PalindromeLabs / Java-Deserialization-CVEs
Compiled dataset of Java deserialization CVEs
☆60Updated 4 years ago
Related projects ⓘ
Alternatives and complementary repositories for Java-Deserialization-CVEs
- ☆33Updated 2 years ago
- Gopher Tomcat Deployer☆47Updated 5 years ago
- Sample Spring Boot App Demonstrating RCE via Exposed env Actuator and H2 Database☆103Updated 4 years ago
- tetctf2020_amf_writeups☆23Updated 3 years ago
- ☆63Updated 5 years ago
- Authenticated SSRF in Grafana☆77Updated 4 months ago
- GreHack 2021 CodeQL for Java workshop☆75Updated 2 years ago
- ☆116Updated 4 years ago
- A proof-of-concept tool for detection and exploitation Object Injection Vulnerabilities in .NET applications☆62Updated 3 years ago
- Atlassian JIRA Template injection vulnerability RCE☆93Updated 5 years ago
- ☆65Updated 3 years ago
- Here you can get full exploit for SAP NetWeaver AS JAVA☆74Updated 6 years ago
- Exploitation toolkit for RichFaces☆102Updated last year
- Exploiting CVE-2017-7525 demo project with Angular7 frontend and Spring.☆17Updated 5 years ago
- 用Kali 2.0复现Apache Tomcat Session反序列化代码执行漏洞☆52Updated 4 years ago
- An Out-of-Band XXE server for retrieving file contents over FTP.☆172Updated 4 years ago
- Directory transversal to remote code execution☆69Updated 5 years ago
- A vulnerable application exposing Spring Boot Actuators☆122Updated 5 years ago
- None of the exploit code or research is my own but all available in public domain☆27Updated 5 years ago
- Burp extension to filter JSON on the fly with JQ queries in the HTTP message viewer.☆45Updated 3 years ago
- Fuzzing script for redirect URL validator☆48Updated 4 years ago
- Some PoC (Proof-of-Concept) about vulnerability of java deserialization of untrusted data☆26Updated 3 years ago
- X41 BeanStack - Stack Trace Fingerprinting BETA☆52Updated 4 years ago
- A Proof of concept for CVE-2021-27850 affecting Apache Tapestry and leading to unauthencticated remote code execution.☆5Updated last year
- Some private tools i decided to release for public.☆49Updated 7 months ago
- ☆34Updated 5 years ago
- XSS payloads for edge cases☆34Updated 5 years ago
- Public Disclosures☆87Updated 2 years ago
- Apache Tomcat + MongoDB Remote Code Execution☆114Updated 3 years ago
- Collection of quirky behaviours of code and the CTF challenges that I made around them.☆26Updated 3 years ago