
CVE-2026-11349
Modern Events Calendar Lite <= 7.33.0 — Unauthenticated SQL Injection
database-securityexploitationpenetration-testing+3

Modern Events Calendar Lite <= 7.33.0 — Unauthenticated SQL Injection

A critical SQL Injection vulnerability (CVE-2025-25964) discovered in the School Information Management System v1.0


A low-privileged user can exploit this via a crafted order_by parameter, causing time-based blind SQL injection.

SQLWinds - SQL Server Security Assessment & Post-Exploitation Toolkit

Webrun <= 3.6.0.42 SQLi





Semantic inspector for SQL — catches fan-out double-counting, additivity violations, wrong join keys, and policy breaches before the query runs.…

This repository hosts a multimodal web attack dataset (MWAD) to advance AI-driven threat detection research.
