
mongobleed-exploit-CVE-2025-14847
Exploit lab, docker and code scanner for mongobleed Vulnerability CVE-2025-14847 plus Phoenix Security Sync tools

Exploit lab, docker and code scanner for mongobleed Vulnerability CVE-2025-14847 plus Phoenix Security Sync tools

CVE-2012-2122 - MySQL Authentication Bypass

genesisQL-sqli-CVE-2026-36826

Proof-of-concept exploit demonstrating multiple unauthenticated SQL injection vulnerabilities in Support Board 3.3.3, with error-based and time-based…

Working POC of CVE-2026-6664 written by Sonnet 4.6

CVE-2024-55963, allows unauthenticated remote code execution on Appsmith Enterprise platform due to a misconfigured PostgreSQL database included by…

Proof-of-concept exploit for authenticated remote code execution in PostgreSQL 9.6.1, demonstrating how misconfigured databases can be leveraged for…

Unauthenticated time-based blind SQL injection PoC for VICIdial CVE-2024-8503, with metadata extraction, resumable scans, and strict safety limits.

SQL Injection Vulnerability in Vehicle Management System 1.0 - 1.3

Reproducible Docker lab for CVE-2025-25257, demonstrating SQL injection bypass and data exfiltration via HTTP Authorization header on a simulated…

Woo Inquiry <= 0.1 - Unauthenticated SQL Injection

Nexter <= 2.0.3 - Authenticated (Subscriber+) SQL Injection via 'to' and 'from'

OpenEMR Security issue

Proof-of-concept exploit for an authenticated SQL injection vulnerability in JFinal CMS 5.1.0, demonstrating information disclosure and potential…


LMA ISIDA Retriever 5.2 allows SQL Injection

RSVPMarker <= 10.6.6 - Unauthenticated SQL Injection