
cve-2025-29927-poc
Authorization Bypass in Next.js Middleware

Authorization Bypass in Next.js Middleware

Brute Force Wordpress Blogs.

Macally WIFISD2

Proof-of-concept exploit for CVE-2023-27350 in PaperCut NG; exploits SetupCompleted access-control flaw to bypass authentication and execute code as…

Demonstrates CVE-2022-31692 Spring Security authorization bypass with a minimal Java exploit, enabling security researchers to test and understand…

Proof-of-concept exploit for CVE-2025-29927, a Next.js middleware bypass vulnerability. Includes version fingerprinting, configurable header…

Simulates an attack exploiting CVE-2024-32962 to forge SAML messages and gain unauthorized permissions, demonstrating the vulnerability's impact.

Repository for CVE-2023-4800 vulnerability.

Feature toggle framework for Java enabling runtime feature activation, role-based access, AOP-driven toggling, monitoring, audit trails, and a web…

Open-source tool to bypass windows and linux passwords from bootable usb

Dumps AD FS signing keys, token certificates, and relying-party configuration, enabling forged federated authentication tokens for red-team…

Burp plugin which supports in finding privilege escalation vulnerabilities

Secure CLI password manager (Argon2id + AES-256-GCM)

Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease application…

Automated HTTP Request Repeating With Burp Suite

Burp Extension for testing authorization issues. Automated request repeating and parameter value extraction on the fly.

Burp Suite Extension useful to verify OAUTHv2 and OpenID security

OAuth Request Crafter