Template
Other
Vulnerability Management

nuclei-templates

by projectdiscovery

11.8Kstars
3.3Kforks
205watchers
Updated about 1 month ago
About

A community-driven collection of templates for the nuclei engine to identify security vulnerabilities in applications.

Community curated list of templates for the nuclei engine to find security vulnerabilities.

Primary Use Case

This repository provides a comprehensive set of vulnerability detection templates used by the nuclei scanner, enabling security professionals and DevSecOps teams to automate vulnerability scanning across web applications and infrastructure. Users can leverage these templates to quickly identify common security issues and contribute new templates to enhance coverage.

Key Features
  • Community curated and continuously updated vulnerability detection templates
  • Supports a wide range of vulnerability types including CVEs, XSS, RCE, and exposure issues
  • Templates categorized by tags, severity, authors, and directories for easy navigation
  • Integration-ready JSON and markdown statistics for template usage and analysis
  • Extensive documentation and templating guide for creating custom templates
  • Active community contributions with pull requests and issue-based template submissions
  • Supports various scanning domains such as HTTP, DNS, file, cloud, and network

Installation

  • Clone the repository using: git clone https://github.com/projectdiscovery/nuclei-templates.git
  • Navigate to the nuclei-templates directory
  • Use the templates with the nuclei scanner engine (https://github.com/projectdiscovery/nuclei)
  • Refer to https://nuclei.projectdiscovery.io/templating-guide/ for building or customizing templates

Usage

>_ nuclei -t nuclei-templates/

Run nuclei scanner using all templates from the nuclei-templates repository

>_ nuclei -update-templates

Update the local nuclei templates to the latest community curated versions

>_ Submit new templates via pull requests or GitHub issues

Contribute new vulnerability detection templates to the community repository

Security Frameworks
Reconnaissance
Discovery
Initial Access
Execution
Persistence
Usage Insights
  • Integrate nuclei-templates with CI/CD pipelines to automate vulnerability detection during development and deployment phases.
  • Leverage community-curated templates to stay updated on emerging vulnerabilities and reduce manual scanning effort.
  • Combine nuclei scanning results with SIEM tools to enhance detection and incident response capabilities.
  • Use custom templates to tailor scans for organization-specific assets and threat models.
  • Incorporate nuclei templates into purple team exercises to simulate attacker reconnaissance and improve defensive detection.

Docs Take 2 Hours. AI Takes 10 Seconds.

Ask anything about nuclei-templates. Installation? Config? Troubleshooting? Get answers trained on real docs and GitHub issues—not generic ChatGPT fluff.

3 free chats per tool • Instant responses • No credit card

Security Profile
Red Team80%
Blue Team60%
Purple Team70%
Details
LicenseMIT License
LanguageJavaScript
Open Issues1913
Topics
nuclei-templates
nuclei
bugbounty
security
nuclei-checks
exploits
exploit-development
vulnerability-detection
fingerprint
hacktoberfest