
CVE-2026-76904
POC | GeoServer Unauthenticated SQL injection to complete RCE

POC | GeoServer Unauthenticated SQL injection to complete RCE

Self-Defeating Audits: reproducible lab showing a low-privilege PostgreSQL role reversibly blinding a trigger-based auditor + poisoning attribution…

Proof-of-concept exploit for CVE-2026-14669, a PostgreSQL to_char() timezone abbreviation heap buffer overflow enabling RCE through information leak…

PoC exploit for CVE-2026-17543: SQL injection in PHP ext/pgsql via backslash breakout, with data exfiltration and admin privilege-escalation payloads…

PoC exploit for CVE-2026-58048, an authenticated cPanel SQL injection that escalates to MySQL root and supports file-read, webshell, and RCE payloads.

Proof of concept with GDB‑assisted exploitation (educational / lab use only)

MariaDB 13.0.1-rc RCE lab — priv-esc + heap UAF + JOP chain to system() as uid 999(mysql) on stock Docker image. Found with RAPTOR and…

CVE-2026-52887 — NocoBase SQL injection -> PostgreSQL-superuser RCE (myInAppChannels:list filter, CVSS 10.0). Author PoC + source analysis + docker…

Security research project — SQL Injection vulnerability exploitation and mitigation

Proof-of-concept for CVE-2026-65761: unauthenticated SQL injection via filter_sortby in EasyStore Joomla, with Docker lab for testing and patching.

Pre-auth RCE exploit for WordPress (CVE-2026-63030 + CVE-2026-60137) chaining route confusion and SQL injection into full shell access. Includes…

Reproduces CVE-2022-23221 RCE in H2 database via malicious JDBC URL with INIT parameter, using Docker-based lab environment and Python PoC exploit…

Docker-based vulnerable WordPress lab with Python exploit demonstrating pre-auth route confusion and SQL injection chain (CVE-2026-63030 +…

Pre-authentication remote code execution exploit toolkit for WordPress Core (CVE-2026-63030 + CVE-2026-60137). Includes detection scanner, full RCE…

wp2shell — Pre-authentication RCE in WordPress Core (CVE-2026-60137 + CVE-2026-63030). Chains an SQL injection in author__not_in with batch-route…

Unauthenticated remote code execution exploit for WordPress core (CVE-2026-63030 + CVE-2026-60137). Chains REST API batch route confusion with SQL…

Educational PoC + lab for CVE-2026-63030 + CVE-2026-60137: pre-auth SQLi in WordPress core via REST batch-route confusion

Docker-based lab for exploiting CVE-2026-25993, a second-order SQL injection in EverShop. Deploy, enumerate, and dump the database via crafted…