
CVE-2026-78070
SQL Injection via ORDER BY Shortcode in plg_content_dpcalendar — DPCalendar Free ≤ 10.11.2

SQL Injection via ORDER BY Shortcode in plg_content_dpcalendar — DPCalendar Free ≤ 10.11.2

Advisory and AddressSanitizer reproducer for a SQLite SQLAR heap-buffer-overflow triggered by a crafted SZ value causing truncated allocation and…

OSCP-focused toolkit for read-only network, SMB, AD, DNS, web, and database enumeration; privesc scanning, hash identification, and…

Self-Defeating Audits: reproducible lab showing a low-privilege PostgreSQL role reversibly blinding a trigger-based auditor + poisoning attribution…

Fixes unauthenticated SQL injection in a setup endpoint by replacing raw JDBC queries with ORM parameterization and constant-time token validation.

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.

Proof-of-concept exploit for CVE-2026-21004: uses crafted SQLite FTS3/4 MATCH prefix queries as a blind oracle to recover indexed secret data…

SQL injection in PyAthena via DefaultParameterFormatter (CVE-2026-65321)

CVE-2026-1337 - Neo4j - Log Injection

Salesforce object access auditor

mssql 终端连接工具|命令执行

CVE-2026-22243 - EGroupware has SQL Injection in Nextmatch Filter Processing

CVE-2026-24417 - OpenSTAManager has a Time-Based Blind SQL Injection with Amplified Denial of Service

CVE-2026-25514 - FacturaScripts has SQL Injection in Autocomplete Actions

A collection of web pages vulnerable to SQL injection flaws

Database authenticated code execution

The script focuses on safe artifact acquisition first, followed by optional on-host analysis, and produces a portable, hashed forensic archive…

This repo contains my python script version of CVE-2025-14847 (MongoBleed)