nuclei-templates/README.md

4.9 KiB

Nuclei Templates

Community curated list of templates for the nuclei engine to find security vulnerabilities in applications.

DocumentationContributionsDiscussionCommunityFAQsJoin Discord


Templates are the core of the nuclei scanner which powers the actual scanning engine. This repository stores and houses various templates for the scanner provided by our team, as well as contributed by the community. We hope that you also contribute by sending templates via pull requests or Github issues to grow the list.

Nuclei Templates overview

An overview of the nuclei template project, including statistics on unique tags, author, directory, severity, and type of templates. The table below contains the top ten statistics for each matrix; an expanded version of this is available here, and also available in JSON format for integration.

Nuclei Templates Top 10 statistics

TAG COUNT AUTHOR COUNT DIRECTORY COUNT SEVERITY COUNT TYPE COUNT
cve 576 dhiyaneshdk 234 cves 583 info 577 http 1696
panel 214 pikpikcu 234 vulnerabilities 262 high 457 file 46
xss 213 pdteam 191 exposed-panels 216 medium 385 network 35
wordpress 198 daffainfo 128 exposures 174 critical 218 dns 11
exposure 196 geeknik 127 technologies 158 low 156
rce 183 dwisiswant0 127 misconfiguration 124
lfi 168 gy741 62 takeovers 70
cve2020 155 madrobot 60 default-logins 50
wp-plugin 133 princechaddha 53 file 46
tech 100 gaurang 42 workflows 34

143 directories, 1845 files.

📖 Documentation

Please navigate to https://nuclei.projectdiscovery.io for detailed documentation to build new or your own custom templates. We have also added a set of templates to help you understand how things work.

💪 Contributions

Nuclei-templates is powered by major contributions from the community. Template contributions , Feature Requests and Bug Reports are more than welcome.

💬 Discussion

Have questions / doubts / ideas to discuss? Feel free to open a discussion on Github discussions board.

👨‍💻 Community

You are welcome to join our Discord Community. You can also follow us on Twitter to keep up with everything related to projectdiscovery.

💡 Notes

  • Use YAMLlint (e.g. yamllint to validate the syntax of templates before sending pull requests.

Thanks again for your contribution and keeping this community vibrant. ❤️