
zaproxy
Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…


Penetration test of a Drupal web app — CVE-2018-7600 (Drupalgeddon 2) exploited using Nmap, Burp Suite & Metasploit | Internship @ BB CyberSec

The Swiss Army knife for automated Web Application Testing

python 2.7

The Clickjacking Exploit Detector uses webpage scanning techniques to identify potential vulnerabilities and provide analysis of those elements.

CVE-2021-46069 - A Stored Cross Site Scripting (XSS) vulnerability exists in Vehicle Service Management System 1.0 via the Mechanic List Section in…

CVE-2021-46072 - A Stored Cross Site Scripting (XSS) vulnerability exists in Vehicle Service Management System 1.0 via the Service List Section in…

CVE-2021-46074 - A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodester Vehicle Service Management System 1.0 via the Settings…

A comprehensive web application security testing toolkit that combines 10 powerful penetration testing features into one tool.

CRLFISCANNER is a lightweight and powerful CLI tool designed for bug bounty hunters and penetration testers to automatically detect CRLF injection…

RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)

Detects time-based SQL injection by sending crafted GET requests to multiple URLs and measuring delayed responses; includes cookie support for…

CVE-2025-29927: Next.js Middleware Exploit

Share Buttons – Social Media <= 1.0.2 - Unauthenticated SQL Injection

Go Web Application Penetration Test

Exploit for CVE-2024-38856 affecting Apache OFBiz versions before 18.12.15

Adobe Experience Manager Childlist Selector - Cross-Site Scripting