Skip to content

sudo-secure/security-research

Folders and files

NameName
Last commit message
Last commit date

Latest commit

Β 

History

53 Commits
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 

Repository files navigation

πŸ“‚ Repository Mission

This repository serves as a curated collection of proof-of-concept (PoC) exploits for vulnerabilities discovered in real-world software, hardware, or services.

πŸ“… Year: 2026

Below are the vulnerabilities cataloged for the year 2026. Each entry includes a direct link to the PoC, the affected product, and the vulnerability class.

# Product Vulnerability Type PoC Link CVE
1 school-management-system File Upload to RCE πŸ”— View PoC CVE-2026-5472
2 Online-Appointment-Booking-System SQL Injection πŸ”— View PoC
3 Online-Appointment-Booking-System SQL Injection 2 πŸ”— View PoC
4 Online-Appointment-Booking-System SQL Injection 3 πŸ”— View PoC
5 classroombookings Stored XSS πŸ”— View PoC
6 php-inventory-management-system SQL Injection πŸ”— View PoC
7 Hotel Booking Management System Information Disclosure πŸ”— View PoC
8 HavenHub Information Disclosure πŸ”— View PoC
9 stock-management SQL Injection πŸ”— View PoC
10 super-merge Prototype Pollution πŸ”— View PoC
11 christopy/mergedeep Prototype Pollution πŸ”— View PoC
12 brikcss/merge Prototype Pollution πŸ”— View PoC
13 object-merger Prototype Pollution πŸ”— View PoC
14 extend-deep Prototype Pollution πŸ”— View PoC
15 Restaurant Food Ordering Management System Information Disclosure πŸ”— View PoC
16 Restaurant Food Ordering Management System Information Disclosure 2 πŸ”— View PoC
17 Rabbit Unauthenticated File Upload πŸ”— View PoC
18 Kipa Auction online-auction-system Arbitrary User Deletion πŸ”— View PoC
19 muller Hardcoded Cryptographic Key πŸ”— View PoC

About

πŸ” Proof-of-Concepts for real-world vulnerabilities

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors