
CVE-2023-3163-SQL-Injection-Prevention
A simple and quick way to check if your SQL Developer by Oracle is vulnerable to SQL Injection (CVE-2023-3163), most commonly occurs when SQL…

A simple and quick way to check if your SQL Developer by Oracle is vulnerable to SQL Injection (CVE-2023-3163), most commonly occurs when SQL…

Joomla内核SQL注入漏洞原理、docker及poc[基于pocsuite框架]

Interactive proof-of-concept demonstrating Django SQL injection (CVE-2021-35042) with step-by-step exploitation against SQLite and PostgreSQL…

OpenSTAManager v2.9.8 and earlier contain a critical Error-Based SQL Injection vulnerability in the bulk operations handler for the Scadenzario…

CVE-2026-37149 - SQL Injection vulnerability in the scost parameter of search_products.php in…

A critical SQL Injection vulnerability (CVE-2025-25964) discovered in the School Information Management System v1.0

Proof-of-concept exploit for CVE-2022-24706 targeting Apache CouchDB 3.2.1 and below. Demonstrates remote command execution via Erlang Distribution…

Proof-of-concept for unauthenticated SQL injection in Hotel and Tourism Reservation System 1.0, demonstrating database extraction via the tour…

Proof of Concept for CVE-2026-65761 - EasyStore Pro Unauthenticated SQL Injection via `filter_sortby`

CVE-2021-3262 - Blind SQL Injection in the editOEN parameter of TripSpark VEO Transportation / NovusEDU. Unauthenticated, internet-facing. Payloads,…

vulhub/H2-database/CVE-2022-23221

Security research project — SQL Injection vulnerability exploitation and mitigation

Self-contained security training lab reproducing CVE-2026-20253 (Splunk Enterprise unauthenticated RCE). Provides a Docker-based environment to…

SQL Injection in Dagster database I/O managers via dynamic partition keys (DuckDB/Snowflake/BigQuery/DeltaLake) — High

CVE-2020-7471 Potential SQL injection via StringAgg(delimiter)


Blind noSQL injection case study lab based on CVE-2018-3783

demo application showing off SQL Injection exploit in django 5.2.7