
struts_rest_rce_fuzz-CVE-2017-9805-
Simple python script to fuzz site for CVE-2017-9805

Simple python script to fuzz site for CVE-2017-9805

Erebus is a fast tool for parameter-based vulnerability scanning using a Yaml based template engine like nuclei.


Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load :artificial_satellite: :crab:

Automated web vulnerability scanner combining URL discovery tools (ParamSpider, waybackurls, gauplus, hakrawler, katana) with Nuclei fuzzing…


Smart context-based SSRF vulnerability scanner.

Smart ssrf scanner using different methods like parameter brute forcing in post and get...

Nuclei templates for detecting CVE-2026-44578 (Next.js WebSocket Upgrade SSRF) with multi-cloud metadata validation, Next.js fingerprinting, and…

CVE-2022-46364 Apache CXF XOP:Include SSRF / LFI

Poc of SSRF for Request-Baskets (CVE-2023-27163)

The Offensive Manual Web Application Penetration Testing Framework.

Automated API security testing tool that generates tests from OpenAPI specs, fuzzes inputs, and checks for OWASP API Top 10 vulnerabilities including…

Original CVEs, exploit PoCs, and security advisories with detailed vulnerability chains, privilege escalation, and container escape techniques for…

Burp Suite extension for API security testing with 15 attack types, 108+ payloads, intelligent fuzzing, BOLA/IDOR detection, AI integration, and…

TInjA is a CLI tool for testing web pages for template injection vulnerabilities and supports 44 of the most relevant template engines for eight…

Automated prompt injection testing framework for LLM-integrated applications with dual-LLM architecture.

GraphQL penetration testing tool that exploits weak rate limits and cost analysis to brute-force credentials, bypass 2FA, enumerate users, and fuzz…