A command-line scanner for batch detection of Next.js application versions and determining if they are affected by CVE-2025-66478 vulnerability.
☆428Dec 16, 2025Updated 7 months ago
Alternatives and similar repositories for Next.js-RSC-RCE-Scanner-CVE-2025-66478
Users that are interested in Next.js-RSC-RCE-Scanner-CVE-2025-66478 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Docker poc lab for CVE-2025-55182 / CVE-2025-66478 (React2Shell) detection and exploitation☆86Dec 11, 2025Updated 7 months ago
- High Fidelity Detection Mechanism for RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)☆2,453Dec 7, 2025Updated 7 months ago
- React Shell & Next.js RSC Exploit Tool (CVE-2025-55182)☆253Dec 12, 2025Updated 7 months ago
- ☆279Dec 6, 2025Updated 7 months ago
- CVE-2025-68613: n8n RCE vulnerability exploit and documentation☆104Dec 23, 2025Updated 6 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Explanation and full RCE PoC for CVE-2025-55182☆1,428Dec 8, 2025Updated 7 months ago
- Original Proof-of-Concepts for React2Shell CVE-2025-55182☆1,051Dec 5, 2025Updated 7 months ago
- CVE-2025-55182 POC☆797Dec 8, 2025Updated 7 months ago
- n8n Ni8mare - Unauthenticated Arbitrary File Read to RCE Chain (CVSS 10.0)☆261Mar 26, 2026Updated 3 months ago
- his repository contains an automated Proof of Concept (PoC) script for exploiting **CVE-2025-24813**, a Remote Code Execution (RCE) vulne…☆196Mar 14, 2025Updated last year
- CVE-2025-55182-bypass-waf☆31Jan 8, 2026Updated 6 months ago
- A C# tool for requesting certificates from ADCS using DCOM over SMB. This tool allows you to remotely request X.509 certificates from CA …☆168Nov 2, 2025Updated 8 months ago
- React2Shell Proof of Concept☆92Jan 3, 2026Updated 6 months ago
- MongoDB CVE-2025-14847 Heap Memory Leak Scanner | OP_COMPRESSED zlib Vulnerability | Bug Bounty & Red Team Tool☆35Dec 28, 2025Updated 6 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- A Proof of Concept for chaining CVE-2025-6018 (PAM/Polkit Active Session Bypass) and CVE-2025-6019 (libblockdev SUID Mount Flaw) to achie…☆17Feb 9, 2026Updated 5 months ago
- Latest CVEs with their Proof of Concept exploits.☆1,340Updated this week
- Supports RSC fingerprinting and exploitation of the React component vulnerability CVE-2025-55182.☆581Dec 5, 2025Updated 7 months ago
- Enhanced, Faster, Better version of the exploit☆25Dec 27, 2025Updated 6 months ago
- Next.js v16.2.4 Security PoC Collection (CVE-2026-23870, CVE-2026-44575, CVE-2026-44579, CVE-2026-44574, CVE-2026-44578, CVE-2026-44573, …☆176May 12, 2026Updated 2 months ago
- CVE 2025 27237 Zabbix LPE proof of concept.☆20Jan 26, 2026Updated 5 months ago
- CVE-2025-5777 Citrix NetScaler Memory Leak Exploit (CitrixBleed 2)☆30Jul 11, 2025Updated last year
- Implementing Ghostly-Hollowing using tampered syscalls for remote PE injection☆74Dec 26, 2025Updated 6 months ago
- Deserialization payload generator for a variety of .NET formatters☆187Updated this week
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- A PoC for the dMSA Active Directory Domain Takeover deemed BadSuccessor☆60Mar 6, 2026Updated 4 months ago
- A fast WordPress plugin enumeration tool☆925Jul 9, 2026Updated last week
- A python tool to map the access rights of network shares into a BloodHound OpenGraphs easily☆310May 11, 2026Updated 2 months ago
- Pull any installed Android app from your device as XAPK - no root required☆27Apr 5, 2026Updated 3 months ago
- rep+ — Burp-style HTTP Repeater for Chrome DevTools with built‑in AI to explain requests and suggest attacks☆1,602Jan 16, 2026Updated 6 months ago
- Advanced Domain Controller attack and credential analysis tool leveraging DonPAPI database☆267Nov 3, 2025Updated 8 months ago
- PoC Exploit for the NTLM reflection SMB flaw.☆709Feb 18, 2026Updated 5 months ago
- RSC/Next.js RCE Vulnerability Detector & PoC Chrome Extension – CVE-2025-55182 & CVE-2025-66478☆314Dec 6, 2025Updated 7 months ago
- A non-intrusive surface scanner for CVE-2025-55182 (React Server Components RCE). Detects exposed RSC endpoints in React 19 and Next.js a…☆112Dec 10, 2025Updated 7 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A tool designed to exploit CVE-2025-54068 and Remote Command Execution if the APP_KEY of the Livewire project is known.☆148Updated this week
- ☆947Dec 26, 2025Updated 6 months ago
- AI-powered ffuf wrapper☆795Dec 4, 2025Updated 7 months ago
- NextSSRF — CVE-2026-44578 Scanner & Exploit ║ ║ Next.js WebSocket Upgrade Handler SSRF☆75May 15, 2026Updated 2 months ago
- Bambdas collection for Burp Suite Professional and Community.☆523Jun 16, 2026Updated last month
- Exploitation of CVE-2026-24061☆206Jan 22, 2026Updated 5 months ago
- Extract data from modern Chrome versions, including refresh tokens, cookies, saved credentials, autofill data, browsing history, and book…☆558Jan 8, 2026Updated 6 months ago