
cygor
An modular asset discovery framework written in python to automate the repeating manual work

An modular asset discovery framework written in python to automate the repeating manual work

Hibernate ORM Second-Order SQL Injection

Fixes unauthenticated SQL injection in a setup endpoint by replacing raw JDBC queries with ORM parameterization and constant-time token validation.

CLI tool to detect and update BCrypt password hashes with vulnerable work factor 31, integrating with Spring Security databases for CVE-2022-xxxx…

This tool takes a list of default creds and tests it against a postgresql server and logs any that work and the databases it has access to.

Proof-of-concept and technical analysis of CVE-2023-25813, a SQL injection vulnerability in Sequelize ORM versions prior to 6.19.1, including…

Proof-of-concept exploit for CVE-2026-78837, an unauthenticated SQL injection in AppNitro MachForm v30 allowing enumeration of database column names…

NEO-SQLi — exploit Django _connector SQL Injection (CVE-2025-64459) | canal RedTeam Brasil

SQL Injection vulnerability in MikroORM

Sequelize JSON Cast SQL Injection


CVE-2019-14900