
java-html-sanitizer
Takes third-party HTML and produces HTML that is safe to embed in your web application. Fast and easy to configure.

Takes third-party HTML and produces HTML that is safe to embed in your web application. Fast and easy to configure.

Audits GitLab projects against the CIS GitLab Benchmark via read-only API checks, generating JSON reports on compliance and hardening recommendations.

Suppress vulnerabilities applying Kubernetes context to scans

Proof-of-concept exploit for OPC UA authentication bypass using None security policy, including a simulated server to demonstrate unauthorized…

Exploits CVE-2026-21005 by poisoning Docker Registry V2 Schema 1 manifests via unauthenticated pushes, enabling tag overwrite and supply-chain…

Validates Google Maps API keys against 21 endpoints, revealing exposed services with PoC URLs, proxy support, and quiet mode for focused auditing.

This tool is designed to scan and identify whether a website has an exposed ".git" directory, which may contain sensitive information such as source…

There is a path injection vulnerability in OpenPLC-v3, which arises from the program not performing any validity checks on the file path parameters…

PowerShell script to remediate CVE-2013-0007 by unregistering and renaming unsupported MSXML 4.0 DLLs, suppressing vulnerability scanner findings on…

HAProxy-CVE-2023-45539-PoC

Demonstration of CVE-2025-29927: Next.js middleware authentication bypass via x-middleware-subrequest header spoofing. Includes vulnerable and fixed…

Repository contains psexec, which will help to exploit the forgotten pipe

Burp Suite Extension useful to verify OAUTHv2 and OpenID security

Subdomain takeover vulnerability checker

CVE-2021-42562: Improper Access Control in MITRE Caldera

Multi-cloud security auditing tool that leverages cloud provider APIs to gather configuration data, assess security posture, and generate HTML…

Wondershare MobileTrans 4.5.6 - Unquoted Service Path