
react2shell-scanner
RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)

RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)

XSSYA (Cross Site Scripting Scanner & Vulnerability Confirmation)

CVE-2025-55182 RCE vulnerability in Next.js/React RSC servers (exploit and scanner)

CVE-2025-55182复现环境及RCE回显poc

Advanced security testing tool for CVE-2025-55182 vulnerability assessment in Next.js applications. Features interactive shell, batch scanning, WAF…

Go-based scanner and exploitation tool for CVE-2025-55182 (Next.js RCE). Supports batch scanning, command execution, Godzilla memory shell injection,…

Multi-technique vulnerability detector for CVE-2025-55182 in React/Next.js applications. Tests gadget chains, RCE payloads, and WAF bypass variants…

A evolved version of assetnote CVE-2025-55182 scanner

High Fidelity Detection Mechanism for RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)

Scans for CVE-2025-55182, a critical RCE in React Server Components, with safe-check mode, WAF bypass, and multi-target scanning.

Precision-Based Detection of RSC/Next.js Remote Code Execution Vulnerabilities (CVE-2025-55182, CVE-2025-66478)

From Dork to Download: Automating Google Dorks with Playwright

An advanced command-line framework for discovery, validation, and exploitation of CVE-2025-55182 and CVE-2025-66478 affecting Next.js applications…

Firewall bypass script based on DNS history records. This script will search for DNS A history records and check if the server replies for that…

Python-based interactive packet manipulation library for forging, decoding, sending, capturing, and analyzing network packets across a wide range of…

SQL injection script for MSSQL that extracts domain users from an Active Directory environment based on RID bruteforcing

Local file inclusion exploitation tool

The most powerful CRLF injection (HTTP Response Splitting) scanner.