GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
4,241 advisories
Filter by severity
Wedding Management System v1.0 was discovered to contain a SQL injection vulnerability via the id...
Critical
Unreviewed
CVE-2022-29656
was published
May 12, 2022
Complete Online Job Search System v1.0 was discovered to contain a SQL injection vulnerability...
Critical
Unreviewed
CVE-2022-29316
was published
May 12, 2022
Simple Bus Ticket Booking System v1.0 was discovered to contain multiple SQL injection...
Critical
Unreviewed
CVE-2022-29317
was published
May 12, 2022
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin...
Critical
Unreviewed
CVE-2022-29006
was published
May 12, 2022
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin...
Critical
Unreviewed
CVE-2022-29009
was published
May 12, 2022
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin...
Critical
Unreviewed
CVE-2022-29007
was published
May 12, 2022
Mingsoft MCMS 5.2.7 was discovered to contain a SQL injection vulnerability in /mdiy/dict/list...
Critical
Unreviewed
CVE-2022-30048
was published
May 12, 2022
Mingsoft MCMS v5.2.7 was discovered to contain a SQL injection vulnerability in /mdiy/dict...
Critical
Unreviewed
CVE-2022-30047
was published
May 12, 2022
Hospital Management System in PHP with Source Code (HMS) 1.0 was discovered to contain a SQL...
Critical
Unreviewed
CVE-2022-30449
was published
May 12, 2022
An SQL Injection vulnerability exists in OpenMRS Reference Application Standalone Edition <=2.11...
Critical
Unreviewed
CVE-2021-43094
was published
May 11, 2022
Hotel Management System v1.0 was discovered to contain a SQL injection vulnerability via the...
Critical
Unreviewed
CVE-2022-28110
was published
May 11, 2022
The SEMA API WordPress plugin through 3.64 does not properly sanitise and escape some parameters...
Critical
Unreviewed
CVE-2022-0836
was published
May 10, 2022
The Personal Dictionary WordPress plugin before 1.3.4 fails to properly sanitize user supplied...
Critical
Unreviewed
CVE-2022-1013
was published
May 10, 2022
The MapSVG WordPress plugin before 6.2.20 does not validate and escape a parameter via a REST...
Critical
Unreviewed
CVE-2022-0592
was published
May 10, 2022
The BadgeOS WordPress plugin through 3.7.0 does not sanitise and escape a parameter before using...
Critical
Unreviewed
CVE-2022-0817
was published
May 10, 2022
Explore CMS v1.0 was discovered to contain a SQL injection vulnerability via a /page.php?id=...
Critical
Unreviewed
CVE-2022-27412
was published
May 10, 2022
The Ubigeo de Perú para Woocommerce WordPress plugin before 3.6.4 does not properly sanitise and...
Critical
Unreviewed
CVE-2022-0814
was published
May 10, 2022
The WP Video Gallery WordPress plugin through 1.7.1 does not sanitise and escape a parameter...
Critical
Unreviewed
CVE-2022-0826
was published
May 10, 2022
The Order Listener for WooCommerce WordPress plugin before 3.2.2 does not sanitise and escape the...
Critical
Unreviewed
CVE-2022-0948
was published
May 10, 2022
Bonanza Wealth Management System (BWM) 7.3.2 allows SQL injection via the login form. Users who...
Critical
Unreviewed
CVE-2022-30335
was published
May 10, 2022
Zoho ManageEngine OPManager through 125588 allows SQL Injection via a few default reports.
Critical
Unreviewed
CVE-2022-29535
was published
May 7, 2022
SQL Injection vulnerability in cat_move.php in piwigo v2.9.5, via the selection parameter to...
Critical
Unreviewed
CVE-2020-19213
was published
May 7, 2022
In Brocade SANnav before Brocade SANnav 2.2.0, multiple endpoints associated with Zone management...
Critical
Unreviewed
CVE-2022-28163
was published
May 7, 2022
mingyuefusu Library Management System all versions as of 03-27-2022 is vulnerable to SQL Injection.
Critical
Unreviewed
CVE-2022-28461
was published
May 6, 2022
Sourcecodester Covid-19 Directory on Vaccination System 1.0 is vulnerable to SQL Injection via...
Critical
Unreviewed
CVE-2022-28530
was published
May 6, 2022
ProTip!
Advisories are also available from the
GraphQL API