This exploit script is for the CFOR vulnerability
Blog post for the exploit script
To run copy example_config.py to config.py and add your Github API key.
Then you can run the exploit script like so:
./cfor_exp.py -t https://github.com/user/reponameIt can also be ran against all repos owned by a user or org
./cfor_exp.py -o user