
RiskAssessmentFramework
The Secure Coding Framework

The Secure Coding Framework

JAW: A Graph-based Security Analysis Framework for Client-side JavaScript

h2-jdbc(https://github.com/h2database/h2database/issues/3195) & mysql-jdbc(CVE-2021-2471) SQLXML XXE vulnerability reproduction.

"Sucosh" is an automated Source Code vulnerability scanner and assessment framework for Python(Flask-Django) & NodeJs capable of performing code…

Vulnerability Assessment and Auditing Framework for all the Crypto Implementations.

Exploit lab, docker and code scanner for mongobleed Vulnerability CVE-2025-14847 plus Phoenix Security Sync tools


[CVE-2022-22980] Spring Data MongoDB SpEL Expression Injection

NodeJS + Postgres (Remote Code Execution) 🛰

PoC for CVE-2022-34265

🔐 CVE-2026-57821 - Apache Fineract SQL Injection Toolkit 📚 Two Python scripts for authorized security testing: verifier.py (safe detection, no…

PoC for CVE-2021-2471 - XXE in MySQL Connector/J

The latest workaround for the "Query is corrupt" error introduced with CVE-2019-1402

Multiple SQL injection vulnerabilities in /customer_support/ajax.php?action=save_department in Customer Support System 1.0 allow authenticated…

Django StringAgg SQL Injection (CVE-2020-7471)

Demo app showing how the Rails CVE-2013-5664 vulnerability works.


CVE-2022-37210 POC