
CVE-2025-55182-research
🛡️ Explore CVE-2025-55182, a critical RCE vulnerability in React's Flight Protocol, demonstrating exploitation techniques and mitigation strategies.

🛡️ Explore CVE-2025-55182, a critical RCE vulnerability in React's Flight Protocol, demonstrating exploitation techniques and mitigation strategies.


Go-based Web Application Firewall library compatible with ModSecurity SecLang rules and OWASP Core Rule Set v4, providing real-time HTTP traffic…

WAFNinja is a tool which contains two functions to attack Web Application Firewalls.

evilwaf is a penetration testing tool designed to detect and bypass common Web Application Firewalls (WAFs).

Local file inclusion exploitation tool

A SOCKS proxy written in Python that randomizes your source IP address. Round-robin your evil packets through SSH tunnels or give them billions of…

Tests your WAF with +160 payloads


CVE-2025-55182-bypass-waf

A new way to exploit CVE-2025-58360 bypass WAF

RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)

React Shell & Next.js RSC Exploit Tool (CVE-2025-55182)


Exploit Path Traversal in esm-dev

PoC for CVE-2025-41373 Authenticated SQL Injection in Gandia Integra Total v2.1.2217.3–4.4.2236.1


This Burp Suite extension allows for the automatic creation and deletion of an upstream SOCKS5 proxy on popular cloud services.