
OllamaHound
Mass reconnaissance, version fingerprinting, CVE tester and live exploitation framework for Ollama open instances.

Mass reconnaissance, version fingerprinting, CVE tester and live exploitation framework for Ollama open instances.

CVE-2022-1388 F5 BIG-IP iControl REST RCE

Mass Hunting & Exploitation PoC for CVE-2025-55182 & CVE-2025-66478

Unauthenticated RCE scanner for FortiSandbox CVE-2026-39808 with canary-based verification, command execution, and pipeline integration for mass…

一個測試CVE-2024-4577和CVE-2024-8926的安全滲透工具

Multi-target unauthenticated RCE scanner for CVE-2025-34085 affecting WordPress Simple File List plugin. Uploads, renames, and triggers PHP webshells…

Red/Blue team toolkit for CVE-2026-65643, a cPanel domain parking RCE. Includes exploit with reverse shell, webshell, persistence, and mass scanning,…

Apache Solr instances that may be affected by CVE-2026-44825, related to Velocity Template Remote Code Execution (RCE) conditions.

These are just some script which you can use to detect and exploit the Apache Struts Vulnerability (CVE-2017-5638)

🔥 React2Shell Toolkit - CVE-2025-55182 & CVE-2025-66478

Detection artifact generator for FortiSIEM CVE-2025-25256 unauthenticated remote command execution vulnerability. Sends crafted packets to verify…

使用burp自动检测CVE-2025-55182 Next.js RCE 漏洞

提供批量扫描URL以及执行命令功能。Workspace ONE Access 模板注入漏洞,可执行任意代码

a CLI for ephemeral penetration testing

Strutsy - Mass exploitation of Apache Struts (CVE-2017-5638) vulnerability

Atlassian confluence unauthenticated ONGL injection remote code execution scanner (CVE-2022-26134).

Static security scanner for AI agent skill packages. Detects malicious SKILL.md files and bundled scripts before they run.

Exploit for CVE-2026-82329, an unauthenticated auth bypass in self-hosted JFrog Artifactory, allowing admin token takeover via blank join key.