During recent engagements Shelltrail have had the need for creating multiple payloads for assessing impact during exploitation of Server-Side Request Forgery vulnerabilities.
Knowing that @PortSwigger have made an awesome XSS cheat sheet payload generator aimed towards testing Cross-Site Scripting vulnerabilities, why not return the favor and publish a SSRF generator.
This SSRF payload generator is mostly aimed towards testing for instance PDF generator where the end-user can insert HTML tags that may execute upon converting to PDF. However, the usage is only limited to the testers' creativity.
Try it out: SSRF payload generator
Prefer CLI? Get it on GitHub
If you find it useful, feel free to send us a message or follow us on LinkedIn
