GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,504
Maven
5,000+
npm
4,149
NuGet
735
pip
3,949
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
4,186 advisories
Filter by severity
SQL injection vulnerability in bannerclick.php in ZeeBuddy 2.1 allows remote attackers to execute...
Critical
Unreviewed
CVE-2008-3604
was published
May 2, 2022
SQL injection vulnerability in ARAX-UI Synonym Lookup functionality in GitHub repository rtxteam...
Critical
Unreviewed
CVE-2022-1531
was published
Apr 30, 2022
The SemanticDrilldown extension for MediaWiki through 1.37.2 (before...
Critical
Unreviewed
CVE-2022-29904
was published
Apr 30, 2022
Red Planet Laundry Management System 1.0 is vulnerable to SQL Injection.
Critical
Unreviewed
CVE-2022-28452
was published
Apr 30, 2022
SQL Injection (SQLi) vulnerability in Mufeng's Hermit ????? plugin <= 3.1.6 on WordPress allows...
Critical
Unreviewed
CVE-2022-29411
was published
Apr 29, 2022
Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the...
Critical
Unreviewed
CVE-2022-27299
was published
Apr 27, 2022
CuppaCMS v1.0 was discovered to contain a SQL injection vulnerability via the menu_filter...
Critical
Unreviewed
CVE-2022-27984
was published
Apr 27, 2022
CuppaCMS v1.0 was discovered to contain a SQL injection vulnerability via /administrator/alerts...
Critical
Unreviewed
CVE-2022-27985
was published
Apr 27, 2022
ED01-CMS v20180505 was discovered to contain a SQL injection vulnerability via the component post...
Critical
Unreviewed
CVE-2022-28524
was published
Apr 27, 2022
The Users Ultra WordPress plugin through 3.1.0 fails to properly sanitize and escape the...
Critical
Unreviewed
CVE-2022-0769
was published
Apr 26, 2022
The 5 Stars Rating Funnel WordPress Plugin | RRatingg WordPress plugin before 1.2.54 does not...
Critical
Unreviewed
CVE-2022-0657
was published
Apr 26, 2022
The Master Elements WordPress plugin through 8.0 does not validate and escape the meta_ids...
Critical
Unreviewed
CVE-2022-0693
was published
Apr 26, 2022
The Donations WordPress plugin through 1.8 does not sanitise and escape the nd_donations_id...
Critical
Unreviewed
CVE-2022-0782
was published
Apr 26, 2022
The sharebar plugin before 1.2.2 for WordPress has SQL injection.
Critical
Unreviewed
CVE-2012-6719
was published
Apr 23, 2022
Link-Admin v0.0.1 was discovered to contain a SQL injection vulnerability via DictRest...
Critical
Unreviewed
CVE-2022-27342
was published
Apr 23, 2022
JFinalCMS v2.0 was discovered to contain a SQL injection vulnerability via the Article Management...
Critical
Unreviewed
CVE-2022-27341
was published
Apr 23, 2022
Jara 1.6 has a SQL injection vulnerability.
Critical
Unreviewed
CVE-2011-4094
was published
Apr 22, 2022
Drupal SQL Injection vulnerability
Critical
CVE-2011-2715
was published
for
drupal/core
(Composer)
Apr 22, 2022
Typo3 SQL injection due to faulty prepared statements
Critical
CVE-2011-3583
was published
for
typo3/cms
(Composer)
Apr 22, 2022
SQL injection vulnerability in Jifty::DBI before 0.68.
Critical
Unreviewed
CVE-2011-1933
was published
Apr 22, 2022
SQL injection vulnerability in Zend Framework 1.10.x before 1.10.9 and 1.11.x before 1.11.6 when...
Critical
Unreviewed
CVE-2011-1939
was published
Apr 22, 2022
Purchase Order Management System v1.0 was discovered to contain a SQL injection vulnerability via...
Critical
Unreviewed
CVE-2022-28022
was published
Apr 22, 2022
Student Grading System v1.0 was discovered to contain a SQL injection vulnerability via /student...
Critical
Unreviewed
CVE-2022-28024
was published
Apr 22, 2022
Student Grading System v1.0 was discovered to contain a SQL injection vulnerability via /student...
Critical
Unreviewed
CVE-2022-28026
was published
Apr 22, 2022
Purchase Order Management System v1.0 was discovered to contain a SQL injection vulnerability via...
Critical
Unreviewed
CVE-2022-28023
was published
Apr 22, 2022
ProTip!
Advisories are also available from the
GraphQL API