NextSSRF — CVE-2026-44578 Scanner & Exploit ║ ║ Next.js WebSocket Upgrade Handler SSRF
☆75May 15, 2026Updated 2 months ago
Alternatives and similar repositories for nextssrf
Users that are interested in nextssrf are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Next.js v16.2.4 Security PoC Collection (CVE-2026-23870, CVE-2026-44575, CVE-2026-44579, CVE-2026-44574, CVE-2026-44578, CVE-2026-44573, …☆180May 12, 2026Updated 2 months ago
- SSRFHunter☆18Jan 17, 2026Updated 6 months ago
- Grafana scanner with all public CVEs that I collected in one script to make grafana testing easier☆241Jul 7, 2026Updated 3 weeks ago
- Collection of documentation, tools, and tips related to vulnerability research.☆103Updated this week
- CVE-2025-55182-bypass-waf☆31Jan 8, 2026Updated 6 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆86May 26, 2026Updated 2 months ago
- Detection template for CVE-2025-8110☆22Dec 11, 2025Updated 7 months ago
- ☆13Mar 6, 2025Updated last year
- PoC for CVE-2026-3891 — Unauthenticated Arbitrary File Upload leading to Remote Code Execution in Pix for WooCommerce <= 1.5.0☆20Jul 20, 2026Updated 2 weeks ago
- CVE-2026-41940 — cPanel & WHM Authentication Bypass via Session-File CRLF Injection☆490May 1, 2026Updated 3 months ago
- ☆416Apr 29, 2026Updated 3 months ago
- A comprehensive WordPress vulnerability scanner and exploitation framework for authorized penetration testing. This tool automatically de…☆72May 21, 2026Updated 2 months ago
- My ATO Via Password Reset Methodology☆53May 13, 2026Updated 2 months ago
- burpsuite extension to analyze javascript files using semgrep☆13Feb 3, 2025Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- CVE-2026-63030 + CVE-2026-60137 - “wp2shell”: unauthenticated RCE in WordPress core☆89Jul 18, 2026Updated 2 weeks ago
- Nginx Rewrite CVE Scan(CVE-2026-42945 nginx-rift CVE-2026-9256)☆33May 27, 2026Updated 2 months ago
- Agent Browser Bridge for Firefox.☆22Apr 29, 2026Updated 3 months ago
- An Automated Framework for End-to-End Blind XSS Detection and Reporting☆17Jan 23, 2026Updated 6 months ago
- Acunetix automate telegram bot☆12Jul 19, 2024Updated 2 years ago
- ☆31Jan 19, 2026Updated 6 months ago
- Nuclei scripts created by @rxerium for zero days / actively exploited vulnerabilities.☆194Jul 20, 2026Updated 2 weeks ago
- ☆160Jan 22, 2026Updated 6 months ago
- DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will auto…☆15Apr 2, 2026Updated 4 months ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Stealth hybrid URL mapper☆26May 1, 2026Updated 3 months ago
- A tool that helps you find the real IP addresses hiding behind Cloudflare.☆636Jul 6, 2026Updated 3 weeks ago
- CVE-2026-63030, CVE-2026-60137, wp2shell scanner☆46Jul 18, 2026Updated 2 weeks ago
- ☆28Dec 4, 2025Updated 7 months ago
- ☆21May 7, 2026Updated 2 months ago
- CVE-2025-4123 - Grafana Tool☆32Jun 4, 2025Updated last year
- Cross-Site Scripting (XSS) is a common vulnerability that allows attackers to inject malicious scripts into web pages viewed by users. In…☆11Sep 10, 2024Updated last year
- Enhanced, Faster, Better version of the exploit☆25Dec 27, 2025Updated 7 months ago
- Argument injection vulnerability in PHP☆13Jun 15, 2024Updated 2 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Burp Suite extension for cross-identity & cross-tenant access-control testing — BAC, IDOR, BOLA, and privilege escalation.☆58Jul 12, 2026Updated 3 weeks ago
- Burp_Suite-Antigravity_AI-Bug_Bounty_Hunter☆64Feb 9, 2026Updated 5 months ago
- Fast Go-based XSS assessment toolkit☆20Mar 18, 2026Updated 4 months ago
- Welcome to the 403 and 401 Bypass Techniques and Bug Bounty Tips repository! This repo is a collection of methods and strategies to bypas…☆38Dec 26, 2024Updated last year
- React Shell & Next.js RSC Exploit Tool (CVE-2025-55182)☆255Dec 12, 2025Updated 7 months ago
- Multi-target unauthenticated RCE scanner for CVE-2025-34085 affecting WordPress Simple File List plugin. Uploads, renames, and triggers P…☆34Jul 13, 2025Updated last year
- React2Shell exploit with multiple WAF bypass and vulnerable example application.☆19Dec 18, 2025Updated 7 months ago