GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,517
Maven
5,000+
npm
4,150
NuGet
736
pip
3,952
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
15,096 advisories
Filter by severity
SourceCodester Employee and Visitor Gate Pass Logging System v1.0 is vulnerable to SQL Injection...
Critical
Unreviewed
CVE-2023-31752
was published
May 23, 2023
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2023-1508
was published
May 23, 2023
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2023-2750
was published
May 24, 2023
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2023-2045
was published
May 24, 2023
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2023-2064
was published
May 24, 2023
SQL injection in "/Framewrk/Home.jsp" file (POST method) in tCredence Analytics iDEAL Wealth and...
Moderate
Unreviewed
CVE-2022-30025
was published
May 24, 2023
In the Store Commander scexportcustomers module for PrestaShop through 3.6.1, sensitive SQL calls...
Critical
Unreviewed
CVE-2023-33278
was published
May 25, 2023
In the Store Commander scquickaccounting module for PrestaShop through 3.7.3, multiple sensitive...
Critical
Unreviewed
CVE-2023-33280
was published
May 25, 2023
In the Store Commander scfixmyprestashop module through 2023-05-09 for PrestaShop, sensitive SQL...
Critical
Unreviewed
CVE-2023-33279
was published
May 25, 2023
Sourcecodester Faculty Evaluation System v1.0 is vulnerable to SQL Injection via /eval/admin...
High
Unreviewed
CVE-2023-33439
was published
May 26, 2023
An issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. It is an...
Critical
Unreviewed
CVE-2022-24627
was published
May 29, 2023
An issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. It is...
High
Unreviewed
CVE-2022-24628
was published
May 29, 2023
The Fast & Effective Popups & Lead-Generation for WordPress plugin before 2.1.4 concatenates user...
Moderate
Unreviewed
CVE-2023-2111
was published
May 30, 2023
BlueCMS v1.6 was discovered to contain a SQL injection vulnerability via the keywords parameter...
Critical
Unreviewed
CVE-2023-33734
was published
May 31, 2023
SQL Injection vulnerability found in Fighting Cock Information System v.1.0 allows a remote...
High
Unreviewed
CVE-2021-31233
was published
May 31, 2023
SQL injection vulnerability exists in the CONPROSYS HMI System (CHS) versions prior to 3.5.3. A...
High
Unreviewed
CVE-2023-29154
was published
Jun 1, 2023
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2023-3000
was published
Jun 2, 2023
ELITE TECHNOLOGY CORP. Web Fax has a vulnerability of SQL Injection. An unauthenticated remote...
Critical
Unreviewed
CVE-2023-28701
was published
Jun 2, 2023
In Progress MOVEit Transfer before 2021.0.6 (13.0.6), 2021.1.4 (13.1.4), 2022.0.4 (14.0.4), 2022...
Critical
Unreviewed
CVE-2023-34362
was published
Jun 2, 2023
SQL injection vulnerability in the City Autocomplete (cityautocomplete) module from ebewe.net for...
Critical
Unreviewed
CVE-2023-30149
was published
Jun 2, 2023
eMedia Consulting simpleRedak up to v2.47.23.05 was discovered to contain a SQL injection...
Critical
Unreviewed
CVE-2023-33762
was published
Jun 2, 2023
The Pricing Table Builder WordPress plugin through 1.1.6 does not properly sanitise and escape a...
High
Unreviewed
CVE-2023-0900
was published
Jun 5, 2023
PrestaShop jmsmegamenu 1.1.x and 2.0.x is vulnerable to SQL Injection via ajax_jmsmegamenu.php.
Critical
Unreviewed
CVE-2023-29630
was published
Jun 5, 2023
PrestaShop jmsthemelayout 2.5.5 is vulnerable to SQL Injection via ajax_jmsvermegamenu.php.
Critical
Unreviewed
CVE-2023-29629
was published
Jun 5, 2023
PrestaShop jmspagebuilder 3.x is vulnerable to SQL Injection via ajax_jmspagebuilder.php.
Critical
Unreviewed
CVE-2023-29632
was published
Jun 6, 2023
ProTip!
Advisories are also available from the
GraphQL API