
CVE-2024-10924
Really Simple Security (Free, Pro, and Pro Multisite) 9.0.0 – 9.1.1.1 – Authentication Bypass

Really Simple Security (Free, Pro, and Pro Multisite) 9.0.0 – 9.1.1.1 – Authentication Bypass

PoC exploit code for CVE-2021-26855

Field-validated offensive security skill pack with 169 techniques for reconnaissance and penetration testing. Covers CORS, SSRF, subdomain takeover,…

HackBox is a powerful and comprehensive tool that combines a variety of techniques for web application and network security assessments, including…

SSRF (Server Side Request Forgery) testing resources

Automated web vulnerability scanner combining URL discovery tools (ParamSpider, waybackurls, gauplus, hakrawler, katana) with Nuclei fuzzing…


Smart context-based SSRF vulnerability scanner.

CVE-2026-44578 scanner and exploit tool for SSRF in Next.js WebSocket upgrade handler. Detects vulnerable versions, extracts cloud metadata, and…

Authenticated SSRF in Grafana

[CVE-2021-21975] VMware vRealize Operations Manager API Server Side Request Forgery (SSRF)

Poc of SSRF for Request-Baskets (CVE-2023-27163)

Server-Side Request Forgery (SSRF)

Detects unauthenticated MLflow webhook SSRF (CVE-2026-64849) that accesses internal or cloud metadata services and leaks response details via…

PoC and Disclosure for CVE-2023-7231 – Memcached Gopher RCE chain

fsociety Hacking Tools Pack – A Penetration Testing Framework

The Offensive Manual Web Application Penetration Testing Framework.

A tool that transforms Firefox browsers into a penetration testing suite