
coraza
Go-based Web Application Firewall library compatible with ModSecurity SecLang rules and OWASP Core Rule Set v4, providing real-time HTTP traffic…

Go-based Web Application Firewall library compatible with ModSecurity SecLang rules and OWASP Core Rule Set v4, providing real-time HTTP traffic…

Cross Origin Resource Sharing MisConfiguration Scanner

A comprehensive web application security testing toolkit that combines 10 powerful penetration testing features into one tool.

Proof of concept showing how to exploit the CVE-2018-11759

FAST WEB APPLICATION VULNERABILITY SCANNER written in python3

CVE-2025-68428 Proof of Concept

Drag and Drop Multiple File Uploader PRO - Contact Form 7 v5.0.6.1 Path Traversal (CVE-2023-1112)

Next.js Middleware Authorization Bypass

Confluence Broken Access Control

CVE-2025-31651 PoC

Tiny File Manager v2.4.7 and below are vulnerable to Cross Site Scripting

Directory traversal vulnerability in the spring-boot-actuator-logview library

CVE-2023-25202: Insecure file upload mechanism


Apache Kylin有一个restful api会在没有任何认证的情况下暴露配置信息

Popup Plugin For WordPress - ConvertPlus <= 3.5.30 - Missing Authorization to Authenticated (Subscriber+) Limited Options Update