
CVE-2022-36539
Insecure Permissions WeDayCare

Insecure Permissions WeDayCare

Broken Object Level Authorization (BOLA) in CERN's Indico leads to authenticated user enumeration.

The SSC REST API contains Insecure Direct Object Reference (IDOR) vulnerabilities in Fortify Software Security Center (SSC) 17.10, 17.20 & 18.10

The SSC REST API contains Insecure Direct Object Reference (IDOR) vulnerabilities in Fortify Software Security Center (SSC) 17.10, 17.20 & 18.10



Go client to communicate with Chaos DB API.

The AI toolkit for building reliable browser automations

A fast WordPress plugin enumeration tool

Tests your WAF with +160 payloads

Use Cloudflare to create HTTP pass-through proxies for unique IP rotation, similar to fireprox

WEB SERVICE SECURITY ASSESSMENT TOOL

Academic purposes only. Attack against Salesforce lightning with guest privilege.

Hidden parameters discovery suite


Ruby command-line interface to Burp Suite's REST API

A comprehensive web application security testing toolkit that combines 10 powerful penetration testing features into one tool.