
goWAPT
Go Web Application Penetration Test

Go Web Application Penetration Test

The hackers tool belt

CVE-2026-63223 — CI4RCE: CodeIgniter 4 is_image/mime_in File Upload RCE. Magic bytes bypass (getExtension vs getClientExtension). CVSS 9.8 | CWE-434…

Passive security checker for CVE-2026-48908 affecting SP Page Builder.

This tool scans WordPress sites for vulnerabilities in the "RegistrationMagic" plugin (CVE-2024-10508). It checks for the presence of a specific…

Scans WordPress Forminator for CVE-2026-15748 unauthenticated RCE. Detects vulnerable sites, crawls forms, extracts nonces, runs safe upload tests.

w3af: web application attack and audit framework, the open source web vulnerability scanner.

A modular vulnerability scanner with automatic report generation capabilities.

Passive and active web vulnerability scanner with plugin-based detection for XSS, SQL injection, command injection, and sensitive file disclosure.…

PwnXSS: Vulnerability (XSS) scanner exploit

Web application vulnerability scanner

Python-based XSS vulnerability scanner with support for POST/GET requests, parameter injection in cookies/referer/user-agent, and multiple encoding…

This extension will help you to detect GET/POST based XSS vulnerability in any website easily

traxss | Automated XSS Vulnerability Scanner Currently In Development 🐍 HACKTOBERFEST PROJECT 2019

Web Application Vulnerability Scanner.

Apache HTTP Server Vulnerability Testing Tool | PoC for CVE-2024-38472 , CVE-2024-39573 , CVE-2024-38477 , CVE-2024-38476 , CVE-2024-38475 ,…

Erebus is a fast tool for parameter-based vulnerability scanning using a Yaml based template engine like nuclei.

Burp extension to scan Log4Shell (CVE-2021-44228) vulnerability pre and post auth.