
CVE-2026-34220
SQL Injection vulnerability in MikroORM

SQL Injection vulnerability in MikroORM

Sequelize JSON Cast SQL Injection

Hibernate ORM Second-Order SQL Injection

Educational Redis rogue server tool for post-exploitation. Deploys a malicious Redis server to achieve remote code execution and execute arbitrary…


CVE-2025-14847 (MongoBleed) scanner and exploit tool. Unauthenticated MongoDB heap memory leak via zlib decompression. Detection, memory extraction,…

CVE-2025-14847 | MongoBleed vulnerability proof of concept project

Technical advisory and analysis of CVE-2025-14598, a critical unauthenticated SQL injection in BET e-Portal enabling database manipulation and…

Proof-of-concept exploit for CVE-2025-66224 demonstrating remote code execution in OrangeHRM via command injection in the sendmail_path parameter,…

POC-Django JSONField/HStoreField SQL Injection Vulnerability (CVE-2019-14234)

CVE-2024-51482 ZoneMinder v1.37.* <= 1.37.64 poc

Database authenticated code execution

Demo app showing how the Rails CVE-2013-5664 vulnerability works.

A flaw was found in the Django package, which leads to a SQL injection. This flaw allows an attacker using a crafted dictionary containing malicious…

CVE-2026-24417 - OpenSTAManager has a Time-Based Blind SQL Injection with Amplified Denial of Service

PoC de RCE en PostgreSQL — CVE-2025-8714

CVE-2026-22243 - EGroupware has SQL Injection in Nextmatch Filter Processing