
CVE-2025-63943
SQL Injection vulnerability discovered in Grocery Store Management System 1.0

SQL Injection vulnerability discovered in Grocery Store Management System 1.0
YAML-based proof-of-concept for CVE-2025-59528, demonstrating remote code execution in Flowise via the CustomMCP node's unsafe JavaScript evaluation.

CVE-2025-51458 - DB-GPT Pre-Auth SQL Injection PoC

An issue was discovered in Django 2.2 before 2.2.28, 3.2 before 3.2.13, and 4.0 before 4.0.4. QuerySet.annotate(), aggregate(), and extra() methods…

a proof of concept for CVE-2019-5784

Arbitrary deserialization that can be used to trigger SQL injection and even Code execution

Assets Management System 1.0 is vulnerable to SQL injection via the id parameter in delete.php

Demonstrates CVE-2024-21513 in langchain-experimental, showing arbitrary code execution via VectorSQLDatabaseChain's eval() on retrieved values.…

Proof-of-concept and detailed writeups for CVE-2024-57487 (authenticated RCE via file upload) and CVE-2024-57488 (stored XSS) in Online Car Rental…

Proof-of-concept and technical analysis of CVE-2023-25813, a SQL injection vulnerability in Sequelize ORM versions prior to 6.19.1, including…

Proof-of-concept exploit demonstrating SQL injection in the Daily Habit Tracker App, enabling unauthorized database access and data extraction.

[CVE-2022-22980] Spring Data MongoDB SpEL Expression Injection

CVE Reproduction: cve-2024-50330-ivanti_epm_sqli_reproduction

Security Advisory: HTTP Response Splitting via Unvalidated Response Header Values (rouille)


CVE-2022-37210 POC


version between CVE-2018-20433 and CVE-2019-5427