An open API service providing repository metadata for many open source software ecosystems.

GitHub topics: prototype-pollution

ericcornelissen/pp-runtime-gadgets

Gadgets in the JavaScript runtime based on the ECMAScript specification

Language: HTML - Size: 1.04 MB - Last synced at: 2 days ago - Pushed at: 2 days ago - Stars: 0 - Forks: 0

endojs/endo

Endo is a distributed secure JavaScript sandbox, based on SES

Language: JavaScript - Size: 49.7 MB - Last synced at: 3 days ago - Pushed at: 4 days ago - Stars: 889 - Forks: 78

dwisiswant0/ppfuzz

A fast tool to scan client-side prototype pollution vulnerability written in Rust. 🦀

Language: Rust - Size: 68.4 KB - Last synced at: 1 day ago - Pushed at: about 2 years ago - Stars: 616 - Forks: 60

edoardottt/pphack

The Most Advanced Client-Side Prototype Pollution Scanner

Language: Go - Size: 546 KB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 221 - Forks: 19

acuciureanu/ppfang

A tool which helps identifying client-side prototype polluting libraries

Language: JavaScript - Size: 600 KB - Last synced at: 7 days ago - Pushed at: 16 days ago - Stars: 39 - Forks: 0

kleiton0x00/ppmap

A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.

Language: Go - Size: 49.8 KB - Last synced at: about 1 month ago - Pushed at: almost 3 years ago - Stars: 504 - Forks: 75

Joseph-Martre/prototype-pollution-interactive-demo

Interactive demo of a prototype pollution → XSS exploit in JavaScript

Language: HTML - Size: 142 KB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 0 - Forks: 0

KTH-LangSec/server-side-prototype-pollution

A collection of Server-Side Prototype Pollution gadgets and exploits

Language: JavaScript - Size: 344 KB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 160 - Forks: 13

dubniczky/Prototype-Pollution

JavaScript Prototype Pollution Attack demo against a NodeJS Express server using Lodash

Language: JavaScript - Size: 2.1 MB - Last synced at: about 2 months ago - Pushed at: almost 3 years ago - Stars: 1 - Forks: 1

kulkansecurity/ctf-challenge-ekoparty-2023

A CTF challenge we put together for Ekoparty's 2023 main CTF

Language: HTML - Size: 587 KB - Last synced at: 2 months ago - Pushed at: over 1 year ago - Stars: 1 - Forks: 0

kosmosec/proto-find

Let's check if your target is vulnerable for client side prototype pollution.

Language: Go - Size: 13.7 KB - Last synced at: about 1 year ago - Pushed at: over 1 year ago - Stars: 58 - Forks: 13

supercharge/json

Secure drop-in replacement for the `JSON` global with prototype pollution protection

Language: JavaScript - Size: 19.5 KB - Last synced at: 20 days ago - Pushed at: almost 3 years ago - Stars: 4 - Forks: 0

Serhatcck/server-side-prototype-pollution

A website developed with Nodejs. This website includes server side prototype pollution vulnerability

Language: CSS - Size: 8.45 MB - Last synced at: over 1 year ago - Pushed at: about 2 years ago - Stars: 5 - Forks: 0

pavelsaman/check-prototype-pollution

Check prototype pollution in JS libraries

Language: JavaScript - Size: 2.93 KB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

sschakraborty/SecurityPOC

Security Research and PoC

Language: Java - Size: 36.1 MB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 1 - Forks: 0