#1Automated tools for detecting common web application flaws (e.g., XSS, SQLi).
Kitploit recommended

Proof-of-concept exploit for CVE-2025-2294, a critical LFI vulnerability in Kubio AI Page Builder for WordPress. Includes a Python scanner, nuclei…
Automated Web Vulnerability Assessment of DVWA using OWASP ZAP to identify and analyze critical security flaws like Remote Code Execution…

Cisco Adaptive Security Appliance (ASA)/Firepower Threat Defense (FTD) - Local File Inclusion

A web-based vulnerability scanner for CVE-2025-55182, a critical Remote Code Execution (RCE) vulnerability in React Server Components.

cve-2025-55182

BeHat Configuration file leaking

python 2.7

Detects Apache HTTP Server path traversal vulnerabilities (CVE-2021-41773, CVE-2021-42013) by checking for exposure of /etc/passwd through…

Appspec YML and YAML leaks

This tool is used to find php info page

Passive detection for CVE-2025-58360

Adobe Experience Manager Childlist Selector - Cross-Site Scripting

The tool helps in quickly identifying vulnerabilities by examining a comprehensive list of potential paths on a website, making it useful for…

Vulnerability detection scripts for the Goanywhere MFT product.

Detection of the React Server Actions Exploit vector – CVE-2025-55182 / CVE-2025-66478

A security vulnerability scanner for detecting the React2Shell vulnerability (CVE-2025-55182) in Next.js and React applications.

Detection for CVE-2024-57378

Spring Cloud Gateway repository demonstrating CVE-2022-22947 exploitation for API security testing and vulnerability analysis.