
JAW
JAW: A Graph-based Security Analysis Framework for Client-side JavaScript

JAW: A Graph-based Security Analysis Framework for Client-side JavaScript

Windows Oracle Database Attack Toolkit

Salesforce object access auditor

A python library to automate time-based blind SQL injection

Proof-of-concept exploit for CVE-2022-22980 targeting Spring Data MongoDB. Demonstrates remote code execution via crafted MongoDB queries. Requires…

PoC script for CVE-2023-20110 - Cisco Smart Software Manager On-Prem SQL Injection Vulnerability


CVE-2019-5893 | OpenSource ERP application has SQL Injection vulnerability.

Read-only IOC scanner and mitigation toolkit for cPanel & WHM EmailTrack SQL injection (CVE-2026-67401). Performs version fingerprinting, file…

PoC of SQL Injection vul(CVE-2020-9483,Apache SkyWalking)

Microsoft SQL Server sp_replwritetovarbin Memory Corruption via SQL Injection

Exploit for cve-2012-3137 Oracle challenge

Proof-of-concept exploit for CVE-2026-72898, targeting Toucan2 behavior with malformed map options to reproduce the vulnerability and validate…

Unauthenticated SQL injection exploit for Microsoft Configuration Manager (SCCM) 2503, enabling arbitrary SQL execution on the site database via the…

CVE-2025-60357- NoSQL(MongoDB) Injection POC

JeecgBoot SQL(CVE-2023-1454)sqlmap 注入不出来的情况可以使用该脚本

redis未授权、redis_CVE-2022-0543检测利用二合一脚本

Bash and PowerShell scripts for Azure security assessments, covering IAM privilege escalation, container registry exploitation, Key Vault exposure,…