
CVE-2022-28346
SQL injection in QuerySet.annotate(), aggregate(), and extra()

SQL injection in QuerySet.annotate(), aggregate(), and extra()

A basic analysis about CVE-2021-35942. SQL injection in Django.

Authenticated Remote Code Execution via loadReader functionName code injection in DbGate

Exploit script for CVE-2025-49844, a use-after-free vulnerability in Redis Lua scripting enabling remote code execution. Targets specific Redis…


CVE-2026-34038: Authenticated Remote Command Injection in Coolify


Proof-of-concept exploit for CVE-2025-49132, a path traversal vulnerability in Pterodactyl panel. Forges session cookies using exposed Redis server…

Nuclei-based detection template for CVE-2023-27532 in Veeam Backup & Replication, enabling automated credential extraction vulnerability scanning…

CVE-2025-9776 — CatFolders WordPress Plugin: Authenticated SQL Injection via CSV Import | POC + Walkthrough

Exploit for CVE-2025-32023

Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API…

Refurbish

利用CVE-2024-0044 在Android12、13 没有root'下进行数据备份 用法./CVE-2024-0044-EXP.sh <package_name>

Silly Rails App to demonstrate vuln CVE-2013-0156

Proof-of-concept exploit for CVE-2022-48429, a stored cross-site scripting vulnerability in JetBrains YouTrack dashboards enabling low-privileged…

Specifications and open-source platforms for self-sovereign, encrypted real estate data management with blockchain-inspired verification, enabling…