
OWASP-WSTG-Rag
OWASP Web Security Testing Guide RAG system with ChromaDB, MCP for Claude Code
ai-securityapi-security-testingauthentication+8
22

OWASP Web Security Testing Guide RAG system with ChromaDB, MCP for Claude Code

Automatic SQL injection and database takeover tool

Demonstrates a critical GraphQL batching alias-confusion SQL injection (CVE-2026-5432) with a vulnerable Node.js server and Python exploit for…

Time-based blind SQL injection proof-of-concept for LiteLLM v1.65.4. Exploits the `/key/block` endpoint to extract database contents and read server…

Scanner: CVE-2026-42208 LiteLLM SQL Injection — Python scanner for BerriAI LiteLLM proxy instances