
CVE-2026-33980
KQL injection in adx-mcp-server via table_name — CVE-2026-33980 / CVSS 8.3

KQL injection in adx-mcp-server via table_name — CVE-2026-33980 / CVSS 8.3

SQL injection in PyAthena via DefaultParameterFormatter (CVE-2026-65321)

Toolkit for CVE-2025-55182, also known as React2Shell.

pentest on MagnoHost hosting provider & MeteorCloud infrastructure with 15+ servers mapped. Findings: MariaDB exposed on 6 servers, OmniDialer…

Analysis and mitigation guide for CVE-2026-31431, a Linux kernel local privilege escalation in the crypto algif_aead subsystem, with impact…

CVE-2025-14847 (MongoBleed) scanner and exploit tool. Unauthenticated MongoDB heap memory leak via zlib decompression. Detection, memory extraction,…

Automated reconnaissance and exploitation framework for misconfigured Supabase instances. Features schema enumeration, Selenium-based key extraction,…

Exploit tool for CVE-2025-14847, a MongoDB memory disclosure vulnerability, enabling multi-threaded extraction of sensitive data and secrets from…

CVE-2025-14847 MongoDB Memory Leak Exploit

MongoBleed: CVE-2025-14847 Memory Leak Discovery Tool

A collection of manifests that will create pods with elevated privileges.

Context-Aware Memory Leak Scanner & Exploit for CVE-2025-14847.

a critical memory disclosure vulnerability in MongoDB's zlib compression handling. This tool allows security researchers to extract sensitive data…

Proof-of-concept demonstrating CVE-2025-24793 SQL injection vulnerability in Snowflake Connector for Python, with auto-detection of patched/unpatched…

A tool for exploring Firebase datastores.

[CVE-2022-41828] Amazon AWS Redshift JDBC Driver Remote Code Execution (RCE)

This tool takes a list of default creds and tests it against a postgresql server and logs any that work and the databases it has access to.

Cloud Container Attack Tool (CCAT) is a tool for testing security of container environments.