
CSPBypass
CSPBypass.com, a tool designed to help ethical hackers bypass restrictive Content Security Policies (CSP) and exploit XSS (Cross-Site Scripting)…

CSPBypass.com, a tool designed to help ethical hackers bypass restrictive Content Security Policies (CSP) and exploit XSS (Cross-Site Scripting)…

CNAPPgoat is an open source project designed to modularly provision vulnerable-by-design components in cloud environments.

EvilMist is a collection of scripts and utilities designed to support cloud penetration testing & red teaming. The toolkit helps identify…

The CVE-2024-46982 is cache poisoning of next_js some site have API to load their image

PowerShell script to mitigate CVE-2022-30190 by updating a registry DWORD key, designed for deployment via RMM tools like ConnectWise Automate.

teler-waf is a Go HTTP middleware that protects local web services from OWASP Top 10 threats, known vulnerabilities, malicious actors, botnets,…

Security testing tool for analyzing HTTP 403 responses and identifying access control misconfigurations in web applications.

Nuclei template to detect Apache servers vulnerable to CVE-2024-38473

Bash script to detect vulnerable XZ Utils versions (CVE-2024-3094) and downgrade to a safe release, supporting multiple Linux distributions and…

CVE-2025-5815: An unauthenticated vulnerability in the WordPress Traffic Monitor plugin (≤ 3.2.2) allowing remote attackers to disable bot logging…

A PowerShell script to temporarily mitigate the CVE-2024-38063 vulnerability by disabling IPv6 on Windows systems. This workaround modifies the…

Bash script to detect and remediate CVE-2024-3094, a critical supply-chain vulnerability in the XZ Utils library, with automatic safe version…

Tiny File Manager v2.4.7 and below are vulnerable to Cross Site Scripting

Directory traversal vulnerability in the spring-boot-actuator-logview library

Script to fix Nginx CVE-2013-4547, a URI parsing vulnerability allowing unauthorized access. Applies configuration patch to prevent directory…

CVE-2025-29927 is a critical vulnerability in Next.js, a popular React-based web framework. The flaw exists in how the middleware feature handles…

Solar Appscreener XXE

cve-2023-2245