
CVE-2021-4191-EXPLOIT
A PoC exploit for CVE-2021-4191 - GitLab User Enumeration.

A PoC exploit for CVE-2021-4191 - GitLab User Enumeration.

Clone of suds 0.4 + suds-0.4-CVE-2013-2217.patch

Hybrid ML and heuristic-based URL phishing detector with real-time analysis, explainable confidence scores, and REST API for programmatic security…

An intentionally designed broken web application based on REST API.

Python-based Burp Suite extension is designed to detect the presence of CVE-2025-31324

Vulnerable REST API with OWASP top 10 vulnerabilities for security testing

Exploit for CVE-2021-30180 targeting Apache Dubbo RPC framework, enabling remote code execution via crafted RPC requests in vulnerable versions.

Imperva's customizable API attack tool takes an API specification as an input, generates and runs attacks that are based on it as an output.

A web-based vulnerability scanner for CVE-2025-55182, a critical Remote Code Execution (RCE) vulnerability in React Server Components.

A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.

A headless , scriptable, command-line based MITM proxy designed for network traffic interception, analysis, and modification on Windows systems.

Http request smuggling vulnerability scanner

Automated authorization testing tool that detects unauthorized access by scanning URLs with role-based credentials using YAML templates.

Collaborative application security testing between humans and agents via CLI and MCP

CyberArk Security Audit

PoC for CVE-2026-44848: Portainer missing authorization on Docker plugin endpoints -> host RCE (GHSA-rrmm-9v76-h3p4). Stdlib-only Python.

This script exploits the CVE-2024-40094 vulnerability in graphql-java

Proof-of-concept exploit for CVE-2026-11103 demonstrating GraphQL rate-limit bypass through batching and field aliases; includes vulnerable Node.js…