
CVE-2026-25746_SqlInjectionVulnerabilityOpenEMR7.0.4
CVE-2026-25746 - SQL Injection Vulnerability in OpenEMR <8.0.0

CVE-2026-25746 - SQL Injection Vulnerability in OpenEMR <8.0.0

CVE-2026-29187: SQL Injection Vulnerability in OpenEMR <8.0.0.3

CVE-2026-32127: SQL Injection Vulnerability in OpenEMR <8.0.0.1

UNIT4 TETA Mobile Edition 29HF13 was discovered to contain a SQL injection vulnerability via the ProfileName parameter in the errorReporting page.

JAW: A Graph-based Security Analysis Framework for Client-side JavaScript

Educational Redis rogue server tool for post-exploitation. Deploys a malicious Redis server to achieve remote code execution and execute arbitrary…

Scope aggregation tool for HackerOne, Bugcrowd, Intigriti, YesWeHack, and Immunefi!

Proof-of-concept exploit for CVE-2025-14847, a MongoDB bleed vulnerability. Enables verification of vulnerable instances and understanding of attack…

Proof-of-concept for CVE-2021-39378: SQL injection in openSIS 8.0 via the str parameter in NamesList.php, enabling database extraction and blind…

Proof-of-concept exploit for CVE-2021-39379, a SQL injection vulnerability in openSIS 8.0 via the password_stn_id parameter in ResetUserInfo.php,…

Proof-of-concept for CVE-2021-39377, a SQL injection vulnerability in openSIS 8.0 via the username parameter, enabling database takeover through…

CVE-2021-40353 openSIS 8.0 SQL Injection Vulnerability

Blind SQL injection vulnerability detection tool for TeconceTheme Coven Core WordPress theme. Enables safe testing of input sanitization and…

Proof-of-concept exploit for CVE-2026-78837, an unauthenticated SQL injection in AppNitro MachForm v30 allowing enumeration of database column names…

In-target C# post-exploitation tool for Microsoft SQL Server (MS SQL / MSSQL) traversing linked-server chains of any depth with cascading login…

PoC of "DEF CON 32 - SQL Injection Isn't Dead Smuggling Queries at the Protocol Level - Paul Gerste"

Self-contained Python PoC for Dovecot SQL authentication bypass: logs in as any user without the real password and enumerates usernames on vulnerable…

Proof-of-concept exploit for CVE-2026-40083, a SQL injection in Cacti managers.php allowing authenticated users to extract MySQL databases, user…