← All tags

#SQLi

6 posts

BugForge - Weekly - Galaxy Dash (Mar 4, 2026)

This walkthrough demonstrates a UNION-based SQL injection vulnerability in a delivery booking application. The /api/bookings endpoint accepts a status query…

SQLi
Posted on 2026-03-04 09:00 5 min read
BugForge - Weekly - Galaxy Dash

BugForge - Weekly - Mesanet Portal (Feb 11, 2026)

This walkthrough demonstrates a SQL injection vulnerability in a microservice-based portal that follows the API Gateway pattern. By analysing the application's…

SQLi API Gateway Abuse Directory Enumeration
Posted on 2026-02-11 09:00 7 min read
BugForge - Weekly - Mesanet Portal

BugForge - Daily - Copy Pasta (Jan 28, 2026)

The CopyPasta application's share functionality contains a SQL Injection vulnerability in the /api/snippets/share/:id endpoint, where the GUID parameter is…

SQLi
Posted on 2026-01-28 20:00 5 min read
BugForge - Daily - Copy Pasta

BugForge - Daily - Cafe Club (Jan 11, 2026)

A SQL Injection vulnerability exists in the product API endpoint where the product ID parameter is directly concatenated into a SQLite query without…

SQLi Sqlite
Posted on 2026-01-11 20:00 4 min read
BugForge - Daily - Cafe Club

BugForge - Daily - Cheesy Does It (Jan 5, 2026)

The login functionality is vulnerable to SQL Injection, allowing attackers to bypass authentication and gain unauthorized access to admin accounts. By…

SQLi
Posted on 2026-01-05 20:00 4 min read
BugForge - Daily - Cheesy Does It

BugForge - Daily - Ottergram (Jan 3, 2026)

A SQL Injection vulnerability was identified in the user profile retrieval functionality where user-supplied input is concatenated directly into SQL…

SQLi
Posted on 2026-01-03 20:00 4 min read
BugForge - Daily - Ottergram
Zw4rts

© 2026 Zw4rts. All rights reserved.

GitHub