GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
4,243 advisories
Filter by severity
A NoSQL injection vulnerability in Adapt Learning Adapt Authoring Tool <= 0.11.3 allows...
Critical
Unreviewed
CVE-2024-50672
was published
Nov 25, 2024
EventAttendance.php in ChurchCRM 5.7.0 is vulnerable to SQL injection. An attacker can exploit...
Critical
Unreviewed
CVE-2024-53438
was published
Nov 22, 2024
Duplicate Advisory: Querydsl SQL/HQL injection
Critical
GHSA-wpvf-5mc3-hv6m
was published
for
com.querydsl:querydsl-apt
(Maven)
Nov 20, 2024
•
withdrawn
Weaver Ecology v9.* was discovered to contain a SQL injection vulnerability via the component ...
Critical
Unreviewed
CVE-2024-48072
was published
Nov 19, 2024
SourceCodester Sentiment Based Movie Rating System 1.0 is vulnerable to SQL Injection in /msrps...
Critical
Unreviewed
CVE-2024-52675
was published
Nov 19, 2024
NUS-M9 ERP Management Software v3.0.0 was discovered to contain a SQL injection vulnerability via...
Critical
Unreviewed
CVE-2024-44756
was published
Nov 18, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-52431
was published
Nov 18, 2024
Multiple parameters have SQL injection vulnerability in JEPaaS 7.2.8 via /je/login/btnLog...
Critical
Unreviewed
CVE-2024-51164
was published
Nov 15, 2024
KASO v9.0 was discovered to contain a SQL injection vulnerability via the person_id parameter at ...
Critical
Unreviewed
CVE-2024-50724
was published
Nov 15, 2024
SQL injection in Ivanti Endpoint Manager before 2024 November Security Update or 2022 SU6...
Critical
Unreviewed
CVE-2024-50330
was published
Nov 12, 2024
Powerjob >= 3.20 is vulnerable to SQL injection via the version parameter.
Critical
Unreviewed
CVE-2024-44546
was published
Nov 11, 2024
A SQL injection vulnerability in /omrs/admin/search.php in PHPGurukul Online Marriage...
Critical
Unreviewed
CVE-2024-50989
was published
Nov 11, 2024
Webopac from Grand Vice info has a SQL Injection vulnerability, allowing unauthenticated remote...
Critical
Unreviewed
CVE-2024-11020
was published
Nov 11, 2024
Webopac from Grand Vice info has a SQL Injection vulnerability, allowing unauthenticated remote...
Critical
Unreviewed
CVE-2024-11016
was published
Nov 11, 2024
SQL injection vulnerability exists in OS4ED openSIS-Classic Version 9.1, specifically in the...
Critical
Unreviewed
CVE-2024-51211
was published
Nov 8, 2024
SourceCodester Survey Application System 1.0 is vulnerable to SQL Injection in takeSurvey.php via...
Critical
Unreviewed
CVE-2024-50766
was published
Nov 8, 2024
Waybox Enel X web management application could execute arbitrary requests on the internal...
Critical
Unreviewed
CVE-2023-29118
was published
Nov 5, 2024
Waybox Enel X web management application could execute arbitrary requests on the internal...
Critical
Unreviewed
CVE-2023-29119
was published
Nov 5, 2024
The Photos, Files, YouTube, Twitter, Instagram, TikTok, Ecommerce Contest Gallery – Upload, Vote,...
Critical
Unreviewed
CVE-2024-10687
was published
Nov 5, 2024
SQL Injection in loginform.php in ProjectWorld's Travel Management System v1.0 allows remote...
Critical
Unreviewed
CVE-2024-51327
was published
Nov 4, 2024
A SQL injection vulnerability exists in the `/api/v1/external-users` route of lunary-ai/lunary...
Critical
Unreviewed
CVE-2024-7456
was published
Nov 1, 2024
Phpgurukul Teachers Record Management System v2.1 is vulnerable to SQL Injection in add-teacher...
Critical
Unreviewed
CVE-2024-51063
was published
Oct 31, 2024
Phpgurukul Beauty Parlour Management System v1.1 is vulnerable to SQL Injection in admin/index...
Critical
Unreviewed
CVE-2024-51065
was published
Oct 31, 2024
Projectworlds Online Admission System v1 is vulnerable to SQL Injection in index.php via the ...
Critical
Unreviewed
CVE-2024-51060
was published
Oct 31, 2024
Phpgurukul Teachers Record Management System v2.1 is vulnerable to SQL Injection via the tid...
Critical
Unreviewed
CVE-2024-51064
was published
Oct 31, 2024
ProTip!
Advisories are also available from the
GraphQL API