Skip to content
This repository was archived by the owner on Oct 22, 2020. It is now read-only.

v1.5.1

Compare
Choose a tag to compare
@rastating rastating released this 15 Mar 23:30
· 359 commits to master since this release

Bug Fixes

  • Add gem validation on startup with instructions advising to run bundler if any are missing
  • Fix unhandled signal error when using ^C to exit a thread blocking module
  • Fix formatting error when displaying some module descriptions

New Modules

  • Add Admin Custom Login reflected XSS shell upload
  • Add Alpine PhotoTile reflected XSS shell upload
  • Add AnyVar 0.1.1 reflected XSS shell upload
  • Add Atahualpa Theme reflected XSS shell upload
  • Add Google Analytics Dashboard reflected XSS shell upload
  • Add Magic Fields <= 1.7.1 reflected XSS shell upload
  • Add Mobile App Native unauthenticated shell upload
  • Add Mobile Friendly App Builder unauthenticated shell upload
  • Add Rockhoist Badges 1.2.2 reflected XSS shell upload
  • Add Trust Form reflected XSS shell upload
  • Add User Login Log stored XSS shell upload
  • Add Webapp Builder unauthenticated shell upload
  • Add WordPress 4.2-4.7.2 CSRF DoS module
  • Add WordPress Mobile App Builder unauthenticated shell upload
  • Add WP-SpamFree Anti-Spam reflected XSS shell upload
  • Add Wp2Android unauthenticated shell upload