Proviesec / crlf-payloads
☆19Updated last month
Related projects ⓘ
Alternatives and complementary repositories for crlf-payloads
- Burp Suite's extension to scan and crawl Single Page Applications☆99Updated last year
- PoC for XSS in org.webjars:swagger-ui [3.14.2, 3.36.2]☆52Updated last year
- Burp extension to check and exploit the IIS Tilde Enumeration/IIS 8.3 Short Filename Disclosure vulnerability☆55Updated last year
- phpMyAdmin XSS☆114Updated 3 weeks ago
- CVE-2023-34960 Chamilo PoC☆35Updated last year
- Burp Suite extension that enhances Burp Active Scan by adding template engine specific SSTI payloads.☆21Updated 9 months ago
- Spring4Shell Burp Scanner☆65Updated 2 years ago
- [CVE-2024-4956] Nexus Repository Manager 3 Unauthenticated Path Traversal Bulk Scanner☆13Updated last month
- Nuclei template and information about the POC for CVE-2024-25600☆27Updated 9 months ago
- Web cache poisoning vulnerability scanner.☆61Updated 2 years ago
- ☆14Updated 2 years ago
- Authorization-Nuclei-Templates☆37Updated 2 months ago
- Perform with Massive Command Injection (Chamilo)☆21Updated last year
- burpsuite extension☆13Updated last year
- CVE-2024-27956 WordPress Automatic < 3.92.1 - Unauthenticated SQL Injection☆18Updated 6 months ago
- Simple script realizado en bash, para revisión de múltiples hosts para CVE-2022-1388 (F5)☆25Updated 2 years ago
- Automatic Tools For Metabase Exploit Known As CVE-2023-38646☆28Updated last year
- ☆31Updated 2 years ago
- Encoder PHP webshell to bypass WAF using XOR operations.☆51Updated last year
- Burp Extension for a passive scanning JS files for endpoint links.☆52Updated this week
- Apache Spark Command Injection PoC Exploit for CVE-2022-33891☆22Updated 2 years ago
- A Python script to exploit CVE-2022-36446 Software Package Updates RCE (Authenticated) on Webmin < 1.997.☆110Updated 2 years ago
- bounty collection☆28Updated 2 months ago
- ☆36Updated last year
- Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.☆42Updated 8 months ago
- Unofficial Acunetix CLI tool for automated pentesting and bug hunting across large scopes.☆71Updated last year
- Log4jScanner is a Log4j Related CVEs Scanner, Designed to Help Penetration Testers to Perform Black Box Testing on given subdomains.☆39Updated 2 years ago
- This repository contains proof of concept for zero days and CVEs that were found by Omar Hashem through Security Research☆42Updated last year
- Web API for nuclei and subfinder will help you automate your entire security testing workflow since you can host it anywhere and make it …☆60Updated 2 years ago
- WEB API fuzzing☆24Updated last year