stypr / vulnerable-nodejs-express-mysql
Example of a vulnerable NodeJS+Express+MySQL service
☆20Updated 2 years ago
Alternatives and similar repositories for vulnerable-nodejs-express-mysql:
Users that are interested in vulnerable-nodejs-express-mysql are comparing it to the libraries listed below
- DOM Clobbering Wiki, Browser Testing, and Payload Generation☆46Updated 2 months ago
- Prototype Pollution exploits collection☆31Updated 3 years ago
- List of Trusted Types bypasses☆86Updated 9 months ago
- Searcher for cross-site leaks (XS-Leaks)☆83Updated 2 years ago
- A extension for collecting parameters☆25Updated 4 years ago
- Collection of quirky behaviours of code and the CTF challenges that I made around them.☆27Updated 3 years ago
- Demo of the URLClassLoader JAR-swapping showing the ability to replace and exploit an already loaded JAR with inner classes☆31Updated 2 years ago
- Collection of content discovery wordlists in one wordlist.☆37Updated 3 years ago
- Same Origin XSS challenge☆56Updated 2 years ago
- Client-Side Prototype Pollution Tools☆84Updated 3 years ago
- a tool that compiles a csv of all h1 program stats☆46Updated last year
- ☆46Updated 3 years ago
- ☆56Updated this week
- Dependency Confusion Security Testing Tool☆41Updated 2 years ago
- HTTP request smuggling tools☆18Updated 4 years ago
- Chrome extension to detect possible xsleaks☆12Updated 5 years ago
- Extract SSL certificate data (Subject Name, Subject Alt Names, Organisation)☆42Updated 2 weeks ago
- A demo PHP application used to exercise SQL injection techniques in a safe, local Docker environment☆41Updated 7 months ago
- ☆39Updated last year
- Server and avi file to exploit FFmpeg HLS parse☆21Updated 5 years ago
- ☆33Updated 3 years ago
- Burp Suite plugin to copy regex matches from selected requests and/or responses to the clipboard.☆33Updated 2 years ago
- A simple tool to detect vulnerabilities described here https://portswigger.net/research/browser-powered-desync-attacks.☆36Updated 2 years ago
- Enhanced 403 bypass header☆21Updated 2 years ago
- Unauthenticated Path Traversal in Nexus Repository 3☆2Updated 7 months ago
- ☆37Updated last year
- vīlicus is a bug bounty api dashboard☆40Updated last year
- jaVasCript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=alert() )//%0D%0A%0d%0a//</stYle/</titLe/</teXtarEa/</scRipt/--!>\x3csVg/<sVg/oNloAd=alert()…☆11Updated 3 years ago
- assets for www.hahwul.com☆21Updated this week