
0xMiddleware
CVE-2025-29927: Next.js Middleware Exploit

CVE-2025-29927: Next.js Middleware Exploit
Automated Web Application Firewall fingerprinting tool that identifies and detects over 200 WAF products by analyzing HTTP responses to normal and…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines,…

Curated list of open-source web security scanners, including general-purpose scanners, infrastructure scanners, and fuzzers, ordered by GitHub stars.

Simple python script supported with BurpBouty profile that helps you to detect SQL injection "Error based" by sending multiple requests with 14…

Module-based web vulnerability scanner and bug bounty automation framework with built-in XSS, SSTI, SSRF, and Firebase detection engines. Designed to…

Web application security scanner created by lcamtuf for google - Unofficial Mirror

htcap is a web application scanner able to crawl single page application (SPA) recursively by intercepting ajax calls and DOM changes.

Nuclei scripts created by @rxerium for zero days / actively exploited vulnerabilities.

XSS scanner that detects Cross-Site Scripting vulnerabilities in website by injecting malicious scripts

Detects time-based SQL injection by sending crafted GET requests to multiple URLs and measuring delayed responses; includes cookie support for…

The tool helps in quickly identifying vulnerabilities by examining a comprehensive list of potential paths on a website, making it useful for…

Async Python scanner that detects CVE-2025-29927 in Next.js apps by processing URL lists with aiohttp, connection pooling, caching, and chunked…

This is a tool used by several security researchers to find Carriage Return Line Feed Injection Bug

This is a tool used by several security researchers to find Open Redirect Bug

🎯 Vulnerability scanner for SharePoint servers affected by CVE-2025-53770. Detects unsafe deserialization using ToolPane.aspx with a crafted…

A vulnerability was found in PHPgurukul visitor management system 1.0. it has been rated as problemic. Affected by the issue is some unknown…