
nextjs-scanner
This script scans a list of URLs to detect if they are using **Next.js** and determines whether they are vulnerable to **CVE-2025-29927**. It…

This script scans a list of URLs to detect if they are using **Next.js** and determines whether they are vulnerable to **CVE-2025-29927**. It…

Read-only CLI to check whether a WordPress site is exposed to WP2Shell (CVE-2026-63030 / CVE-2026-60137)

CVE-2026-33017 - Langflow Unauthenticated RCE Exploit

IP CIDRs (presumably as input, maybe command line or file) and checks ports 2083 and 2087 for openness

A tool to quickly do keyword searches over Gitlab and Github for OSINT & bug bounty recon


Offline command line lookup utility for GTFOBins (https://github.com/GTFOBins/GTFOBins.github.io), LOLBAS (https://github.com/LOLBAS-Project/LOLBAS),…

Bash script for DNS resolution checking, enabling quick domain-to-IP lookups and basic network reconnaissance from the command line.

High-performance web path discovery and directory brute-forcing tool. Discovers hidden files, directories, and endpoints using customizable…

Command-line tool for discovering SaaS platforms a company uses via DNS enumeration

Read-only Azure DevOps enumeration tool that queries the REST API to surface projects, repositories, service connections, builds, pipeline secrets,…


WordPress Sites Vulnerability Checker for CVE-2020-35489 - "Educational Use Only"

Command-line scanner for detecting and exploiting CVE-2025-55182 (React Server Components RCE) in Next.js applications. Supports custom command…

A command-line tool for detecting CVE-2025-55182 and CVE-2025-66478 in Next.js applications using React Server Components.

Command-line tool for discovering SaaS platforms a company uses via DNS enumeration

This Rust Code is designed to check SSH servers for the CVE-2024-6387 vulnerability

Unauthenticated RCE PoC for CVE-2026-48908 SP Page Builder (Joomla) arbitrary file upload and remote code execution exploit with mass scaning…