
zaproxy
Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

The Swiss Army knife for automated Web Application Testing

w3af: web application attack and audit framework, the open source web vulnerability scanner.

Vulmap 是一款 web 漏洞扫描和验证工具, 可对 webapps 进行漏洞扫描, 并且具备漏洞验证功能

htcap is a web application scanner able to crawl single page application (SPA) recursively by intercepting ajax calls and DOM changes.

Web application vulnerability scanner

Go Web Application Penetration Test

Python-based XSS vulnerability scanner with support for POST/GET requests, parameter injection in cookies/referer/user-agent, and multiple encoding…

This extension will help you to detect GET/POST based XSS vulnerability in any website easily

traxss | Automated XSS Vulnerability Scanner Currently In Development 🐍 HACKTOBERFEST PROJECT 2019

Web Application Vulnerability Scanner.


A comprehensive web application security testing toolkit that combines 10 powerful penetration testing features into one tool.

Modular web vulnerability scanner with template-driven detection engine for automated testing of XSS, SQLi, LFI, RFI, and sensitive file/directory…

SqlMap_BurpSuite

FAST WEB APPLICATION VULNERABILITY SCANNER written in python3

RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)
