
freddy
Automatically identify deserialisation issues in Java and .NET applications by using active and passive scans

Automatically identify deserialisation issues in Java and .NET applications by using active and passive scans

CLI tool to detect HTTP Request Smuggling vulnerabilities using time-delay analysis with built-in CL.TE and TE.CL payloads for automated security…

OWASP VBScan is a Black Box vBulletin Vulnerability Scanner

A Burp extension to detect and exploit versions of Telerik Web UI vulnerable to CVE-2017-9248.


Nuclei template to detect Apache servers vulnerable to CVE-2024-38473

Burp Suite extension to detect the Next.js / React Server Components (RSC) Remote Code Execution vulnerability (CVE-2025-55182 & CVE-2025-66478).


A Nuclei template to detect CVE-2025-29927 the Next.js authentication bypass vulnerability

exploit CVE-2024-40725 (Apache httpd) with

The tool helps in quickly identifying vulnerabilities by examining a comprehensive list of potential paths on a website, making it useful for…

Proof of concept for the command injection vulnerability affecting the ZTE MF286R router, including an RCE exploit.

WordPress Privilege Escalation Checker

This is a CVE-2025-29927 Scanner.

