
LetterPress-1.2.1-Open-Redirection-Via-Html-Injection-Vulnerability
In LetterPress plugin <= 1.2.1 is vulnerable to Html Injection Vulnerability which can futher leads to Open Redirection Vulnerabilty.

In LetterPress plugin <= 1.2.1 is vulnerable to Html Injection Vulnerability which can futher leads to Open Redirection Vulnerabilty.

Survey XSS combined with CSRF leads to Admin Account Takeover in Concrete5 8.5.4

Repository for CVE-2023-4549 vulnerability.

RiteCMS 3.0 is affected by File Upload - XSS vulnerability that allows attackers to upload a PDF file with a hidden XSS that when executed will…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

a CLI for ephemeral penetration testing

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

Multi-purpose WiFi penetration testing toolkit for M5Stack devices. Performs network scanning, evil-twin attacks, deauthentication, captive portal…

Generate malicious PDF test files for penetration testing, bug bounty hunting, and red teaming. Tests SSRF, XSS, XXE, NTLM credential theft, and data…

Simulate realistic phishing campaigns with credential harvesting, email tracking, and landing page cloning for security awareness training and…

The SteaLinG is an open-source penetration testing framework designed for social engineering

CamJacking is a tool designed for use in human penetration testing tool. It is intended to simulate potential security threats by testing the…

All-in-One Hacking Tools For Hackers! And more hacking tools! For termux.

Python-Based Pentesting CLI Tool

An XSS exploitation command-line interface and payload generator.

A script to configure a TP-Link MR3040 running OpenWRT into a simple, yet powerful penetration-testing "dropbox".

Dependency-free Python PoC generator for CVE-2025-24071 that crafts a malicious .library-ms file in a ZIP to trigger Windows Explorer NTLM hash…

Educational proof-of-concept demonstrating how to embed a Meterpreter backdoor into a PDF file exploiting CVE-2010-1240, with step-by-step Metasploit…