GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
15,073 advisories
Filter by severity
Sourcecodester Toll Tax Management System v1 is vulnerable to SQL Injection.
High
Unreviewed
CVE-2023-44047
was published
Sep 27, 2023
SQL injection can exist in a newly created part of the JFinalcms background, and the parameters...
High
Unreviewed
CVE-2023-43192
was published
Sep 28, 2023
A SQL injection vulnerability exists in gugoan Economizzer commit 3730880 (April 2023) and v.0.9...
Critical
Unreviewed
CVE-2023-38870
was published
Sep 28, 2023
Sourcecodester Packers and Movers Management System v1.0 was discovered to contain a SQL...
Critical
Unreviewed
CVE-2023-30415
was published
Sep 28, 2023
Asset Management System v1.0 is vulnerable to an
unauthenticated SQL Injection vulnerability on...
Critical
Unreviewed
CVE-2023-43013
was published
Sep 28, 2023
Hospital management system version 378c157 allows to bypass authentication.
This is possible...
Critical
Unreviewed
CVE-2023-5053
was published
Sep 28, 2023
Hospital management system version 378c157 allows to bypass authentication.
This is possible...
Critical
Unreviewed
CVE-2023-5004
was published
Sep 28, 2023
Asset Management System v1.0 is vulnerable to
an Authenticated SQL Injection vulnerability
on...
High
Unreviewed
CVE-2023-43014
was published
Sep 29, 2023
The 'bookisbn' parameter of the cart.php resource
does not validate the characters received and...
Critical
Unreviewed
CVE-2023-43739
was published
Sep 29, 2023
The 'age' parameter of the process_registration.php resource
does not validate the characters...
Critical
Unreviewed
CVE-2023-44166
was published
Sep 29, 2023
The 'Email' parameter of the process_login.php resource
does not validate the characters...
Critical
Unreviewed
CVE-2023-44164
was published
Sep 29, 2023
The 'search' parameter of the process_search.php resource
does not validate the characters...
Critical
Unreviewed
CVE-2023-44163
was published
Sep 29, 2023
Hospital Management System thru commit 4770d was discovered to contain a SQL injection...
Critical
Unreviewed
CVE-2023-43909
was published
Sep 29, 2023
There is a SQL injection vulnerability in the Jizhicms 2.4.9 backend, which users can use to...
Moderate
Unreviewed
CVE-2023-43836
was published
Oct 2, 2023
Presto Changeo testsitecreator up to v1.1.1 was discovered to contain a SQL injection...
Critical
Unreviewed
CVE-2023-43980
was published
Oct 3, 2023
It has been identified that the web application does not correctly filter input parameters,...
High
Unreviewed
CVE-2023-4098
was published
Oct 3, 2023
QSige login SSO does not have an access control mechanism to verify whether the user requesting a...
High
Unreviewed
CVE-2023-4102
was published
Oct 3, 2023
QSige statistics are affected by a remote SQLi vulnerability. It has been identified that the web...
High
Unreviewed
CVE-2023-4103
was published
Oct 3, 2023
An SQL Injection vulnerability has been found on Jorani version 1.0.0. This vulnerability allows...
High
Unreviewed
CVE-2023-2681
was published
Oct 3, 2023
Improper neutralization of SQL parameter in Theme Volty CMS Category Slider module for PrestaShop...
Critical
Unreviewed
CVE-2023-39649
was published
Oct 4, 2023
Improper neutralization of SQL parameter in Theme Volty CMS BrandList module for PrestaShop In...
Critical
Unreviewed
CVE-2023-39651
was published
Oct 4, 2023
Improper neutralization of SQL parameter in Theme Volty CMS Testimonial module for PrestaShop. In...
Critical
Unreviewed
CVE-2023-39648
was published
Oct 4, 2023
Improper neutralization of SQL parameter in Theme Volty CMS Category Chain Slider module for...
Critical
Unreviewed
CVE-2023-39646
was published
Oct 4, 2023
Improper neutralization of SQL parameter in Theme Volty CMS Category Product module for...
Critical
Unreviewed
CVE-2023-39647
was published
Oct 4, 2023
Blind SQL injection vulnerability in the Conacwin 3.7.1.2 web interface, the exploitation of...
Moderate
Unreviewed
CVE-2023-4037
was published
Oct 4, 2023
ProTip!
Advisories are also available from the
GraphQL API