
react2shell-evolved
A evolved version of assetnote CVE-2025-55182 scanner

A evolved version of assetnote CVE-2025-55182 scanner

An advanced command-line framework for discovery, validation, and exploitation of CVE-2025-55182 and CVE-2025-66478 affecting Next.js applications…

CVE-2025-55182 & CVE-2025-66478 proof of concepts

Log4j-RCE (CVE-2021-44228) Proof of Concept

python3写的综合扫描工具,主要用来存活验证,敏感文件探测(目录扫描/js泄露接口/html注释泄露),WAF/CDN识别,端口扫描,指纹/服务识别,操作系统识别,POC扫描,SQL注入,绕过CDN,查询旁站等功能,主要用来甲方自测或乙方授权测试,请勿用来搞破坏。

Hide your Powershell script in plain sight. Bypass all Powershell security features

Tests your WAF with +160 payloads

Tools for auditing WAFS

A program for testing WAF functionality

A Proof-Of-Concept Exploit for CVE-2021-44228 vulnerability.


A Modular Framework for Pentesters and Bug Hunters written in python.

a simple react2shell poc with basic waf bypass




Detection, mitigation, and reverse-engineering tooling for CVE-2026-41940 (SessionScribe): the cPanel/WHM unauthenticated session-forgery…
