GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
4,240 advisories
Filter by severity
SQL Injection vulnerability exists in the TP-Link M7000 4G LTE Mobile Wi-Fi Router Firmware...
Critical
Unreviewed
CVE-2025-29652
was published
Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The...
Critical
Unreviewed
CVE-2025-27495
was published
Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The...
Critical
Unreviewed
CVE-2025-27539
was published
Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The...
Critical
Unreviewed
CVE-2025-27540
was published
Apr 16, 2025
Sourcecodester Online ID Generator System 1.0 was discovered to contain a SQL injection...
Critical
Unreviewed
CVE-2024-40072
was published
Apr 16, 2025
Sourcecodester Online ID Generator System 1.0 was discovered to contain a SQL injection...
Critical
Unreviewed
CVE-2024-40073
was published
Apr 16, 2025
Improper neutralization of input provided by a low-privileged user into a file search...
Critical
Unreviewed
CVE-2025-1981
was published
Apr 16, 2025
A SQL Injection vulnerability in dingfanzuCMS v.1.0 allows a attacker to execute arbitrary code...
Critical
Unreviewed
CVE-2025-28100
was published
Apr 15, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-22371
was published
Apr 14, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-32603
was published
Apr 11, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-32565
was published
Apr 11, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-31565
was published
Apr 11, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-31599
was published
Apr 11, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-31403
was published
Apr 4, 2025
SeaCMS v13.3 has a SQL injection vulnerability in the component admin_tempvideo.php.
Critical
Unreviewed
CVE-2025-29647
was published
Apr 3, 2025
OpenEMR 7.0.2 is vulnerable to SQL Injection via \openemr\library\classes\Pharmacy.class.php, ...
Critical
Unreviewed
CVE-2024-22611
was published
Apr 3, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-31911
was published
Apr 3, 2025
Code-Projects Matrimonial Site V1.0 is vulnerable to SQL Injection in /view_profile.php?id=1.
Critical
Unreviewed
CVE-2025-29369
was published
Apr 3, 2025
OS4ED openSIS v7.0 to v9.1 was discovered to contain a SQL injection vulnerability via the cp_id...
Critical
Unreviewed
CVE-2025-22928
was published
Apr 3, 2025
OS4ED openSIS v7.0 to v9.1 was discovered to contain a SQL injection vulnerability via the...
Critical
Unreviewed
CVE-2025-22929
was published
Apr 3, 2025
OS4ED openSIS v7.0 to v9.1 was discovered to contain a SQL injection vulnerability via the...
Critical
Unreviewed
CVE-2025-22930
was published
Apr 3, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-31531
was published
Apr 1, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-31534
was published
Apr 1, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-31553
was published
Apr 1, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-31552
was published
Apr 1, 2025
ProTip!
Advisories are also available from the
GraphQL API