Brosec icon indicating copy to clipboard operation
Brosec copied to clipboard

Brosec - An interactive reference tool to help security professionals utilize useful payloads and commands.

Results 15 Brosec issues
Sort by recently updated
recently updated
newest added

Bumps [marked](https://github.com/markedjs/marked) from 0.6.2 to 4.0.10. Release notes Sourced from marked's releases. v4.0.10 4.0.10 (2022-01-13) Bug Fixes security: fix redos vulnerabilities (8f80657) v4.0.9 4.0.9 (2022-01-06) Bug Fixes retain line breaks...

dependencies

Bumps [i](https://github.com/pksunkara/inflect) from 0.3.6 to 0.3.7. Commits 71961bd Version bump v0.3.7 a9a0a8e Fix CVE-2021-3820 c025e15 Fix formatting dace42b Move away from travis 22fa473 Merge pull request #30 from pksunkara/dependabot/add-v2-config-file e84c23a...

dependencies

Bumps [ssh2](https://github.com/mscdex/ssh2) from 0.5.4 to 1.4.0. Commits cde0b02 bump version to 1.4.0 56fd3de protocol/crypto: fix CBC decrypting in binding 918eb6d Protocol: add type check 4606d0e SFTP: increase max packet length,...

dependencies

Bumps [y18n](https://github.com/yargs/y18n) from 3.2.1 to 3.2.2. Release notes Sourced from y18n's releases. y18n y18n-v4.0.3 Bug Fixes release: 4.x.x should not enforce Node 10 (#126) (1e21a53) y18n y18n-v4.0.2 Bug Fixes security:...

dependencies

Bumps [ecstatic](https://github.com/jfhbrook/node-ecstatic) from 2.1.0 to 4.1.4. Release notes Sourced from ecstatic's releases. 4.1.4 broken action 4.1.3 People are hollerin' about a CVE so Commits c2de337 Update package.json 4961bbe what are...

dependencies

Bumps [lodash](https://github.com/lodash/lodash) from 4.17.11 to 4.17.21. Commits f299b52 Bump to v4.17.21 c4847eb Improve performance of toNumber, trim and trimEnd on large input strings 3469357 Prevent command injection through _.template's variable...

dependencies

Bumps [hosted-git-info](https://github.com/npm/hosted-git-info) from 2.4.2 to 2.8.9. Changelog Sourced from hosted-git-info's changelog. 2.8.9 (2021-04-07) Bug Fixes backport regex fix from #76 (29adfe5), closes #84 2.8.8 (2020-02-29) Bug Fixes #61 & #65...

dependencies

This app needs a flag finding regex. Would use, A+++++. ...maybe even a section of useful regex for pentesting, you know?

help wanted

How do you feel about using [Standard](https://github.com/feross/standard)? **Advantages:** - Catches unused variables (aka keeps code base clean and prevents the root cause of so many hard-to-detect bugs) - Forces JS...

I see that many of the `payloads` have been inspired by resources in [SecLists](https://github.com/danielmiessler/SecLists). What if we can seed a local MongoDB or SQLite with all the payloads from SecLists...