This is the data that powers the PortSwigger URL validation bypass cheat sheet.
☆59Feb 5, 2026Updated last month
Alternatives and similar repositories for url-cheatsheet-data
Users that are interested in url-cheatsheet-data are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A Chrome Extension to track postMessage usage (url, domain and stack) both by logging using CORS and also visually as an extension-icon☆16Jul 17, 2024Updated last year
- Proof of Concepts for unsafe deserialization in Ruby☆17Oct 17, 2024Updated last year
- ☆31Jan 31, 2026Updated last month
- phpfuck: using only 5 different characters to write and execute php // (^.9)☆20Nov 26, 2021Updated 4 years ago
- I created this to dump challenge for CTF that I participated☆12May 26, 2023Updated 2 years ago
- DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Exploit POC for CVE-2024-22026 affecting Ivanti EPMM "MobileIron Core"☆15May 15, 2024Updated last year
- Blind XSS SVG☆10Mar 27, 2023Updated 3 years ago
- Execute codes From XSLT☆16Dec 28, 2016Updated 9 years ago
- Beyond XSS: Explore the Web Front-end Security Universe. A series about front-end security☆177Oct 27, 2025Updated 5 months ago
- source code of XCTF 2019 Final web task "tfboys"☆30Nov 21, 2022Updated 3 years ago
- A collection of hacking / penetration testing resources to make you better!☆13Aug 17, 2018Updated 7 years ago
- This repository is a collection of JavaScript gadgets that can be used to bypass XSS mitigations such as Content Security Policy (CSP) an…☆134Feb 4, 2026Updated last month
- CVE-2024-8190: Ivanti Cloud Service Appliance Command Injection☆17Sep 16, 2024Updated last year
- Slim dockerized Android ndk☆12Mar 3, 2023Updated 3 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting with the flexibility to host WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Cloudways by DigitalOcean.
- A tool for adding new lines to files, skipping duplicates and written in Rust!☆19May 8, 2025Updated 10 months ago
- Archive Alchemist is a tool for creating specially crafted archives to test extraction vulnerabilities.☆227Jul 24, 2025Updated 8 months ago
- Burp extension to fuzz/brute force GenAI/LLM prompts using a list of various payloads.☆29Sep 4, 2025Updated 6 months ago
- Differential testing framework for HTTP implementations☆929Jan 21, 2026Updated 2 months ago
- ☆13Sep 15, 2024Updated last year
- Content-Type Research☆659Jun 29, 2025Updated 9 months ago
- Extract GraphQL operations from javascript☆23Mar 18, 2026Updated last week
- CSPBypass.com, a tool designed to help ethical hackers bypass restrictive Content Security Policies (CSP) and exploit XSS (Cross-Site Scr…☆628Mar 22, 2026Updated last week
- ☆38Dec 14, 2024Updated last year
- DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- CVE-2025-22457: Python Exploit POC Scanner to Detect Ivanti Connect Secure RCE☆19Apr 17, 2025Updated 11 months ago
- Testnet exchange - near identical mirror to the prod exchange | Rest API + WS + Matching Engine☆13Sep 1, 2024Updated last year
- A web server designed to shut off on command to exploit DNS rebinding in Chromium-based browsers☆19Jun 9, 2023Updated 2 years ago
- A lightweight Python 3 Nmap wrapper that doesn't try too hard. Gracefully handles any Nmap command, providing access to all output types …☆16Jan 13, 2022Updated 4 years ago
- Scrape domain names from SSL certificates of arbitrary hosts☆689Mar 31, 2024Updated last year
- Custom Trickest Workflows☆12Oct 26, 2023Updated 2 years ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆964Dec 31, 2021Updated 4 years ago
- Exploit code for Jira Mobile Rest Plugin SSRF (CVE-2022-26135)☆89Jul 5, 2022Updated 3 years ago
- We have compiled an exhaustive list of cryptocurrency exchange hacks [ 2011 – 2022 ] – you will be amazed at how much has been stolen ove…☆12Dec 7, 2022Updated 3 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- ☆22Jun 16, 2019Updated 6 years ago
- This repository provides examples of Vulnerable and Mitigated code as per CWE Categorization.☆23May 4, 2024Updated last year
- Adobe Experience Manager (AEM) hacking toolkit☆109Sep 26, 2025Updated 6 months ago
- A collection of pyjails!☆28Dec 15, 2025Updated 3 months ago
- Query various sources for CVE proof-of-concepts☆53Jun 1, 2023Updated 2 years ago
- A shortlist of core ServiceNow tables.☆15Oct 16, 2023Updated 2 years ago
- ☆18Feb 14, 2019Updated 7 years ago