GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
4,241 advisories
Filter by severity
Kashipara E-learning Management System v1.0 is vulnerable to SQL Injection in /admin...
Critical
Unreviewed
CVE-2024-54932
was published
Dec 9, 2024
A SQL Injection was found in /remove_sent_message.php in kashipara E-learning Management System...
Critical
Unreviewed
CVE-2024-54925
was published
Dec 9, 2024
A SQL Injection was found in /student_signup.php in kashipara E-learning Management System v1.0,...
Critical
Unreviewed
CVE-2024-54921
was published
Dec 9, 2024
A SQL Injection was found in /admin/delete_event.php in kashipara E-learning Management System v1...
Critical
Unreviewed
CVE-2024-54931
was published
Dec 9, 2024
A SQL Injection was found in /admin/edit_content.php in kashipara E-learning Management System v1...
Critical
Unreviewed
CVE-2024-54924
was published
Dec 9, 2024
A SQL Injection vulnerability was found in /admin/edit_teacher.php in kashipara E-learning...
Critical
Unreviewed
CVE-2024-54923
was published
Dec 9, 2024
SQL Injection vulnerability in Flipkart-Clone-PHP version 1.0 in entry.php in product_title...
Critical
Unreviewed
CVE-2022-38947
was published
Dec 9, 2024
A SQL Injection vulnerability was found in the /teacher_signup.php of kashipara E-learning...
Critical
Unreviewed
CVE-2024-54920
was published
Dec 9, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-54215
was published
Dec 9, 2024
A SQL injection vulnerability has been reported to affect several QNAP operating system versions....
Critical
Unreviewed
CVE-2024-50387
was published
Dec 6, 2024
A SQL injection vulnerability has been reported to affect QuRouter. If exploited, the...
Critical
Unreviewed
CVE-2024-50389
was published
Dec 6, 2024
A vulnerability has been identified in syngo.plaza VB30E (All versions < VB30E_HF05). The...
Critical
Unreviewed
CVE-2024-52335
was published
Dec 6, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-51615
was published
Dec 6, 2024
DTStack Taier 1.4.0 allows remote attackers to specify the jobName parameter in the console...
Critical
Unreviewed
CVE-2024-41579
was published
Dec 5, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-54221
was published
Dec 5, 2024
ZZCMS 2023 was discovered to contain a SQL injection vulnerability in /q/show.php.
Critical
Unreviewed
CVE-2024-52724
was published
Dec 2, 2024
A SQL injection vulnerability has been identified in Siyuan 3.1.11 via the id parameter at ...
Critical
Unreviewed
CVE-2024-53505
was published
Nov 29, 2024
A SQL injection vulnerability has been identified in Siyuan 3.1.11 via the notebook parameter in ...
Critical
Unreviewed
CVE-2024-53504
was published
Nov 29, 2024
A SQL injection vulnerability was discovered in Siyuan 3.1.11 in /getHistoryItems.
Critical
Unreviewed
CVE-2024-53507
was published
Nov 29, 2024
A SQL injection vulnerability has been identified in Siyuan 3.1.11 via the ids array parameter in...
Critical
Unreviewed
CVE-2024-53506
was published
Nov 29, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-52474
was published
Nov 28, 2024
A non-admin user account on the Zabbix frontend with the default User role, or with any other...
Critical
Unreviewed
CVE-2024-42327
was published
Nov 27, 2024
qiwen-file v1.4.0 was discovered to contain a SQL injection vulnerability via the component ...
Critical
Unreviewed
CVE-2024-50942
was published
Nov 26, 2024
A NoSQL injection vulnerability in Adapt Learning Adapt Authoring Tool <= 0.11.3 allows...
Critical
Unreviewed
CVE-2024-50672
was published
Nov 25, 2024
EventAttendance.php in ChurchCRM 5.7.0 is vulnerable to SQL injection. An attacker can exploit...
Critical
Unreviewed
CVE-2024-53438
was published
Nov 22, 2024
ProTip!
Advisories are also available from the
GraphQL API