
REST-Attacker
Automated penetration testing framework for REST APIs with OpenAPI-driven test generation, 32 OWASP-based security tests, and built-in access control…
api-security-testingpenetration-testingvulnerability-scanners+1
81

Automated penetration testing framework for REST APIs with OpenAPI-driven test generation, 32 OWASP-based security tests, and built-in access control…

Apache APISIX Remote Code Execution (CVE-2022-24112) proof of concept exploit

CVE-2026-27944 - Nginx UI Unauthenticated Backup Download & Decryption

CVE-2018-25031 tests

YAMCS yamcs-core < 5.12.7 lacks rate limiting on POST /auth/token. An unauthenticated attacker can perform unlimited brute-force attempts against any…

The vulnerability exists in the Student Payment API. The application fails to properly validate whether the user requesting a receipt is authorized…