Daily Writeups
3.45K subscribers
2 photos
127K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: Major Security Overhaul for Apache Superset: Five Vulnerabilities Patched
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 26 Feb 2026 08:43:38 +0000
════════════════════════
Tags: #Vulnerability Report #access control bypass #Apache Superset #Business Intelligence #ClickHouse #CVE_2026_23982 #CVE_2026_23984 #data visualization #infosec #PostgreSQL #sql injection
Title: Poster Postgres RDBMS (THM) Tryhackme WriteUp Answer
════════════════════════
𐀪 Author: Lawvye
════════════════════════
Time: Sun, 01 Mar 2026 19:58:11 GMT
════════════════════════
Tags: #hacking #rdbms #tryhackme #postgresql #coding
Title: 10.0 CVSS Flaw in Kestra Grants Full Server Control
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Tue, 07 Apr 2026 14:02:37 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_34612 #cybersecurity #DevOps #infosec #Infrastructure as Code #Kestra #Orchestration Security #PostgreSQL #rce #sql injection #Stacked Queries
Title: Critical 9.1 SQL Injection Threatens Vendure Core Stores
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 15 Apr 2026 13:06:51 +0000
════════════════════════
Tags: #Vulnerability Report #@vendure/core #CVSS 9.1 #cybersecurity #e_commerce security #infosec #mysql #Patch Alert #PostgreSQL #Shop API #sql injection #sqli #Vendure
Title: From Second-Order SQLi to Full RCE: Breaking Through Filters in a Multi-Tenant Export Engine
════════════════════════
𐀪 Author: Omar Elshopky (3l5h0pky)
════════════════════════
Time: Sun, 19 Apr 2026 23:02:42 GMT
════════════════════════
Tags: #penetration_testing #web_development #cybersecurity #sql_injection #postgresql
Title: TryHackMe — Poster
════════════════════════
𐀪 Author: Kira @ hKiSec
════════════════════════
Time: Tue, 21 Apr 2026 00:07:34 GMT
════════════════════════
Tags: #tryhackme #ctf_writeup #cybersecurity #postgresql #ctf
Title: Total Database Collapse: Inside the ElectricSQL CVSS 10.0 SQL Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 22 Apr 2026 14:06:59 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_40906 #CVSS 10 #cyber attack #database security #ElectricSQL #infosec #Multi_tenancy #Patch Alert #PostgreSQL #sql injection #sqli
Title: Database Indexing, B-Trees, and Query Optimization (2026)
════════════════════════
𐀪 Author: Kaushikking
════════════════════════
Time: Mon, 27 Apr 2026 08:11:45 GMT
════════════════════════
Tags: #database #sql_injection #b_tree #sql #postgresql
Title: Critical LiteLLM SQL Injection (CVE-2026-42208) Exploited in the Wild
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Tue, 28 Apr 2026 01:53:32 +0000
════════════════════════
Tags: #Vulnerability Report #AI security #CVE_2026_42208 #cybersecurity #Data Breach #Exploit #infosec #LiteLLM #Patch Alert #PostgreSQL #sql injection #Sysdig
Title: Wiz ZeroDay.Cloud Event Reveals 20-Year-Old PostgreSQL Vulnerabilities
════════════════════════
𐀪 Author: Waqas
════════════════════════
Time: Mon, 04 May 2026 15:08:40 +0000
════════════════════════
Tags: #Security #Cybersecurity #Google #MariaDB #PostgreSQL #Technology #Vulnerability #Wiz #ZeroDay.Cloud
Title: Critical 9.4 CVSS pgAdmin 4 Flaws Enable Full OS Command Execution
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 15 May 2026 01:20:16 +0000
════════════════════════
Tags: #Vulnerability Report #Authorization Bypass #CVE_2026_7813 #Cyber Security #database security #infosec #Patch Alert #pgAdmin 4 #pgAdmin 9.15 #PostgreSQL #rce #sql injection
Title: Kubernetes Alert: 9.4 Severity RCE in CloudNativePG Enables PostgreSQL Superuser Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 15 May 2026 01:01:40 +0000
════════════════════════
Tags: #Vulnerability Report #cloud_native #CloudNativePG #CVE_2026_44477 #database security #infosec #Kubernetes Security #Patch Alert #PostgreSQL #privilege escalation #rce
Title: Massive PostgreSQL Update: 11 Vulnerabilities Patched as Version 14 Hits End-of-Life Warning
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Tue, 19 May 2026 02:12:46 +0000
════════════════════════
Tags: #Vulnerability Report #Code Execution #CVE_2026_6477 #CVE_2026_6637 #database security #DevOps #infosec #Patch Alert #Postgres Update #PostgreSQL #sql injection #SysAdmin
Title: PoC Exploit Publicly Disclosed: 20-Year-Old PostgreSQL pgcrypto Flaw (CVE-2026-2005) Grants Full Superuser RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Tue, 19 May 2026 01:51:05 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_2005 #database security #Heap Buffer Overflow #infosec #Patch Alert #pgcrypto #PoC Exploit #PostgreSQL #Public Disclosure #rce #Superuser Escalation
Title: Critical 9.8 CVSS: Severe SQL Injection Flaw Exposed in Marten .NET Document Store Engine
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Tue, 19 May 2026 01:04:57 +0000
════════════════════════
Tags: #Vulnerability Report #.NET Security #ACID Document Database #CVE_2026_45288 #Cyber Security #Full_Text Search #infosec #Marten .NET #Patch Alert #PostgreSQL #sql injection
Title: Drupal Database API Flaw (CVE-2026-9082) Exposes PostgreSQL Sites to Unauthenticated SQLi
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 21 May 2026 01:35:39 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_9082 #Cyber Security #Database Abstraction API #Drupal Core #infosec #PostgreSQL Security #SA_CORE_2026_004 #sql injection #Symfony Patch #Twig Template #unauthenticated RCE
Title: Drupal SQL Injection Exploit: Critical Flaw Exploited in the Wild with Public PoC
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 03 Jun 2026 07:54:18 +0000
════════════════════════
Tags: #Vulnerability #CVE_2026_9082 #Drupal Core #PostgreSQL Superuser #Remote Code Execution #sql injection #threat analysis
Title: From Default Credentials to Operating System Access: Exploiting PostgreSQL in Metasploitable 2
════════════════════════
𐀪 Author: VISHAL PRAJAPATI
════════════════════════
Time: Wed, 17 Jun 2026 16:06:04 GMT
════════════════════════
Tags: #penetration_testing #ethical_hacking #linux #postgresql #cybersecurity
Title: Three Critical pgAdmin 4 Vulnerabilities Patched: XSS, Auth Bypass, and AI Assistant SQLi
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Mon, 22 Jun 2026 00:30:32 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_12045 #CVE_2026_12046 #CVE_2026_12048 #pgAdmin #pgAdmin 4 vulnerabilities #PostgreSQL #Prompt injection #Stored XSS
Title: The Code Was Fine. The Access Model Was Not.
════════════════════════
𐀪 Author: Shiki65536@TechRoamer
════════════════════════
Time: Sun, 19 Jul 2026 09:05:37 GMT
════════════════════════
Tags: #application_security #postgresql #database_security #backend_development #supabase