
behat-config-leaks
BeHat Configuration file leaking

BeHat Configuration file leaking

Appspec YML and YAML leaks

EventON (Free < 2.2.8, Premium < 4.5.5) - Information Disclosure

SAP Knowledge Warehouse <=7.5.0 - Cross-Site Scripting

SOUND4 Impact/Pulse/First/Eco <=2.x - Information Disclosure

Laravel Ignition contains a cross-site scripting vulnerability when debug mode is enabled.

CGI Print ENV leaking

CVE-2021-46074 - A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodester Vehicle Service Management System 1.0 via the Settings…

CVE-2021-46069 - A Stored Cross Site Scripting (XSS) vulnerability exists in Vehicle Service Management System 1.0 via the Mechanic List Section in…

Share Buttons – Social Media <= 1.0.2 - Unauthenticated SQL Injection

Web vulnerability scanner written in Python3

AI-powered bug bounty hunting toolkit that works with or without subscription.

WPScan rewritten in Python + some WPSeku ideas

Application scanning component of purpleteam

Http request smuggling vulnerability scanner

automated web assets enumeration & scanning [DEPRECATED]

Nuclei Templates Collection

Flags parameters commonly associated with injection, SSRF, path traversal, IDOR, and SSTI, via passive Burp/ZAP scanning; also organizes manual…