
CVE-2024-34693
CVE-2024-34693: Server Arbitrary File Read in Apache Superset

CVE-2024-34693: Server Arbitrary File Read in Apache Superset

Proof-of-concept exploit for CVE-2023-1454, an unauthenticated SQL injection vulnerability in JeecgBoot v3.5.0, enabling database extraction and…

Advanced PostgreSQL database enumeration tool exploiting CVE-2024-39309 in Parse Server - Comprehensive SQL injection exploitation for security…

EU focused compliance MCP server

Universal mobile devtool for Agents & Humans - control iOS Simulators, Android Emulators, and real devices from a single dashboard and CLI

Local CVE/CPE vulnerability database with search, ranking, web interface, and API for offline vulnerability analysis and management.

PowerUpSQL: A PowerShell Toolkit for Attacking SQL Server

Open-source vulnerability database aggregating CVE data from multiple sources with a web UI and API. Maps vulnerabilities to specific software…

Proof-of-concept exploit for CVE-2025-14847, a MongoDB zlib decompression vulnerability that leaks uninitialized server memory via crafted BSON…

SQLC2 is a PowerShell script for deploying and managing a command and control system that uses SQL Server as both the control server and the agent.

In-target C# post-exploitation tool for Microsoft SQL Server (MS SQL / MSSQL) traversing linked-server chains of any depth with cascading login…

Tool to crawl, visualize and interact with SQL server links in a d3 graph to help in your red/blue/purple/.../risk assessments pentest hacking team…

Detect security issues in an Apache CouchDB server

Pre-launch security checklist for AI-generated apps (Lovable, v0, Bolt, Cursor). 69 checks covering Supabase RLS, exposed keys, and prompt injection.…

POC for CVE-2024-42327, an authenticated SQL Injection in Zabbix through the user.get API Method

Ghost CMS Content API Blind SQL Injection

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.
