GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
7,162 advisories
Filter by severity
The LTL Freight Quotes – R+L Carriers Edition plugin for WordPress is vulnerable to SQL Injection...
High
Unreviewed
CVE-2024-13481
was published
Feb 19, 2025
The LTL Freight Quotes – SAIA Edition plugin for WordPress is vulnerable to SQL Injection via the...
High
Unreviewed
CVE-2024-13483
was published
Feb 19, 2025
The Small Package Quotes – USPS Edition plugin for WordPress is vulnerable to SQL Injection via...
High
Unreviewed
CVE-2024-13533
was published
Feb 19, 2025
The LTL Freight Quotes – Old Dominion Edition plugin for WordPress is vulnerable to SQL Injection...
High
Unreviewed
CVE-2024-13489
was published
Feb 19, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-22639
was published
Feb 18, 2025
The LuxCal Web Calendar prior to 5.3.3M (MySQL version) and prior to 5.3.3L (SQLite version)...
High
Unreviewed
CVE-2025-25222
was published
Feb 18, 2025
The LuxCal Web Calendar prior to 5.3.3M (MySQL version) and prior to 5.3.3L (SQLite version)...
High
Unreviewed
CVE-2025-25221
was published
Feb 18, 2025
Orca HCM from Learning Digital has a SQL Injection vulnerability, allowing attackers with regular...
High
Unreviewed
CVE-2025-1389
was published
Feb 17, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-26755
was published
Feb 17, 2025
The LTL Freight Quotes – Estes Edition plugin for WordPress is vulnerable to SQL Injection via...
High
Unreviewed
CVE-2024-13488
was published
Feb 15, 2025
A SQL Injection vulnerability was found in /shopping/track-orders.php in PHPGurukul Online...
High
Unreviewed
CVE-2025-26156
was published
Feb 14, 2025
A SQL Injection vulnerability was found in /admin/manage-propertytype.php in PHPGurukul Land...
High
Unreviewed
CVE-2025-25387
was published
Feb 13, 2025
A SQL Injection vulnerability was found in /admin/bwdates-reports-details.php in PHPGurukul Land...
High
Unreviewed
CVE-2025-25355
was published
Feb 13, 2025
A SQL Injection vulnerability was found in /admin/aboutus.php in PHPGurukul Land Record System v1...
High
Unreviewed
CVE-2025-25352
was published
Feb 13, 2025
A SQL Injection was found in /admin/admin-profile.php in PHPGurukul Land Record System v1.0,...
High
Unreviewed
CVE-2025-25354
was published
Feb 13, 2025
A SQL Injection vulnerability was found in /admin/bwdates-reports-details.php in PHPGurukul Land...
High
Unreviewed
CVE-2025-25356
was published
Feb 13, 2025
A SQL Injection vulnerability was found in /admin/contactus.php in PHPGurukul Land Record System...
High
Unreviewed
CVE-2025-25357
was published
Feb 13, 2025
The Small Package Quotes – Purolator Edition plugin for WordPress is vulnerable to SQL Injection...
High
Unreviewed
CVE-2024-13532
was published
Feb 12, 2025
The LTL Freight Quotes – For Customers of FedEx Freight plugin for WordPress is vulnerable to SQL...
High
Unreviewed
CVE-2024-13480
was published
Feb 12, 2025
The LTL Freight Quotes – XPO Edition plugin for WordPress is vulnerable to SQL Injection via the ...
High
Unreviewed
CVE-2024-13490
was published
Feb 12, 2025
The ShipEngine Shipping Quotes plugin for WordPress is vulnerable to SQL Injection via the ...
High
Unreviewed
CVE-2024-13531
was published
Feb 12, 2025
The Small Package Quotes – UPS Edition plugin for WordPress is vulnerable to SQL Injection via...
High
Unreviewed
CVE-2024-13475
was published
Feb 12, 2025
The LTL Freight Quotes – Worldwide Express Edition plugin for WordPress is vulnerable to SQL...
High
Unreviewed
CVE-2024-13473
was published
Feb 12, 2025
The LTL Freight Quotes – Unishippers Edition plugin for WordPress is vulnerable to SQL Injection...
High
Unreviewed
CVE-2024-13477
was published
Feb 12, 2025
The Ebook Downloader plugin for WordPress is vulnerable to SQL Injection via the 'download'...
High
Unreviewed
CVE-2024-13435
was published
Feb 12, 2025
ProTip!
Advisories are also available from the
GraphQL API