
CVE-2025-0108-Authentication-Bypass-checker
Python script that tests PAN-OS devices for CVE-2025-0108 authentication bypass by sending crafted HTTP requests and analyzing responses.

Python script that tests PAN-OS devices for CVE-2025-0108 authentication bypass by sending crafted HTTP requests and analyzing responses.

Bash script that adds custom HTTP headers to requests for bulk testing of 403 bypass techniques on web applications.

SAPGateBreaker is a PoC exploit for CVE-2022-22536, a critical HTTP Request Smuggling vulnerability in SAP NetWeaver. It demonstrates how to bypass…

Redacted cPanel/WHM authentication bypass analysis and authorized checker

Firewall bypass script based on DNS history records. This script will search for DNS A history records and check if the server replies for that…

Detects CVE-2025-64446 authentication bypass in FortiWeb by exploiting a path traversal to confirm vulnerability, without administrative actions.

Detection tool for cPanel/WHM CVE-2026-41940 (CRLF injection auth bypass). Verify vulnerability on servers you own or have permission to test. For…

Sigma rule for detecting CVE-2025-29927 exploitation via suspicious x-middleware-subrequest HTTP headers in Next.js applications, with detection…

Simulates CVE-2025-29927, a critical Next.js vulnerability allowing attackers to bypass middleware authorization by exploiting the internal…

Vulnerable docker container for Really Simple Security (Free, Pro, and Pro Multisite) 9.0.0 – 9.1.1.1 – Authentication Bypass CVE-2023-50164

A scanner for the FortiNet vulnerability CVE-2025-64446

Starlette Host-Header URL Confusion Lab (X41-2026-002) - CVE-2026-48710

Python-based scanner that detects CVE-2025-29927 middleware bypass vulnerability in Next.js sites by sending a crafted x-middleware-subrequest header…

Provides a manual patch for October CMS authentication bypass vulnerabilities CVE-2021-32648 and CVE-2021-29487 by converting loose to strict…

Detects an authentication bypass vulnerability in Palo Alto PAN-OS (CVE-2025-0108).

CVE-2025-29927: Next.js Middleware Exploit

Published security research repository featuring academic papers on domain hijacking, 2FA bypass, and large-scale spoofing techniques, authored by…

Reproduce CVE-2019-1010054 CSRF vulnerability in Dolibarr 7.0.0 with a Vagrant-based lab environment. Includes detailed walkthrough for password…