
ScanQLi
SQLi scanner to detect SQL vulns

SQLi scanner to detect SQL vulns

Version 0.2 - Exploit Time-based blind-SQL injection in HTTP-Headers (MySQL/MariaDB).

Automated Tool for Testing Header Based Blind SQL Injection

Advanced Time-based Blind SQL Injection fuzzer for HTTP Headers

Time-based blind SQL injection detection tool for recon and bug bounty. Accepts single URLs or lists, supports custom headers, proxy, and POST data…

A blazing fast and fully configurable Blind SQL Injection optimization and automation framework.

Blind SQL Injection Tool with Golang

A python library to automate time-based blind SQL injection

Drupal CVE-2026-9082 Blind SQL Injection Checker

PoC tool for CVE-2026-44680 affecting MikroORM ≤7.0.13. Exploits JSON path injection to extract database contents via UNION-based attacks. Features…


Automated exploit chain for CVE-2026-63030 / CVE-2026-60137 — unauthenticated blind SQLi via WordPress REST batch route-confusion. Dumps user hashes,…

CVE-2021-3262 - Blind SQL Injection in the editOEN parameter of TripSpark VEO Transportation / NovusEDU. Unauthenticated, internet-facing. Payloads,…


Exploits GLPI CVE-2025-24799 via unauthenticated time-based blind SQL injection to extract usernames and password hashes from glpi_users for…

Non-destructive proof-of-concept and verification harness for CVE-2026-60137, a blind SQL injection in WordPress core (`WP_Query::author__not_in`),…

Unauthenticated SQL Injection (Time-Based Blind)

WordPress PPOM for WooCommerce Plugin <= 33.0.15 is vulnerable to SQL Injection