9
9
Stats 📊
10
10
-------
11
11
12
- ** CVEs analyzed** : 71453
12
+ ** CVEs analyzed** : 71464
13
13
14
- ** CVEs missing** : 15113
14
+ ** CVEs missing** : 19317
15
15
16
16
** Dropdown by vuln type** :
17
17
18
18
| Type | Count | Data |
19
19
| - | - | - |
20
- | XSS | 6256 | [ xss.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/xss.txt ) |
21
- | RCE | 2861 | [ rce.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/rce.txt ) |
22
- | SQL Injection | 5060 | [ sqli.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/sqli.txt ) |
23
- | Local File Inclusion | 78 | [ lfi.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/lfi.txt ) |
24
- | Server Side Request Forgery | 145 | [ ssrf.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/ssrf.txt ) |
25
- | Prototype Pollution | 148 | [ proto-pollution.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/proto-pollution.txt ) |
26
- | Request Smuggling | 58 | [ req-smuggling.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/req-smuggling.txt ) |
27
- | Open Redirect | 200 | [ open-redirect.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/open-redirect.txt ) |
28
- | XML External Entity | 288 | [ xxe.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/xxe.txt ) |
29
- | Server Side Template Injection | 19 | [ ssti.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/ssti.txt ) |
20
+ | XSS | 8758 | [ xss.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/xss.txt ) |
21
+ | RCE | 3690 | [ rce.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/rce.txt ) |
22
+ | SQL Injection | 5715 | [ sqli.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/sqli.txt ) |
23
+ | Local File Inclusion | 98 | [ lfi.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/lfi.txt ) |
24
+ | Server Side Request Forgery | 184 | [ ssrf.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/ssrf.txt ) |
25
+ | Prototype Pollution | 165 | [ proto-pollution.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/proto-pollution.txt ) |
26
+ | Request Smuggling | 59 | [ req-smuggling.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/req-smuggling.txt ) |
27
+ | Open Redirect | 251 | [ open-redirect.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/open-redirect.txt ) |
28
+ | XML External Entity | 375 | [ xxe.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/xxe.txt ) |
29
+ | Server Side Template Injection | 22 | [ ssti.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/type/ssti.txt ) |
30
30
31
31
** Dropdown by year** :
32
32
@@ -41,21 +41,21 @@ Stats 📊
41
41
| 2005 | 270 | [ 2005.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2005.txt ) |
42
42
| 2006 | 666 | [ 2006.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2006.txt ) |
43
43
| 2007 | 705 | [ 2007.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2007.txt ) |
44
- | 2008 | 1501 | [ 2008.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2008.txt ) |
45
- | 2009 | 394 | [ 2009.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2009.txt ) |
44
+ | 2008 | 1502 | [ 2008.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2008.txt ) |
45
+ | 2009 | 395 | [ 2009.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2009.txt ) |
46
46
| 2010 | 230 | [ 2010.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2010.txt ) |
47
47
| 2011 | 174 | [ 2011.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2011.txt ) |
48
- | 2012 | 373 | [ 2012.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2012.txt ) |
49
- | 2013 | 317 | [ 2013.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2013.txt ) |
50
- | 2014 | 692 | [ 2014.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2014.txt ) |
51
- | 2015 | 711 | [ 2015.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2015.txt ) |
52
- | 2016 | 432 | [ 2016.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2016.txt ) |
53
- | 2017 | 1039 | [ 2017.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2017.txt ) |
54
- | 2018 | 1502 | [ 2018.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2018.txt ) |
55
- | 2019 | 1123 | [ 2019.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2019.txt ) |
56
- | 2020 | 1634 | [ 2020.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2020.txt ) |
57
- | 2021 | 1420 | [ 2021.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2021.txt ) |
58
- | 2022 | 1823 | [ 2022.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2022.txt ) |
48
+ | 2012 | 374 | [ 2012.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2012.txt ) |
49
+ | 2013 | 319 | [ 2013.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2013.txt ) |
50
+ | 2014 | 698 | [ 2014.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2014.txt ) |
51
+ | 2015 | 712 | [ 2015.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2015.txt ) |
52
+ | 2016 | 613 | [ 2016.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2016.txt ) |
53
+ | 2017 | 2170 | [ 2017.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2017.txt ) |
54
+ | 2018 | 3296 | [ 2018.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2018.txt ) |
55
+ | 2019 | 1479 | [ 2019.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2019.txt ) |
56
+ | 2020 | 1867 | [ 2020.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2020.txt ) |
57
+ | 2021 | 1651 | [ 2021.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2021.txt ) |
58
+ | 2022 | 2092 | [ 2022.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2022.txt ) |
59
59
| 2023 | 0 | [ 2023.txt] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/data/year/2023.txt ) |
60
60
61
61
Why 🤔
@@ -69,11 +69,11 @@ How it works 🖥️
69
69
70
70
Automated Logic:
71
71
```
72
- for each cve in trickest/cve repo :
72
+ for each cve in trickest/cve:
73
73
if this cve not present in nuclei-templates:
74
74
if it contains one of the words we are looking for:
75
- if there are references :
76
- found
75
+ if it is a CVE suitable for nuclei :
76
+ print it
77
77
```
78
78
79
79
- Which are the "words we are looking for"? ` reflected ` , ` rce ` , ` local file inclusion ` , ` server side request forgery ` , ` ssrf ` , ` remote code execution ` , ` remote command execution ` , ` command injection ` , ` code injection ` , ` ssti ` , ` template injection ` , ` lfi ` , ` xss ` , ` Cross-Site Scripting ` , ` Cross Site Scripting ` , ` SQL injection ` , ` Prototype pollution ` , ` XML External Entity ` , ` Request Smuggling ` , ` XXE ` , ` Open redirect ` .
@@ -101,4 +101,4 @@ License 📝
101
101
-------
102
102
103
103
This repository is under [ MIT License] ( https://github.com/edoardottt/missing-cve-nuclei-templates/blob/main/LICENSE ) .
104
- [ edoardoottavianelli.it] ( https://www.edoardoottavianelli.it ) to contact me.
104
+ [ edoardoottavianelli.it] ( https://www.edoardoottavianelli.it ) to contact me.
0 commit comments