Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2021-22880 PoC — Postgresql PostgreSQL 资源管理错误漏洞

Source
Associated Vulnerability
Title:Postgresql PostgreSQL 资源管理错误漏洞 (CVE-2021-22880)
Description:The PostgreSQL adapter in Active Record before 6.1.2.1, 6.0.3.5, 5.2.4.5 suffers from a regular expression denial of service (REDoS) vulnerability. Carefully crafted input can cause the input validation in the `money` type of the PostgreSQL adapter in Active Record to spend too much time in a regular expression, resulting in the potential for a DoS attack. This only impacts Rails applications that are using PostgreSQL along with money type columns that take user input.
Readme
# CVE-2021-22880

## Usage
Creating rails-server and PoC.
refer to [hackerOne](https://hackerone.com/reports/1023899)
File Snapshot

[4.0K] /data/pocs/c38c5f018c1acfe7c30c1df249f2405f75858244 └── [ 118] README.md 0 directories, 1 file
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →