
CVE-2023-44765_ConcreteCMS-Stored-XSS---Associations
Cross Site Scripting vulnerability in ConcreteCMS v.9.2.1 allows a local attacker to execute arbitrary code via a crafted script to the Plural Handle…

Cross Site Scripting vulnerability in ConcreteCMS v.9.2.1 allows a local attacker to execute arbitrary code via a crafted script to the Plural Handle…

go CVE-2023-24538 patch issue resolver - Dunfell

go CVE-2023-24538 patch issue resolver - Kirkstone


bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

Tool for reverse engineering of Angular applications

Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependencies. CI and…

AI-powered SAST scanner that finds auth bypass, IDOR, and logic bugs Semgrep/CodeQL miss. Free GitHub Action. Supports Python, JS/TS, Go, PHP, Ruby.

Static analysis of wordpress plugins

"Sucosh" is an automated Source Code vulnerability scanner and assessment framework for Python(Flask-Django) & NodeJs capable of performing code…

PoC of CVE-2025-22352

A proof of concept for Joomla's CVE-2015-8562 vulnerability

bypass all stages of the password reset flow

CVE-2025-55182 Detector. Find which of your GitHub repositories are exposed to the critical React/Next.js RCE vulnerability and generate a clean…

Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API…

Proof of concept for CVE-2016-4463