GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
14,950 advisories
Filter by severity
SQL injection vulnerability in Prevengos v2.44 by Nedatec Consulting. This vulnerability allows...
High
Unreviewed
CVE-2025-40698
was published
Sep 25, 2025
SQL Injection vulnerability in CSZ-CMS v.1.3.0 allows a remote attacker to execute arbitrary code...
Moderate
Unreviewed
CVE-2025-29084
was published
Sep 23, 2025
The vulnerability allows any application installed on the device to read SMS/MMS data and...
High
Unreviewed
CVE-2025-10184
was published
Sep 23, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-59570
was published
Sep 22, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-58686
was published
Sep 22, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-53468
was published
Sep 22, 2025
A SQL Injection vulnerability was discovered in the normal-bwdates-reports-details.php file of...
Moderate
Unreviewed
CVE-2025-56075
was published
Sep 22, 2025
The Robcore Netatmo plugin for WordPress is vulnerable to SQL Injection via the ‘module_id’...
Moderate
Unreviewed
CVE-2025-10652
was published
Sep 22, 2025
The ClickWhale – Link Manager, Link Shortener and Click Tracker for Affiliate Links & Link Pages...
Moderate
Unreviewed
CVE-2025-10002
was published
Sep 22, 2025
SQL Injection vulnerability in Alpes Recherche et Developpement ARD GEC en Lign before v.2025-04...
Moderate
Unreviewed
CVE-2025-55885
was published
Sep 22, 2025
A SQL Injection vulnerability was discovered in the foreigner-bwdates-reports-details.php file of...
Critical
Unreviewed
CVE-2025-56074
was published
Sep 22, 2025
A vulnerability was determined in CodeAstro Simple Pharmacy Management 1.0. This affects an...
Moderate
Unreviewed
CVE-2025-10780
was published
Sep 22, 2025
A security vulnerability has been detected in itsourcecode Online Discussion Forum 1.0. This...
Moderate
Unreviewed
CVE-2025-10668
was published
Sep 18, 2025
A flaw has been found in itsourcecode E-Logbook with Health Monitoring System for COVID-19 1.0....
Moderate
Unreviewed
CVE-2025-10670
was published
Sep 18, 2025
SQL injection vulnerability in Summar Software´s Portal del Empleado. This vulnerability allows...
High
Unreviewed
CVE-2025-40677
was published
Sep 18, 2025
A vulnerability has been found in SeaCMS up to 13.3. The impacted element is an unknown function...
Moderate
Unreviewed
CVE-2025-10662
was published
Sep 18, 2025
A vulnerability was determined in PHPGurukul Small CRM 4.0. This impacts an unknown function of...
Moderate
Unreviewed
CVE-2025-10664
was published
Sep 18, 2025
A vulnerability was found in SourceCodester Online Exam Form Submission 1.0. Affected by this...
Moderate
Unreviewed
CVE-2025-10602
was published
Sep 17, 2025
A vulnerability was determined in kidaze CourseSelectionSystem up to...
Moderate
Unreviewed
CVE-2025-10597
was published
Sep 17, 2025
A security vulnerability has been detected in itsourcecode Online Public Access Catalog OPAC 1.0....
Moderate
Unreviewed
CVE-2025-10592
was published
Sep 17, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-10439
was published
Sep 17, 2025
The Quiz Maker plugin for WordPress is vulnerable to SQL Injection via spoofed IP headers in all...
Moderate
Unreviewed
CVE-2025-10042
was published
Sep 17, 2025
SQL Injection vulnerability in TDuckCloud v.5.1 allows a remote attacker to execute arbitrary...
Critical
Unreviewed
CVE-2025-57631
was published
Sep 16, 2025
A vulnerability has been found in Campcodes Grocery Sales and Inventory System 1.0. This impacts...
Moderate
Unreviewed
CVE-2025-10563
was published
Sep 16, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), CWE - 200 -...
Critical
Unreviewed
CVE-2024-13149
was published
Sep 16, 2025
ProTip!
Advisories are also available from the
GraphQL API