
CyberChef
The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis

The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis

Automated testing to find logic and performance bugs in database systems

A collection of web pages vulnerable to SQL injection flaws

django 漏洞:CVE-2020-7471 Potential SQL injection via StringAgg(delimiter) 的漏洞环境和 POC

Django QuerySet.annotate(), aggregate(), extra() SQL 注入

This script demonstrates a time-based blind SQL injection on Moodle platforms, exploiting response delays to extract data.

GeoServer & GeoTools SQL Injection (CVE-2023-25157 & CVE-2023-25158)

Case study and POC of CVE-2017-12635: Apache CouchDB 1.7.0 / 2.x < 2.1.1 - Remote Privilege Escalation

CVE-2025-26794: Blind SQL injection in Exim 4.98 (SQLite DBM)- exploit writeup

Proof of Concept for CVE-2026-65761 - EasyStore Pro Unauthenticated SQL Injection via `filter_sortby`

CVE-2021-3262 - Blind SQL Injection in the editOEN parameter of TripSpark VEO Transportation / NovusEDU. Unauthenticated, internet-facing. Payloads,…

Security research project — SQL Injection vulnerability exploitation and mitigation

vulhub/H2-database/CVE-2022-23221

ZenoMinder Blind SQL Injection PoC

Ultimate Member Unauthorized Database Access / SQLi


PoC exploit for CVE-2026-17543: SQL injection in PHP ext/pgsql via backslash breakout, with data exfiltration and admin privilege-escalation payloads…

Time-based SQL injection PoC for CVE-2024-51482 in ZoneMinder, with reproducible Docker lab and automated data extraction.