An open API service providing repository metadata for many open source software ecosystems.

GitHub topics: path-traversal

AikidoSec/firewall-node

Zen protects your Node app against attacks with one line of code. Get peace of mind— at runtime.

Language: TypeScript - Size: 9.51 MB - Last synced at: about 18 hours ago - Pushed at: about 18 hours ago - Stars: 62 - Forks: 8

bayotop/off-by-slash

Burp extension to detect alias traversal via NGINX misconfiguration at scale.

Language: Python - Size: 88.9 KB - Last synced at: 2 days ago - Pushed at: over 3 years ago - Stars: 259 - Forks: 35

AikidoSec/firewall-java

Zen protects your Java app against attacks with one line of code. Get peace of mind— at runtime.

Language: Java - Size: 3.88 MB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 25 - Forks: 2

nemesida-waf/waf-bypass

Check your WAF before an attacker does

Language: Python - Size: 727 KB - Last synced at: 10 days ago - Pushed at: 3 months ago - Stars: 1,357 - Forks: 172

dogancanbakir/metamaska

μετάμάσκα - malevolent payload classifier

Language: Jupyter Notebook - Size: 30.2 MB - Last synced at: 9 days ago - Pushed at: almost 2 years ago - Stars: 24 - Forks: 2

TheAlgorythm/path-ratchet

Prevent path traversal attacks at type level

Language: Rust - Size: 51.8 KB - Last synced at: 12 days ago - Pushed at: 16 days ago - Stars: 1 - Forks: 0

usdAG/slipit

Utility for creating ZipSlip archives

Language: Python - Size: 54.7 KB - Last synced at: 12 days ago - Pushed at: about 2 years ago - Stars: 72 - Forks: 4

sp34rh34d/WebRunner

Web scraping | Website cloner | Path Traversal Scanner

Language: Python - Size: 56.6 KB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 10 - Forks: 4

E1A/LFI2Keys

LFI2Keys automates the process of extracting user accounts from /etc/passwd and attempts to locate private SSH keys through LFI

Language: Python - Size: 41 KB - Last synced at: 2 months ago - Pushed at: 2 months ago - Stars: 2 - Forks: 0

mitsuki31/deepget

A lightweight and safe utility for retrieving values from deeply nested JavaScript objects using dot and array notation, ensuring undefined safety.

Language: TypeScript - Size: 129 KB - Last synced at: 28 days ago - Pushed at: 2 months ago - Stars: 0 - Forks: 0

chrispetrou/FDsploit 📦

File Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.

Language: Python - Size: 1.12 MB - Last synced at: 20 days ago - Pushed at: about 4 years ago - Stars: 271 - Forks: 76

gatomod/path_trav

🤨🔎 A simple path traversal checker made with Rust. Useful for APIs that serve dynamic files.

Language: Rust - Size: 28.3 KB - Last synced at: 1 day ago - Pushed at: 3 months ago - Stars: 6 - Forks: 0

snsttr/diwa

A Deliberately Insecure Web Application

Language: PHP - Size: 2.12 MB - Last synced at: 25 days ago - Pushed at: over 5 years ago - Stars: 67 - Forks: 59

pwnosec/ApachSAL

Path Traversal automation vulnerability scanner tool.

Language: Python - Size: 679 KB - Last synced at: about 2 months ago - Pushed at: 4 months ago - Stars: 0 - Forks: 0

verylazytech/CVE-2024-45241

Size: 338 KB - Last synced at: 5 months ago - Pushed at: 5 months ago - Stars: 6 - Forks: 2

VainlyStrain/Vailyn

A phased, evasive Path Traversal + LFI scanning & exploitation tool in Python

Language: Python - Size: 994 KB - Last synced at: 5 months ago - Pushed at: over 3 years ago - Stars: 198 - Forks: 25

twseptian/cve-2021-41773

CVE-2021-41773: Path Traversal Zero-Day in Apache HTTP Server Exploited

Size: 2.93 KB - Last synced at: 2 months ago - Pushed at: over 3 years ago - Stars: 4 - Forks: 3

polarspetroll/EscapeAPI

An API for escaping different kind of queries

Language: Ruby - Size: 3.91 KB - Last synced at: 3 days ago - Pushed at: almost 4 years ago - Stars: 13 - Forks: 1

mathis2001/LighTraversal

LighTraversal is a tool designed to find basic directory traversal vulnerabilities

Language: Python - Size: 14.6 KB - Last synced at: about 2 months ago - Pushed at: over 1 year ago - Stars: 3 - Forks: 0

Mr-xn/CVE-2024-36991

Path Traversal On The "/Modules/Messaging/" Endpoint In Splunk Enterprise On Windows

Size: 2.93 KB - Last synced at: 14 days ago - Pushed at: 10 months ago - Stars: 7 - Forks: 2

ks-santosh/Courier-Service-Robot

An autonomous robot designed to navigate a grid, pick up and deliver virtual packages, and respond to traffic signals for an efficient courier service.

Language: Python - Size: 3.26 MB - Last synced at: 10 months ago - Pushed at: 10 months ago - Stars: 0 - Forks: 0

Cappricio-Securities/CVE-2024-24919

Check Point Security Gateway (LFI)

Language: Python - Size: 14.6 KB - Last synced at: 16 days ago - Pushed at: 10 months ago - Stars: 1 - Forks: 1

nathan-watson-uk/DirTras

DirTras is an automated directory/path traversal exploitation tool.

Language: Python - Size: 207 KB - Last synced at: 11 months ago - Pushed at: 11 months ago - Stars: 11 - Forks: 1

BitTheByte/BitTraversal

Burpsuite Plugin to detect Directory Traversal vulnerabilities

Language: Java - Size: 47.9 KB - Last synced at: 5 months ago - Pushed at: over 3 years ago - Stars: 28 - Forks: 4

treddis/dotdotfarm

Fast Path Traversal exploitation tool

Language: Python - Size: 110 KB - Last synced at: 13 days ago - Pushed at: about 1 year ago - Stars: 21 - Forks: 1

mbadanoiu/CVE-2020-12640

CVE-2020-12640: Local PHP File Inclusion via "Plugin Value" in Roundcube Webmail

Size: 198 KB - Last synced at: about 2 months ago - Pushed at: about 1 year ago - Stars: 0 - Forks: 0

Gill-Singh-A/SHARN-Web-Desktop

A Simple CTF Challenge that expects user to see Client Side Login Algorithm, Path Traversal and Command Injection

Language: HTML - Size: 1.53 MB - Last synced at: about 2 months ago - Pushed at: about 1 year ago - Stars: 0 - Forks: 0

clevernyyyy/zip-slip-poc

Quick and Dirty POC for Zip Slip

Language: JavaScript - Size: 38.1 KB - Last synced at: 12 months ago - Pushed at: over 4 years ago - Stars: 3 - Forks: 1

FOGSEC/Mobile-Security-Framework-MobSF Fork of R3dFruitRollUp/Mobile-Security-Framework-MobSF

Mobile Security Framework is an intelligent, all-in-one open source mobile application (Android/iOS/Windows) automated pen-testing framework capable of performing static, dynamic analysis and web API testing.

Language: Python - Size: 206 MB - Last synced at: about 1 year ago - Pushed at: over 7 years ago - Stars: 3 - Forks: 2

opabravo/dfuf

Dump files via Directory Traversal / LFI in a breeze with the help of ffuf

Language: Python - Size: 18.6 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 1 - Forks: 0

flimtix/php-pathtraversal

PHP - Path Traversal

Language: PHP - Size: 149 KB - Last synced at: 4 months ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

ThatNotEasy/Shell-Scanner

Perform With Shell Scanner Using Path Traversal & Strings

Language: Python - Size: 143 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 5 - Forks: 2

patmejia/cat-dir-content

Bash script for viewing code or file content using cat command. Designed for Data, DAG and Prompt Engineering.

Language: Shell - Size: 21.5 KB - Last synced at: 5 days ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

bhaveshAn/linux_path_traversal

Linux Path Traversal

Language: Python - Size: 5.16 MB - Last synced at: about 1 month ago - Pushed at: about 6 years ago - Stars: 1 - Forks: 0

vladan-stojnic/ML-based-WAF

Simple machine learning based web application firewall (WAF) created in python

Language: Jupyter Notebook - Size: 16.8 MB - Last synced at: about 2 years ago - Pushed at: over 4 years ago - Stars: 27 - Forks: 10

faisalkhan91/Insecure-File-Extraction

This code is the demonstration of using path traversal to exploit a poorly coded upload file fuction for malicious code injection on to a web server.

Language: Python - Size: 3.84 MB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

ColdFusionX/CVE-2021-34429

POC for CVE-2021-34429 - Eclipse Jetty 11.0.5 Sensitive File Disclosure

Language: Java - Size: 41 KB - Last synced at: about 2 years ago - Pushed at: over 3 years ago - Stars: 3 - Forks: 2

Ls4ss/CVE-2020-29134

Exploit CVE-2020-29134 - TOTVS Fluig Platform - Path Traversal

Language: Shell - Size: 1.09 MB - Last synced at: about 1 year ago - Pushed at: over 2 years ago - Stars: 5 - Forks: 0

I2rys/xdet

Detect SQLi, CRLF, path traversal, xss & many more in a URL.

Language: JavaScript - Size: 69.3 KB - Last synced at: 12 months ago - Pushed at: almost 3 years ago - Stars: 1 - Forks: 0

jvlsg/HeadPage

A (purpousely) vulnerable, social-media-like, django web application

Language: Python - Size: 2.1 MB - Last synced at: about 2 years ago - Pushed at: almost 4 years ago - Stars: 10 - Forks: 8

sec-it/exploit-CVE-2019-14530

OpenEMR < 5.0.2 - (Authenticated) Path Traversal - Local File Disclosure

Language: Ruby - Size: 10.7 KB - Last synced at: about 2 years ago - Pushed at: almost 4 years ago - Stars: 3 - Forks: 1