Matchboxmatchbox
← Back to match

CRLFuzz

Fast open-source tool written in Go for scanning web applications for CRLF injection vulnerabilities.

Desktopfree

CRLFuzz is a fast, open-source command-line tool written in Go for scanning web applications specifically for CRLF injection vulnerabilities. It supports scanning single URLs, URL lists, or piped input from other tools, and is aimed at security researchers and penetration testers who need a focused, chainable CRLF-injection checker.

Categories
SecurityVulnerability Scanning

Full match profile

Behind the summary, Matchbox keeps a richer profile of CRLFuzz - the signals our matcher actually reads to decide when to surface it. It stays private; claim the listing to see and control it.

  • Problem & pain-point mapping
  • Who we surface it to (audience fit)
  • What it's a strong alternative to
  • Trust & credibility signals

Try Matchbox with your own problem

Describe what is not working - we’ll show you whether CRLFuzz (or something else) actually fits.