Folders and files Name Name Last commit message
Last commit date
parent directory
View all files
SQL Injection
Classic SQLi
Blind SQLi
Time-based SQLi
Error-based SQLi
Command Injection
OS Command Injection
Remote Command Execution (RCE)
Server-Side Template Injection (SSTI)
NoSQL Injection
MongoDB Injection
Other NoSQL Databases
LDAP Injection
XPath Injection
Cross-Site Scripting (XSS)
Reflected XSS
Stored XSS
DOM-based XSS
Self-XSS
Cross-Site Request Forgery (CSRF)
Same-Site Cookie Misconfiguration
Anti-CSRF Token Bypass
Broken Authentication
Credential Stuffing
Weak Password Policy
Exposed Credentials
Session Fixation
Missing Multi-Factor Authentication (MFA)
Insecure Direct Object References (IDOR)
Privilege Escalation
Horizontal Privilege Escalation
Vertical Privilege Escalation
Local File Inclusion (LFI)
Remote File Inclusion (RFI)
Path Traversal
Unrestricted File Upload
Directory Listing
Security Misconfigurations
Missing Security Headers
X-Content-Type-Options
Content Security Policy (CSP)
X-Frame-Options
Default Credentials
Directory Indexing Enabled
Weak Encryption Algorithms
Hardcoded Secrets
Insecure Data Storage
Padding Oracle Attacks
Error Messages
Exposed API Keys
Sensitive Data Exposure
Source Code Disclosure
Insecure Workflow
Improper Input Validation
Abusing Application Functionality
Server-Side Request Forgery (SSRF)
Internal Network Scanning
Data Exfiltration
Cloud Metadata Extraction
Client-Side Vulnerabilities
Clickjacking
DOM Manipulation
CORS Misconfigurations
Insecure Deserialization
Object Injection
Subdomain Takeover
HTTP Request Smuggling
Cache Poisoning
Race Conditions
You can’t perform that action at this time.