Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
live-server-evil-crawler — Live Server VSCode Vulnerability (CVE-2025-65717) Demo | Kitploit
Tools/GitHubGitHub/natsuki-engr/live-server-evil-crawler
Port ScanningVulnerability AnalysisExploitationWeb SecurityLearning & EducationLabs & Practice
GitHubnatsuki-engr/live-server-evil-crawler

live-server-evil-crawler

Live Server VSCode Vulnerability (CVE-2025-65717) Demo

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
View RepositoryWebsite
36 months agoNot yet reviewed

Live Server Evil Crawler

A GitHub Pages site for demonstrating the Live Server VSCode extension vulnerability (CVE-2025-65717).

Overview

This tool demonstrates a vulnerability where Live Server allows requests from any origin, enabling malicious web pages to access the Live Server running on localhost and read file system contents.

Features

  • Port Scanner: Scan a range of ports to detect running Live Server instances
  • Crawler: Recursively explore the directory structure of detected servers

Based On

This code is based on the following article:

  • Ox Security - CVE-2025-65717: Live Server VSCode Vulnerability

Demo

https://natsuki-engr.github.io/live-server-evil-crawler/

Disclaimer

This tool is intended for security research and educational purposes only.

Download Tool