Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Web Security | Kitploit
Categories

Web Security

Tools for testing, exploiting, and securing web applications and APIs.

NewestRelevanceMost popularRecently updated
17040 results
CVE-2022-48311 preview
Archived

CVE-2022-48311

GitHubswzhouu/cve-2022-48311

HP Deskjet 2540 series printer Firmware Version CEP1FN1418BR and Product Model Number A9U23B HTTP configuration page Cross Site Scripting (XSS)…

embedded-systems-securityiot-securityvulnerability-analysis+3
1
3 years ago
CVE-2020-27368 preview
Archived

CVE-2020-27368

GitHubswzhouu/cve-2020-27368

TOTOLINK-A702R-V1.0.0-B20161227.1023 Directory Indexing Vulnerability

embedded-systems-securityiot-securityvulnerability-analysis+3
13 years ago
CVE-2020-26733 preview
Archived

CVE-2020-26733

GitHubswzhouu/cve-2020-26733

SKYWORTH GN542VF Hardware Version 2.0 and Software Version 2.0.0.16 Cross Site Scripting (XSS) Vulnerability

vulnerability-analysisexploitationinformation-gathering+2
13 years ago
CVE-2020-26732 preview
Archived

CVE-2020-26732

GitHubswzhouu/cve-2020-26732

SKYWORTH GN542VF Hardware Version 2.0 and Software Version 2.0.0.16 does not set the Secure flag for the session cookie in an HTTPS session

vulnerability-analysisinformation-gatheringweb-security+2
13 years ago
bash-CVE-2017-17562 preview
Archived

bash-CVE-2017-17562

GitHubjoaomagfreitas/bash-cve-2017-17562

PoC for CVE-2017-17562 written in bash

payload-generationvulnerability-analysisexploitation+3
14 years ago
cve-2022-1609-exploit preview
Archived

cve-2022-1609-exploit

GitHubitworksig/cve-2022-1609-exploit

Exploit for CVE-2022-1609 WordPress Weblizar Backdoor.

vulnerability-analysisexploitationweb-application-exploitation+2
13 years ago
cve-2025-6907 preview
Archived

cve-2025-6907

GitHubbytereaper77/cve-2025-6907

a standalone C-based SQL Injection exploit targeting the CVE‑2025‑6907 vulnerability in the CODE_PROJECT service.

reconnaissancevulnerability-analysisexploitation+3
11 year ago
CVE-2025-9090 preview
Archived

CVE-2025-9090

GitHubbytereaper77/cve-2025-9090

Command Injection in Tenda AC20 16.03.08.12 (/goform/telnet)

iot-securityvulnerability-analysisexploitation+3
11 year ago
CVE-2025-8971 preview
Archived

CVE-2025-8971

GitHubbytereaper77/cve-2025-8971

Sql injection in itsourcecode Online Tour and Travel Management System 1.0.

payload-generationvulnerability-analysiscode-analysis+3
11 year ago
CVE-2025-7769 preview
Archived

CVE-2025-7769

GitHubbytereaper77/cve-2025-7769

PoC to inject a command via the DEVICE_PING endpoint

vulnerability-analysisexploitationweb-application-exploitation+3
11 year ago
CVE-2025-7766 preview
Archived

CVE-2025-7766

GitHubbytereaper77/cve-2025-7766

PoC exploit for CVE-2025-7766 – XXE vulnerability leading to potential RCE.

vulnerability-analysisexploitationweb-application-exploitation+2
11 year ago
CVE-2025-6082 preview
Archived

CVE-2025-6082

GitHubbytereaper77/cve-2025-6082

Proof‑of‑Concept exploits the Full Path Disclosure bug in the “Birth Chart Compatibility” WordPress plugin (<=v2.0)

reconnaissancevulnerability-analysisexploitation+3
11 year ago
CVE-2025-59342 preview
Archived

CVE-2025-59342

GitHubbytereaper77/cve-2025-59342

Exploit Path Traversal in esm-dev

vulnerability-analysisexploitationweb-application-exploitation+2
111 months ago
CVE-2021-32789 preview
Archived

CVE-2021-32789

GitHuband0x00/cve-2021-32789

💣 Wordpress WooCommerce users dump exploit.

vulnerability-analysisexploitationweb-application-exploitation+2
13 years ago
CVE-2026-53571 preview
Archived

CVE-2026-53571

GitHubtazmidev/cve-2026-53571

CVE-2026-53571 `server.fs.deny` bypass on Windows alternate paths PoC.

vulnerability-analysisexploitationweb-security+2
11 month ago
DVRFaultNET preview
Archived

DVRFaultNET

GitHubst0pl/dvrfaultnet

.NET console application that exploits CVE-2018-9995 vulnerability

iot-securitypassword-attacksvulnerability-analysis+3
11 year ago
TPASLog4ShellPoC preview
Archived

TPASLog4ShellPoC

GitHubcarlos-mesquita/tpaslog4shellpoc

Proof of Concept for the Log4Shell vulnerability (CVE-2021-44228), developed as part of the coursework for the curricular unit TPAS in the Master's…

payload-generationvulnerability-analysisexploitation+3
11 year ago
purpleteam-orchestrator preview
Archived

purpleteam-orchestrator

GitLabpurpleteam-labs/purpleteam-orchestrator

Orchestration component of purpleteam

penetration-testing-frameworksvulnerability-scannersweb-security+2
15 years ago
Previous1…943944945…947Next