
noPac
CVE-2021-42287/CVE-2021-42278 Scanner & Exploiter.

CVE-2021-42287/CVE-2021-42278 Scanner & Exploiter.

.Net Assembly loader for the [CVE-2021-42287 - CVE-2021-42278] Scanner & Exploit noPac

cve cve-2026-60206 weblogic saml exploit poc vulnerability oracle scanner security

Open-source security gateway & static scanner for AI agents. Enforce role-based access control (RBAC), human-in-the-loop approvals, segregation of…

Proof-of-concept exploit for CVE-2026-41940, an authentication bypass chain in WHM/cPanel. Multi-threaded scanner that changes root password on…

Automated scanner & post-exploitation toolkit for CVE-2026-41940 — cPanel & WHM root authentication bypass via session-file CRLF injection

Detection scanner for CVE-2026-48710 - Host-header auth bypass in Starlette/FastAPI

Detailed analysis and PoC exploit for CVE-2025-2825, an authentication bypass in CrushFTP. Includes nuclei templates, multi-threaded scanner, and…

Proof-of-concept and mass scanning toolkit for CVE-2025-29927, a Next.js middleware authorization bypass via forged x-middleware-subrequest header.…

CVE-2026-41940 — cPanel & WHM Authentication Bypass via Session-File CRLF Injection

Zero-click authentication bypass exploit for Android ADB Wireless Debugging (CVE-2026-0073). Provides interactive shell, command execution, and…

CVE-2025-29927: Next.js Middleware Bypass Vulnerability

CVE-2026-41940 — cPanel & WHM Authentication Bypass via Session-File CRLF Injection

A tool for secrets management, encryption as a service, and privileged access management

JumpServer is an open-source Privileged Access Management (PAM) platform that provides DevOps and IT teams with on-demand and secure access to SSH,…

The Symfony PHP framework

Certbot is EFF's tool to obtain certs from Let's Encrypt and (optionally) auto-enable HTTPS on your server. It can also act as a client for any…

Checklist of the most important security countermeasures when designing, testing, and releasing your API