GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,269
NuGet
760
pip
4,062
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
4,243 advisories
Filter by severity
Renwoxing Enterprise Intelligent Management System before v3.0 was discovered to contain a SQL...
Critical
Unreviewed
CVE-2024-43040
was published
Sep 10, 2024
In Connex health portal released before8/30/2024, SQL injection vulnerabilities were found that...
Critical
Unreviewed
CVE-2024-6795
was published
Sep 9, 2024
The Opti Marketing WordPress plugin through 2.0.9 does not properly sanitise and escape a...
Critical
Unreviewed
CVE-2024-6928
was published
Sep 8, 2024
The TrueBooker WordPress plugin before 1.0.3 does not properly sanitise and escape a parameter...
Critical
Unreviewed
CVE-2024-6924
was published
Sep 8, 2024
RapidCMS v1.3.1 was discovered to contain a SQL injection vulnerability via the articleid...
Critical
Unreviewed
CVE-2024-44839
was published
Sep 7, 2024
RapidCMS v1.3.1 was discovered to contain a SQL injection vulnerability via the password...
Critical
Unreviewed
CVE-2024-45771
was published
Sep 7, 2024
RapidCMS v1.3.1 was discovered to contain a SQL injection vulnerability via the username...
Critical
Unreviewed
CVE-2024-44838
was published
Sep 7, 2024
FlyCASS CASS and KCM systems did not correctly filter SQL queries, which
made them vulnerable to...
Critical
Unreviewed
CVE-2024-8395
was published
Sep 5, 2024
SQL Injection vulnerability in ESAFENET CDG 5.6 and before allows an attacker to execute...
Critical
Unreviewed
CVE-2024-42885
was published
Sep 5, 2024
SQL injection vulnerability, by which an attacker could send a specially designed query through...
Critical
Unreviewed
CVE-2024-8469
was published
Sep 5, 2024
SQL injection vulnerability, by which an attacker could send a specially designed query through...
Critical
Unreviewed
CVE-2024-8467
was published
Sep 5, 2024
SQL injection vulnerability, by which an attacker could send a specially designed query through...
Critical
Unreviewed
CVE-2024-8465
was published
Sep 5, 2024
SQL injection vulnerability, by which an attacker could send a specially designed query through...
Critical
Unreviewed
CVE-2024-8466
was published
Sep 5, 2024
SQL injection vulnerability, by which an attacker could send a specially designed query through...
Critical
Unreviewed
CVE-2024-8470
was published
Sep 5, 2024
SQL injection vulnerability, by which an attacker could send a specially designed query through...
Critical
Unreviewed
CVE-2024-8468
was published
Sep 5, 2024
SQL injection vulnerability, by which an attacker could send a specially designed query through...
Critical
Unreviewed
CVE-2024-8464
was published
Sep 5, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-7078
was published
Sep 4, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-7076
was published
Sep 4, 2024
The Viral Signup WordPress plugin through 2.1 does not properly sanitise and escape a parameter...
Critical
Unreviewed
CVE-2024-6926
was published
Sep 4, 2024
SeaCMS v12.9 was discovered to contain a SQL injection vulnerability via the id parameter at ...
Critical
Unreviewed
CVE-2024-44921
was published
Sep 3, 2024
ASIS (aka Aplikasi Sistem Sekolah using CodeIgniter 3) 3.0.0 through 3.2.0 allows index.php...
Critical
Unreviewed
CVE-2024-45622
was published
Sep 2, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-6919
was published
Sep 2, 2024
SQL Injection in download student learning course function of Easytest Online Test Platform ver...
Critical
Unreviewed
CVE-2024-43772
was published
Sep 2, 2024
SQL Injection in download class learning course function of Easytest Online Test Platform ver...
Critical
Unreviewed
CVE-2024-43773
was published
Sep 2, 2024
In WhatsUp Gold versions released before 2024.0.0, if the application is configured with only a...
Critical
Unreviewed
CVE-2024-6671
was published
Aug 30, 2024
ProTip!
Advisories are also available from the
GraphQL API