
vulnerablecode
Open-source vulnerability database aggregating CVE data from multiple sources with a web UI and API. Maps vulnerabilities to specific software…

Open-source vulnerability database aggregating CVE data from multiple sources with a web UI and API. Maps vulnerabilities to specific software…

🛠 Exploit the CVE-2025-14847 vulnerability in MongoDB to disclose sensitive heap memory using a Python script that analyzes responses for new leaked…

Automatic SQL injection and database takeover tool


Pre-launch security checklist for AI-generated apps (Lovable, v0, Bolt, Cursor). 69 checks covering Supabase RLS, exposed keys, and prompt injection.…

wpsqli full SQLi extractor + dumper for CVE-2026-60137

Discuz! X5.0 Authentication Bypass Exploit Framework (CVE-2026-49952) - Critical vulnerability allowing unauthenticated database backup access via…

PoC tool for CVE-2026-44680 affecting MikroORM ≤7.0.13. Exploits JSON path injection to extract database contents via UNION-based attacks. Features…

Automated SQL injection detection and exploitation tool for extracting database information from web applications, supporting multiple injection…

PoC for CVE-2026-54350 — Budibase unauthenticated NoSQL operator injection (CVSS 10.0). Read/mass-write any document collection via a PUBLIC query.

Local CVE/CPE vulnerability database with search, ranking, web interface, and API for offline vulnerability analysis and management.

CVE-2026-37149 - SQL Injection vulnerability in the scost parameter of search_products.php in…


SQL Injection vulnerability in NASA EOSDIS MODAPS due to improper input validation in the `category` parameter. This flaw allows attackers to…

CVE-2026-29187: SQL Injection Vulnerability in OpenEMR <8.0.0.3

CVE-2026-32127: SQL Injection Vulnerability in OpenEMR <8.0.0.1

CVE-2026-25746 - SQL Injection Vulnerability in OpenEMR <8.0.0

Security advisory for CVE-2026-30655: unauthenticated SQL injection in esiclivre (/reset/index.php).