


CVE-2025-6389

A fully automated, accurate, and extensive scanner for finding text4shell RCE CVE-2022-42889

Detect CVE-2025-55182 & CVE-2025-66478 in Next.js/RSC applications (Rust)

A fully automated, accurate, and extensive scanner for finding log4j RCE CVE-2021-44228

StoreKeeper for WooCommerce <= 14.4.4 - Unauthenticated Arbitrary File Upload

A new way to exploit CVE-2025-58360 bypass WAF

CVE-2025-55182 - Tool React2Shell



High-performance Go implementation for detecting React Server Components RCE vulnerabilities (CVE-2025-55182 & CVE-2025-66478).

CVE-2025-25369

Exploit Path Traversal in esm-dev

PoC for CVE-2025-41373 Authenticated SQL Injection in Gandia Integra Total v2.1.2217.3–4.4.2236.1

NAXSI is an open-source, high performance, low rules maintenance WAF for NGINX

一款功能强大的漏洞扫描器,子域名爆破使用aioDNS,asyncio异步快速扫描,覆盖目标全方位资产进行批量漏洞扫描,中间件信息收集,自动收集ip代理,探测Waf信息时自动使用来保护本机真实Ip,在本机Ip被Waf杀死后,自动切换代理Ip进行扫描,Waf信息收集(国内外100+款waf信息)包括安全…

Generic attack detection rule set for web application firewalls, protecting against OWASP Top Ten and common vulnerabilities with minimal false…