
CVE-2022-1598
WPQA < 5.5 - Unauthenticated Private Message Disclosure

WPQA < 5.5 - Unauthenticated Private Message Disclosure

Exploit tool for CVE-2026-1529, demonstrating unauthorized organization registration in Keycloak via JWT token manipulation. Includes token…


High-performance Java RPC and microservices framework with service discovery, traffic management, observability, and built-in security for building…

Clone of suds 0.4 + suds-0.4-CVE-2013-2217.patch

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

The Secure CommsOS™ for mission-critical operations

The easiest, and most secure way to access and protect all of your infrastructure.

Industrial-grade C++ RPC framework for building high-performance distributed systems, supporting multiple protocols (HTTP, gRPC, Redis, Thrift) with…

A next-generation crawling and spidering framework.

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

OpenID Certified OAuth 2.0 and OpenID Connect provider for token issuance, client management, JWKS, and login/consent flow orchestration via headless…

DOMPurify - a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMPurify works with a secure default, but offers a lot of…

Traccar GPS Tracking System

Curated collection of commands to validate leaked API keys from bug bounty programs and penetration tests, covering 80+ services including AWS,…

API-first identity and user management system for cloud-native applications. Handles login, registration, MFA, recovery, and profile management with…

Open Source Vulnerability Management Platform

OPNsense GUI, API and systems backend