
CVE-2026-6471
Non-destructive PostgreSQL vulnerability checker for CVE-2026-6471. Audits server version and REPLICATION privileges to identify exposure to logical…

Non-destructive PostgreSQL vulnerability checker for CVE-2026-6471. Audits server version and REPLICATION privileges to identify exposure to logical…

Go library and CLI for managing database schema migrations with support for PostgreSQL, MySQL, SQLite, and Cassandra, including up/down migration…

Diagnostic and remediation script for five Redis CVEs, providing scanning, ACL-based mitigation, and configuration hardening guidance for…

CVE-2026-72898

A collection of awesome security hardening guides, tools and other resources

Proof-of-concept exploit for CVE-2026-21004: uses crafted SQLite FTS3/4 MATCH prefix queries as a blind oracle to recover indexed secret data…

Scans exported Azure domain dumps for plaintext passwords, connection strings, storage keys, and other secrets; generates redacted CSV/HTML reports…

Post-auth RCE exploit for ArcadeDB via JavaScript trigger GraalVM sandbox escape, executing OS commands over HTTP API with reverse shell or blind…

Share Buttons – Social Media <= 1.0.2 - Unauthenticated SQL Injection

未授权批量检测脚本

A security assessment tool for Hitachi Vantara's Pentaho Business Analytics platform.

SQLWinds - SQL Server Security Assessment & Post-Exploitation Toolkit

Desc "CVE-2026-8053 CHECKER"-20260518-16h30-GMT+7

ISR-sqlget It's a blind SQL injection tool developed in Perl.

[CVE-2022-41828] Amazon AWS Redshift JDBC Driver Remote Code Execution (RCE)

Proof-of-concept exploit for CVE-2022-22980 targeting Spring Data MongoDB. Demonstrates remote code execution via crafted MongoDB queries. Requires…

CVE-2019-5893 | OpenSource ERP application has SQL Injection vulnerability.

CVE-2026-23479 Redis Use-After-Free vulnerability detection tool