
westone-CVE-2021-45232-scanner
A vulnerability scanner that detects CVE-2021-45232 vulnerabilities.

A vulnerability scanner that detects CVE-2021-45232 vulnerabilities.

Proof-of-concept for CVE-2025-492030: account takeover via session token validation bypass in SecureVPN API endpoint /api/v1/authenticate.

Apache ShenYu 管理员认证绕过

Proof-of-concept for CVE-2025-30144: JWT issuer validation bypass in fast-jwt library allowing attackers to forge tokens with array-based iss claims.

Python-based proof-of-concept script demonstrating CVE-2018-25031 XSS vulnerability in Swagger UI using Selenium for automated detection across…

Proof-of-concept for CVE-2020-26527: demonstrates a CORS misconfiguration in Damstra Smart Asset 2020.7 API that trusts arbitrary origins, allowing…

CVE-2016-1000229

Clone of suds 0.4 + suds-0.4-CVE-2013-2217.patch

GraphQL vulnerability disclosure: CVE-2023-26144

SecDim Challenge Builder repro inspired by CVE-2026-88861: AAL1 MFA bypass at privileged credential boundary

PoC — cross-origin requests reuse the configured provider API key in inference-gateway (GHSA-5293-fcm6-fh8v, CVE-2026-87009, CVSS 5.4).

Proof-of-concept for CVE-2026-44351, an authentication bypass in fast-jwt <6.2.4 where an empty HMAC key lets attackers forge arbitrary JWTs accepted…

Synapse: Matrix homeserver written in Python/Twisted.

NAXSI is an open-source, high performance, low rules maintenance WAF for NGINX

Ingress NGINX Controller for Kubernetes

NebulousAD automated credential auditing tool.

EU focused compliance MCP server

Community curated list of nuclei templates for finding "unknown" security vulnerabilities.