The Template Injection Playground allows to test a large number of the most relevant template engines for template injection possibilities.
☆68Apr 29, 2026Updated 3 months ago
Alternatives and similar repositories for template-injection-playground
Users that are interested in template-injection-playground are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- The Template Injection Table is intended to help during the testing of an application for template injection vulnerabilities.☆117Apr 27, 2026Updated 3 months ago
- ☆27May 21, 2025Updated last year
- TInjA is a CLI tool for testing web pages for template injection vulnerabilities and supports 44 of the most relevant template engines fo…☆424Apr 27, 2026Updated 3 months ago
- AI-Powered Web Attack Surface Enumeration☆46Feb 5, 2026Updated 5 months ago
- A Firefox Extension to track postMessage usage (url, domain and stack) both by logging using CORS and also visually as an extension-icon☆28Dec 9, 2024Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Automate JS analysis on modern JS apps☆18Updated this week
- web app monitoring automation☆15Jan 7, 2025Updated last year
- jxscout superpowers JavaScript analysis for security researchers☆473Apr 12, 2026Updated 3 months ago
- XML Signature Wrapping Burp Suite Extensions☆23Dec 8, 2025Updated 7 months ago
- Caido's passive workflow to find potential leaked secrets, PII, and sensitive fields.☆29Jan 13, 2025Updated last year
- MCPwned is a companion extension that enables pentesters to effectively test MCP servers. It recognizes MCP-like endpoints, provies a sca…☆20Jul 3, 2026Updated 3 weeks ago
- oauth-labs: an intentionally vulnerable set of OAuth 2.0 labs for security training and learning☆75Dec 5, 2024Updated last year
- burp suite插件☆14Jul 9, 2023Updated 3 years ago
- JSBerg is a fast and efficient URL scraper that extracts links, JavaScript files, CSS files, images, and inline URLs from a list of websi…☆24Mar 19, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Bruteforcing from various scanner output - Automatically attempts default creds on found services.☆16Mar 10, 2025Updated last year
- Useful configurations for the DomLogger++ extension☆48Apr 7, 2026Updated 3 months ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆38Feb 9, 2024Updated 2 years ago
- Extract GraphQL operations from javascript☆24Mar 18, 2026Updated 4 months ago
- JSNotify is a Python script designed to monitor JavaScript files in a specified directory for changes. This tool can be used by developer…☆18May 30, 2026Updated last month
- A browser extension that allows you to monitor, intercept, and debug JavaScript sinks based on customizable configurations.☆809Dec 9, 2025Updated 7 months ago
- Passive JavaScript reconnaissance for penetration testers — bridging Burp Suite traffic into structured, AST-based analysis in VSCode.☆36Feb 5, 2026Updated 5 months ago
- ☆35Jan 31, 2026Updated 5 months ago
- Chrome extension for automating CSPT discovery☆157May 12, 2026Updated 2 months ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Oty is a fast, customizable, CLI tool designed to streamline your Bug Bounty and Pentesting workflows. Powered by a simple yet flexible Y…☆28Jan 27, 2025Updated last year
- Automatic SSTI detection tool with interactive interface☆1,588Apr 25, 2026Updated 3 months ago
- The only GraphQL wordlist you'll ever need. Operations, field names, type names... Collected on more than 60k distinct GraphQL schemas.☆480Oct 3, 2023Updated 2 years ago
- Header Exploitation HTTP☆760May 28, 2026Updated 2 months ago
- A collection of js analysis tools & scripts.☆19May 4, 2026Updated 2 months ago
- HTTP testing platform for security researchers☆41Updated this week
- Collection of rules for Static Application Security Testing (SAST) with Semgrep☆13Apr 16, 2025Updated last year
- Security Blogs - A simple aggregator for security news/blog☆30Updated this week
- Gotta go fast☆154Dec 5, 2025Updated 7 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆93Jul 20, 2023Updated 3 years ago
- Caido plugin for jxscout☆16Jul 7, 2026Updated 3 weeks ago
- Learn what is NoSQL injection and how to find them ?☆10Jul 22, 2021Updated 5 years ago
- Automated privilege escalation of the world's most popular Docker images.☆73Sep 25, 2023Updated 2 years ago
- CT Log Scanner☆568Dec 26, 2025Updated 7 months ago
- AI-powered ffuf wrapper☆797Dec 4, 2025Updated 7 months ago
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.☆204Aug 5, 2024Updated last year