-cli",
|
|
"owner": {
|
|
"login": "wubinworks",
|
|
"id": 127310257,
|
|
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/127310257?v=4",
|
|
"html_url": "https:\/\/github.com\/wubinworks",
|
|
"user_view_type": "public"
|
|
},
|
|
"html_url": "https:\/\/github.com\/wubinworks\/magento2-encryption-key-manager-cli",
|
|
"description": "A utility for Magento 2 encryption key rotation and management. CVE-2024-34102(aka Cosmic Sting) victims can use it as an aftercare.",
|
|
"fork": false,
|
|
"created_at": "2024-12-04T15:19:19Z",
|
|
"updated_at": "2024-12-04T15:52:29Z",
|
|
"pushed_at": "2024-12-04T15:47:48Z",
|
|
"stargazers_count": 0,
|
|
"watchers_count": 0,
|
|
"has_discussions": false,
|
|
"forks_count": 1,
|
|
"allow_forking": true,
|
|
"is_template": false,
|
|
"web_commit_signoff_required": false,
|
|
"topics": [
|
|
"cli",
|
|
"cosmic-sting",
|
|
"cve-2024-34102",
|
|
"deployment-automation",
|
|
"encryption-key",
|
|
"key-generation",
|
|
"key-rotation",
|
|
"magento2"
|
|
],
|
|
"visibility": "public",
|
|
"forks": 1,
|
|
"watchers": 0,
|
|
"score": 0,
|
|
"subscribers_count": 1
|
|
}
|
|
] |