# AabyssZG/SpringBoot-Scan

针对SpringBoot的开源渗透框架，以及Spring相关高危漏洞利用工具

Repository: https://github.com/AabyssZG/SpringBoot-Scan
Canonical: https://ross.abutalabs.com/products/springboot-scan
Homepage: https://blog.zgsec.cn/archives/129.html
Language: Python
License: MIT
License Family: permissive
Topics: spring, spring-boot, spring-vulnerability, springboot, vul, security, security-tools, cve-2018-1273, cve-2021-21234, cve-2022-22947, cve-2022-22963, cve-2022-22965, exploit, exploits, cve-2024-37084, cve-2025-41243, cve-2021-21344
Last push: 2025-11-09T14:58:39+00:00

## Health v2 (maintenance only)
Score: 53/100 (v2, computed 2026-09-03T02:20:16.233290+00:00)
- activity 51, release rhythm 32, longevity 93
- inputs: {"age_days": 1313, "days_push": 297, "days_rel": 297, "gap_med": 121.5, "n_releases_24m": 3}
- flags: none
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 2340, forks 179 (observed 2026-08-28T04:06:38.755346+00:00)

## What it is
SpringBoot-Scan is an open-source penetration testing framework targeting Spring Boot applications, written in Python. It scans for sensitive information-leakage endpoints and tests for a range of high-risk Spring-related CVEs such as Spring Core RCE (CVE-2022-22965) and Spring Cloud Gateway SpEL RCE (CVE-2022-22947).

## Use cases
- scan spring boot apps for sensitive actuator endpoints
- test spring boot for known CVE exploits
- check if a spring cloud gateway is vulnerable to CVE-2022-22947
- bulk scan a list of urls for spring boot information leaks
- export target assets from fofa or zoomeye for spring boot scanning
- interactively run commands on a spring rce vulnerability
- brute force spring boot endpoint directories

## When to choose
- you are doing authorized penetration testing against Spring Boot microservices
- you need a single tool covering many Spring CVE exploit modules
- you want batch scanning of URL lists for sensitive endpoint leaks

## When to avoid
- you need a general-purpose web vulnerability scanner beyond Spring
- you require a GUI or continuous vulnerability management platform
- your use case is defensive-only patch tracking rather than active testing

## Facets
- artifact type: cli-tool
- maturity: active
- function: penetration-testing, vulnerability-scanning, security, web-scraping
- domain: security, penetration-testing, web-development, developer-tools
- platform: python, cli, cross-platform
- tags: spring-boot, spring-vulnerabilities, cve-exploitation, sensitive-endpoint-scanning, red-team, offensive-security, asset-mapping, fofa, zoomeye, hunter

## Member repositories
- AabyssZG/SpringBoot-Scan (main) score 53

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:06:38.755346+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T02:37:24.296012+00:00, confidence not recorded.
  - readme: https://github.com/AabyssZG/SpringBoot-Scan (fetched 2026-08-28T04:06:38.755346+00:00, sha 7e19f2dc9177)
- Data as of 2026-08-30T08:39:29.467469+00:00.
