Find sources and sinks in js code that could lead to DOM XSS 🔎💧🚰
☆22Feb 27, 2024Updated 2 years ago
Alternatives and similar repositories for DomXssFinder
Users that are interested in DomXssFinder are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- SSRF 绕过 Payload☆15Nov 12, 2020Updated 5 years ago
- ☆12Aug 18, 2021Updated 4 years ago
- HTTP request smuggling attack helper/CLI tools to manipulate HTTP packets☆36Sep 23, 2022Updated 3 years ago
- 📡 Ease file sharing during pentest/CTF 🎸☆10May 18, 2026Updated 2 months ago
- Exploit for the unauthenticated file upload vulnerability in WordPress's Royal Elementor Addons and Templates plugin (< 1.3.79). CVE-ID: …☆10Nov 2, 2023Updated 2 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Many yaml scanner plugin parser [nuclei-template, xray-poc, ez-poc] - for Python☆14Mar 27, 2022Updated 4 years ago
- 一个burpsuite插件,用于被动检测可能存在的XSS漏洞的请求。后续将完善对于可以请求的xss探针、xss攻击以及DOM型xss检测。☆14Dec 26, 2018Updated 7 years ago
- ☆11Jun 19, 2024Updated 2 years ago
- ☆10Apr 30, 2022Updated 4 years ago
- ☆30Jul 14, 2023Updated 3 years ago
- This tool allows you to find ssti vulnerability with ease!☆22Sep 3, 2022Updated 3 years ago
- Pentesting Apache Tomcat 101☆14Apr 4, 2023Updated 3 years ago
- Frida Memory Dumper and Scanner for native Linux apps and Windows apps☆20Oct 18, 2022Updated 3 years ago
- Simple tool to check command injection in headers of http request☆18Aug 12, 2022Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- https://www.nu11secur1ty.com☆23Jul 1, 2026Updated 3 weeks ago
- A collection of enhancements for Portswigger's popular Burp Suite web penetration testing tool.☆25Mar 11, 2024Updated 2 years ago
- Apache OfBiz Auth Bypass Scanner for CVE-2023-51467☆12Dec 31, 2023Updated 2 years ago
- Extractify extension is a Chrome extension designed for web security testing, enabling users to efficiently extract JavaScript files and …☆30Dec 10, 2024Updated last year
- CRLFMap is a tool to find HTTP Splitting vulnerabilities☆32Oct 11, 2020Updated 5 years ago
- Do bug hunting with One-Line script and get bounty☆18Jul 30, 2023Updated 2 years ago
- Scan any HackerOne program with Nuclei☆13Sep 21, 2021Updated 4 years ago
- WARNING: This is a vulnerable application to test the exploit for the Spring Break vulnerability (CVE-2017-8046). Run it at your own risk…☆14Oct 8, 2018Updated 7 years ago
- Burp Suite's extension to scan and crawl Single Page Applications☆106Apr 14, 2023Updated 3 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- A framework and build automation tool to process exploits/payloads to evade antivirus and endpoint detection response products using reus…☆11Jan 16, 2024Updated 2 years ago
- Learn how to automate XSS, SSRF, LFI, SQLI, NoSQLi☆45Jul 9, 2021Updated 5 years ago
- Fast subdomains enumeration tool for penetration testers☆14Feb 3, 2020Updated 6 years ago
- -☆11Nov 21, 2020Updated 5 years ago
- 把jsp的cmdshell升级为冰蝎一句话☆10Sep 23, 2019Updated 6 years ago
- This script will install all the essential bug bounty tools and will find some basic vulns. I made this script for my daily hunting. The …☆46Mar 3, 2022Updated 4 years ago
- wp content injection mass exploit Perl Script☆12Jul 11, 2017Updated 9 years ago
- Widget Options – The #1 WordPress Widget & Block Control Plugin <= 4.0.7 - Authenticated (Contributor+) Remote Code Execution☆13Dec 2, 2024Updated last year
- Permissionless pooling of NFT's into an ERC20.☆14Dec 22, 2022Updated 3 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- A userscript to assist in detecting cross-site scripting vulnerabilities☆25Jun 24, 2010Updated 16 years ago
- Automate Blind SQL Injection with Python.☆22Aug 20, 2022Updated 3 years ago
- A PoC exploit for CVE-2023-43208 - Mirth Connect Remote Code Execution (RCE)☆29Apr 30, 2026Updated 2 months ago
- Automation for Open Threat Exchange☆25Mar 16, 2024Updated 2 years ago
- This repository contains random Nuclei templates I've created. Most of them based on recent security issues and exploits.☆18May 21, 2024Updated 2 years ago
- Burp Suite extension for extracting metadata from files☆20Dec 29, 2020Updated 5 years ago
- Attacking indiscriminately every header, cookie, GET and POST parameter with blind fury.☆13Sep 25, 2025Updated 10 months ago