#1Automated tools for detecting common web application flaws (e.g., XSS, SQLi).
Kitploit recommended

EventON (Free < 2.2.8, Premium < 4.5.5) - Information Disclosure

SAP Knowledge Warehouse <=7.5.0 - Cross-Site Scripting

CVE-2025-55182-scanner with 2 different method

Poc - CVE-2025-49132

The tool helps in quickly identifying vulnerabilities by examining a comprehensive list of potential paths on a website, making it useful for…

SOUND4 Impact/Pulse/First/Eco <=2.x - Information Disclosure

Laravel Ignition contains a cross-site scripting vulnerability when debug mode is enabled.

CGI Print ENV leaking

CVE-2021-46069 - A Stored Cross Site Scripting (XSS) vulnerability exists in Vehicle Service Management System 1.0 via the Mechanic List Section in…

CVE-2021-46073 - A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodester Vehicle Service Management System 1.0 via the User List…

CVE-2021-46074 - A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodester Vehicle Service Management System 1.0 via the Settings…

Detection for CVE-2025-47812

A lightweight orchestrator and worker scanner setup for running large/continuous scans across split input files. This repository contains…

CVE-2025-29927: Next.js Middleware Exploit

Share Buttons – Social Media <= 1.0.2 - Unauthenticated SQL Injection

A automatic scanner to apache 2.4.49

Scanner for CVE-2025-30208 in Vite Dev Server, supporting single and mass URL scanning with multiple payloads, multi-threading, and vulnerable URL…

Lightweight Python scanner for detecting stored XSS (CVE-2025-0054) in SAP NetWeaver Java. Submits customizable payloads and checks for script…