


NextSploit is a command-line tool designed to detect and exploit CVE-2025-29927, a security flaw in Next.js

Unauthenticated Remote Code Execution via SSH Command-Line Argument Injection Cockpit versions 327 – 359 | CVSS 9.8 Critical | CWE-78

High Fidelity Detection Mechanism for RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)

CVE-2026-33017 - Langflow Unauthenticated RCE Exploit

PHPGGC is a library of PHP unserialize() payloads along with a tool to generate them, from command line or programmatically.

CVE-2025-55182复现环境及RCE回显poc

A Go-based wrapper for the KNOXSS API to automate XSS vulnerability testing.

RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)

A command-line tool for detecting CVE-2025-55182 and CVE-2025-66478 in Next.js applications using React Server Components.

CVE-2025-55182 & CVE-2025-66478 Detection Tool for Next.js RSC RCE

Command-line scanner for detecting and exploiting CVE-2025-55182 (React Server Components RCE) in Next.js applications. Supports custom command…

WordPress Privilege Escalation Checker

Interactive command-line shell for exploiting Apache Struts CVE-2017-5638. Automates HTTP/HTTPS exploitation with real-time shell interaction on…

Bash-based scanner for detecting and exploiting CVE-2025-55182 (React Server Components RCE) in Next.js applications. Supports custom command…

GodOfWar - Malicious Java WAR builder with built-in payloads

Exploit Microsoft Zero-Day Vulnerability Follina (CVE-2022-30190)

A Command Line based python tool for exploit Zero-Day vulnerability in MSDT (Microsoft Support Diagnostic Tool) also know as 'Follina' CVE-2022-30190.