使用burp自动检测CVE-2025-55182 Next.js RCE 漏洞
☆28Dec 8, 2025Updated 9 months ago
Alternatives and similar repositories for Next.js-RCE-Scanner-BurpSuite-Extension-
Users that are interested in Next.js-RCE-Scanner-BurpSuite-Extension- are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- 使用AI与IDA MCP协作挖掘漏洞驱动☆15Nov 14, 2025Updated 10 months ago
- Burp Suite/antsword - Interactive shell (HTTP hijack + POST + AES-256-CBC/BASE64)☆31Dec 8, 2025Updated 9 months ago
- Exploit for CVE-2025-55182 & CVE-2025-66478☆142Dec 10, 2025Updated 9 months ago
- 鸿蒙客户端测试靶场☆29Dec 4, 2025Updated 9 months ago
- ☆107Dec 10, 2025Updated 9 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Vulnerability POC/EXP Collection and Classification☆22Sep 18, 2024Updated 2 years ago
- 由ABC_123编写的Web日志分析工具☆159Jun 28, 2026Updated 2 months ago
- 专为补天平台设计的漏洞提交助手,提高提交速度,挖洞快人一等!!!☆20Apr 1, 2026Updated 5 months ago
- Apache ActiveMQ漏洞综合利用工具(CVE-2015-5254,CVE-2016-3088,CVE-2022-41678,CVE-2023-46604,CVE-2024-32114,CVE-2026-34197,CVE-2026-40466, CVE-2026-…☆82Jun 27, 2026Updated 2 months ago
- JWT密码爆破以及生成工具,可以使用字典或者暴力破解JWT,支持多线程爆破,使用GO语言编写,效率非常高,也可以生成有密码或者没有密码的JWT。☆31Sep 26, 2025Updated 11 months ago
- Yscan 是一款集 Web 资产扫描、图形化 Nuclei POC 管理、漏洞验证与数据整理于一体的实战型安全工具,界面简洁 ,功能强大,助你快速识别互联网暴露面中的薄弱点与攻击面。☆102Apr 2, 2026Updated 5 months ago
- 配合 CVE-2023-22515 后台上传jar包实现RCE☆22Nov 9, 2023Updated 2 years ago
- GodzillaNodeJsPayload☆170Dec 10, 2025Updated 9 months ago
- ☆19Oct 2, 2022Updated 3 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- CVE-2024-21006 exp☆16Jul 29, 2024Updated 2 years ago
- xxljob-Hessian-Exp 一款XXL-JOB <=2.0.1 Hessian反序列化图形化利用工具,可不出网利用☆36Dec 31, 2024Updated last year
- Phishing sender是一款针对钓鱼邮件应急演练所编写的小脚本,实际上是封装了swaks,让人们做演练的时候更加方便快捷。☆16Jun 8, 2022Updated 4 years ago
- 一个批量请求工具☆45Dec 14, 2025Updated 9 months ago
- 一款用于红队攻防演练协作、渗透测试漏洞生命周期管理平台☆37Nov 24, 2025Updated 9 months ago
- 一个基于agentscope开发的ai辅助渗透测试助手☆23Aug 25, 2026Updated 3 weeks ago
- PokerSec nuclei-templates☆23Nov 30, 2025Updated 9 months ago
- 漏洞库☆35Jul 31, 2026Updated last month
- 蓝莲花XSS在线平台 (https://xss.li) 是一款完全免费开源的专业Web安全测试工具,专注于XSS(跨站脚本)漏洞检测与渗透测试。平台采用赛博朋克风格设计,提供实时监控、智能Payload管理、详细日志分析等强大功能,是安全研究人员、渗透测试工程师和CTF选手…☆26Nov 27, 2025Updated 9 months ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Jetty&JDK 均为高版本下的内存马注入☆17Sep 3, 2025Updated last year
- 在极端限制出网情况下,可以使用端口复用的技术☆22Oct 5, 2022Updated 3 years ago
- ChatGPT with BurpSuite☆16May 13, 2023Updated 3 years ago
- 本工具用于批量检测泛微E-cology9中/js/hrm/getdata.jsp接口存在的 SQL 注入漏洞(DVB-2025-9428/QVD-2025-23834)☆26Jun 24, 2025Updated last year
- 本项目是一个插件项目,用于演示插件的使用方法 快速打造自己的谷歌插件该项目使用 vue2.0 + webpack4.0 + less + es6 + vue-router + vuex + axios + element-ui + chrome-plugin 等其他插件开发…☆13Oct 18, 2023Updated 2 years ago
- CVE-2023-22515☆51Nov 10, 2023Updated 2 years ago
- ApolloLnk 是一款功能强大的 Windows LNK 快捷方式生成工具,支持参数隐藏、图标伪造、文件打包等多种高级功能,适用于安全研究、渗透测试等场景。☆43Jan 12, 2026Updated 8 months ago
- FuzzHound是一款专为 API 安全测试设计的智能 Fuzz 工具,支持 Swagger/OpenAPI 文档自动解析,提供多种 Fuzz 模式和漏洞检测能力。像猎犬一样嗅探 API 中的安全漏洞!☆27Apr 21, 2026Updated 4 months ago
- 基于Spring Boot的迷你天猫商城,快速部署运行,所用技术:Spring Boot/MySQL/Druid/Log4j2/Maven/Echarts/Bootstrap☆14Aug 23, 2021Updated 5 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- spring部分漏洞,nacos部分漏洞,禅道认证绕过漏洞☆25May 28, 2024Updated 2 years ago
- 详见公众号☆40Jul 6, 2023Updated 3 years ago
- 自动生成多种文件上传绕过技术的Payload 进行测试 界面化设计☆172Jul 2, 2025Updated last year
- 综合后渗透方面的杂烩☆603Mar 1, 2026Updated 6 months ago
- ☆32Mar 6, 2025Updated last year
- Next.js-Exploit-Tool 图形化综合利用工具,基于 Go 开发,一款针对 CVE-2025-55182 的独立安全评估工具。☆117Dec 11, 2025Updated 9 months ago
- 离线IP Whois查询工具。可根据IP查询所属IP段信息、根据关键词查询IP段信息的MCP版本☆30Oct 28, 2025Updated 10 months ago