
cve-2026-15748
Scans WordPress Forminator for CVE-2026-15748 unauthenticated RCE. Detects vulnerable sites, crawls forms, extracts nonces, runs safe upload tests.

Scans WordPress Forminator for CVE-2026-15748 unauthenticated RCE. Detects vulnerable sites, crawls forms, extracts nonces, runs safe upload tests.

Proof-of-concept exploit script for CVE-2024-6387, a critical unauthenticated remote code execution vulnerability in OpenSSH. Designed for security…

Exploit for CVE-2017-5487 to enumerate WordPress user accounts via the REST API, extracting sensitive information from vulnerable 4.7 installations.

A static code analysis for WordPress (and PHP)


Python script to check for CVE-2023-2745 vulnerability by sending crafted HTTP requests to a target URL and analyzing responses.

Find web directories without bruteforce

A library for detecting known secrets across many web frameworks

Samples Phishing tools made for Linux it contains 30 different type of Phishing Pages made with flask

Identify technologies used on websites.

Information gathering & website reconnaissance | https://phishstats.info/

This tool is design to find admin panel of any website by using custom wordlist or default wordlist easily and allow you to find admin panel trough a…

MASS CVE-2021-41773

This is a tool used by several security researchers to find Carriage Return Line Feed Injection Bug

A POST based reflected Cross Site Scripting vulnerability on has been identified in Keycloak.

This is a tool used by several security researchers to find Open Redirect Bug

WordPress WPS Hide Login <1.9.1 - Information Disclosure

WordPress Contact Form 7 - Unrestricted File Upload