#1Static and dynamic code analysis, SAST, DAST, and code review tools.
Kitploit recommended

glibc gethostbyname bug

unzip-stream file write/overwrite vulnerability

OpenSSL toolkit implementing SSL/TLS protocols and a general-purpose cryptography library with ciphers, digests, public key algorithms, and X.509…

A Python-based security scanner for detecting and exploiting **React Server Components (RSC)** vulnerabilities in Next.js applications. This tool…

a realistic POC demonstrating the missing `hasOwnProperty` check in [email protected]

A simple project to check coverage of Log4J vuln CVE-2021-44228 (and related)

Proof-of-concept exploit for CVE-2020-0601 demonstrating spoofed cryptographic key generation and code signing using OpenSSL and Ruby.

Spring Cloud Gateway远程代码执行漏洞

Woocommerce Product Design <= 1.0.0 - Unauthenticated Arbitrary File Upload

Proof of concept for CVE-2022-23614 (command injection in Twig)

Exploit for CVE-2023-40133, a vulnerability in Android's Framework component, enabling code execution analysis and security testing.

Android platform framework patch for CVE-2023-21281, addressing a security vulnerability in the Android framework.

OpenSSL 1.0.1g source code snapshot, providing SSL/TLS and general-purpose cryptography library with ciphers, digests, and X.509 certificate handling.

Proof-of-concept exploit for CVE-2017-1000117, a remote code execution vulnerability in git clients prior to v2.14.1, demonstrating recursive clone…

C library for parsing, editing, and saving EXIF data, with a focus on addressing CVE-2020-0452 in AOSP10. Provides API for metadata extraction and…

Detects known vulnerabilities in Ruby Gemfile dependencies by scanning for specific CVEs, enabling automated security checks in development pipelines.

Analyzes and addresses CVE-2023-47108, providing vulnerability assessment and remediation guidance for affected systems.