Find sources and sinks in js code that could lead to DOM XSS 🔎💧🚰
☆22Feb 27, 2024Updated 2 years ago
Alternatives and similar repositories for DomXssFinder
Users that are interested in DomXssFinder are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- SSRF 绕过 Payload☆15Nov 12, 2020Updated 5 years ago
- ☆12Aug 18, 2021Updated 5 years ago
- HTTP request smuggling attack helper/CLI tools to manipulate HTTP packets☆36Sep 23, 2022Updated 4 years ago
- 📡 Ease file sharing during pentest/CTF 🎸☆10May 18, 2026Updated 4 months ago
- Exploit for the unauthenticated file upload vulnerability in WordPress's Royal Elementor Addons and Templates plugin (< 1.3.79). CVE-ID: …☆10Nov 2, 2023Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Many yaml scanner plugin parser [nuclei-template, xray-poc, ez-poc] - for Python☆14Mar 27, 2022Updated 4 years ago
- 一个burpsuite插件,用于被动检测可能存在的XSS漏洞的请求。后续将完善对于可以请求的xss探针、xss攻击以及DOM型xss检测。☆14Dec 26, 2018Updated 7 years ago
- ☆11Jun 19, 2024Updated 2 years ago
- ☆10Apr 30, 2022Updated 4 years ago
- ☆29Jul 14, 2023Updated 3 years ago
- This tool allows you to find ssti vulnerability with ease!☆22Sep 3, 2022Updated 4 years ago
- Pentesting Apache Tomcat 101☆14Apr 4, 2023Updated 3 years ago
- Frida Memory Dumper and Scanner for native Linux apps and Windows apps☆20Oct 18, 2022Updated 3 years ago
- Simple tool to check command injection in headers of http request☆18Aug 12, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A collection of enhancements for Portswigger's popular Burp Suite web penetration testing tool.☆26Mar 11, 2024Updated 2 years ago
- Apache OfBiz Auth Bypass Scanner for CVE-2023-51467☆12Dec 31, 2023Updated 2 years ago
- Extractify extension is a Chrome extension designed for web security testing, enabling users to efficiently extract JavaScript files and …☆28Dec 10, 2024Updated last year
- CRLFMap is a tool to find HTTP Splitting vulnerabilities☆32Oct 11, 2020Updated 5 years ago
- Scan any HackerOne program with Nuclei☆13Sep 21, 2021Updated 5 years ago
- WARNING: This is a vulnerable application to test the exploit for the Spring Break vulnerability (CVE-2017-8046). Run it at your own risk…☆14Oct 8, 2018Updated 7 years ago
- Burp Suite's extension to scan and crawl Single Page Applications☆105Apr 14, 2023Updated 3 years ago
- A framework and build automation tool to process exploits/payloads to evade antivirus and endpoint detection response products using reus…☆11Jan 16, 2024Updated 2 years ago
- Learn how to automate XSS, SSRF, LFI, SQLI, NoSQLi☆46Jul 9, 2021Updated 5 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Fast subdomains enumeration tool for penetration testers☆14Feb 3, 2020Updated 6 years ago
- -☆11Nov 21, 2020Updated 5 years ago
- This script will install all the essential bug bounty tools and will find some basic vulns. I made this script for my daily hunting. The …☆49Mar 3, 2022Updated 4 years ago
- wp content injection mass exploit Perl Script☆12Jul 11, 2017Updated 9 years ago
- Widget Options – The #1 WordPress Widget & Block Control Plugin <= 4.0.7 - Authenticated (Contributor+) Remote Code Execution☆13Dec 2, 2024Updated last year
- BruteProxy.py framework for brute-forcing via HTTP/HTTPS requests with looping proxies.☆12Jan 12, 2026Updated 8 months ago
- Docker Image for Adobe Enterprise Manager☆12Jul 9, 2018Updated 8 years ago
- Using Machine Learning to detect irrelevant and inappropriate text, entirely in the browser.☆14Sep 27, 2022Updated 3 years ago
- Permissionless pooling of NFT's into an ERC20.☆14Dec 22, 2022Updated 3 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- A userscript to assist in detecting cross-site scripting vulnerabilities☆25Jun 24, 2010Updated 16 years ago
- Automate Blind SQL Injection with Python.☆22Aug 20, 2022Updated 4 years ago
- A PoC exploit for CVE-2023-43208 - Mirth Connect Remote Code Execution (RCE)☆29Apr 30, 2026Updated 4 months ago
- This repository contains random Nuclei templates I've created. Most of them based on recent security issues and exploits.☆18May 21, 2024Updated 2 years ago
- BetterBugBounty - Here tools are classic, bugs are hunted, and nostalgia is the ultimate weapon!☆30Feb 10, 2024Updated 2 years ago
- ☆19Mar 13, 2022Updated 4 years ago
- examples for the Open Next Terraform module☆13Mar 22, 2025Updated last year