Tool for helping in the exploitation of path traversal vulnerabilities in Java web applications
☆33Nov 4, 2022Updated 3 years ago
Alternatives and similar repositories for web-inf-path-trav
Users that are interested in web-inf-path-trav are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- JSBerg is a fast and efficient URL scraper that extracts links, JavaScript files, CSS files, images, and inline URLs from a list of websi…☆24Mar 19, 2025Updated last year
- NSEC3 Zone Walker☆13Nov 27, 2025Updated 6 months ago
- Just simple log4j scanner☆12Dec 13, 2021Updated 4 years ago
- Apache APISIX Remote Code Execution (CVE-2022-24112) proof of concept exploit☆15Mar 16, 2022Updated 4 years ago
- Exploit for Symfony CVE-2024-50340 (forked eos)☆29Nov 22, 2024Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆24Apr 17, 2026Updated last month
- Burp extension to increment a parameter in each active scan request☆13Jul 16, 2025Updated 10 months ago
- ☆35Aug 2, 2022Updated 3 years ago
- ☆26Mar 11, 2025Updated last year
- Burp Suite Extensions☆13Oct 19, 2021Updated 4 years ago
- Host Header Vulnerability Scanner Automated Tool☆29Apr 18, 2025Updated last year
- Proof of concept exploit for Ivanti EPM CVE-2024-13159 and others☆13Feb 19, 2025Updated last year
- POC for CVE-2022-21907: HTTP Protocol Stack Remote Code Execution Vulnerability.☆17Jun 18, 2025Updated 11 months ago
- Prototype Pollution exploits collection☆39Aug 8, 2021Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- my nuclei templates #new☆10Jun 24, 2024Updated last year
- A script written in python3 to spread blind cross-site scripting payloads on HTTP requests headers☆10Oct 2, 2022Updated 3 years ago
- Many yaml scanner plugin parser [nuclei-template, xray-poc, ez-poc] - for Python☆14Mar 27, 2022Updated 4 years ago
- The Dependency Confusion vulnerability scanner and autoexploitation tool to help identifying and mitigating supply chain attacks☆37Feb 20, 2024Updated 2 years ago
- NetScan CLI is a command-line tool for retrieving and analyzing IP address information. It provides detailed subnet and organization data…☆62Sep 4, 2024Updated last year
- IIS shortname scanner + bruteforce☆56Feb 18, 2024Updated 2 years ago
- ☆15Mar 21, 2025Updated last year
- CVE-2021-41773 | CVE-2021-42013 Exploit Tool (Apache/2.4.49-2.4.50)☆10Apr 8, 2022Updated 4 years ago
- Searcher for cross-site leaks (XS-Leaks)☆83Dec 27, 2022Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A tool to guess the rest of the shortnames provided by vulnerable IIS instances.☆41Aug 12, 2023Updated 2 years ago
- Welcome to the 403 and 401 Bypass Techniques and Bug Bounty Tips repository! This repo is a collection of methods and strategies to bypas…☆37Dec 26, 2024Updated last year
- A collection of my Semgrep rules☆52Jul 4, 2023Updated 2 years ago
- ☆17Nov 27, 2022Updated 3 years ago
- Apache Superset Auth Bypass (CVE-2023-27524)☆11May 9, 2023Updated 3 years ago
- Shodan Favicon Hash Generator By Aziz Hakim @eternyle☆26May 25, 2024Updated 2 years ago
- Exploit code for Jira Mobile Rest Plugin SSRF (CVE-2022-26135)☆85Jul 5, 2022Updated 3 years ago
- ☆105Jan 3, 2023Updated 3 years ago
- all manner of wordlists☆24Jan 19, 2022Updated 4 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Scripts for Sourcegraph search results. Useful for static analysis <3☆28Jun 30, 2023Updated 2 years ago
- A burp extension, check Sturts2 RCE through passive scan.一款检测Struts2 RCE漏洞的burp被动扫描插件~☆16Dec 9, 2020Updated 5 years ago
- Looks for parameters in urls☆35Oct 14, 2024Updated last year
- Caido plugin for jxscout☆15May 31, 2026Updated 2 weeks ago
- CVE-2022-3910☆12Mar 14, 2023Updated 3 years ago
- Useful scripts for tampermonkey that I used during bug hunting. Will be updated "au fil de l'eau"☆18Jun 2, 2025Updated last year
- Dig through the Wayback Machine and find sensitive or forgotten files exposed by web servers over time.☆31Mar 27, 2025Updated last year