GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,269
NuGet
760
pip
4,062
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
4,243 advisories
Filter by severity
In WhatsUp Gold versions released before 2024.0.0, a SQL Injection vulnerability allows an...
Critical
Unreviewed
CVE-2024-6670
was published
Aug 30, 2024
Organizr v1.90 was discovered to contain a SQL injection vulnerability via chat/setlike.php.
Critical
Unreviewed
CVE-2024-41370
was published
Aug 29, 2024
Organizr v1.90 was discovered to contain a SQL injection vulnerability via chat/settyping.php.
Critical
Unreviewed
CVE-2024-41372
was published
Aug 29, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-43941
was published
Aug 29, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-43918
was published
Aug 29, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-5057
was published
Aug 29, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-43144
was published
Aug 29, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-38795
was published
Aug 29, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-39622
was published
Aug 29, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-43917
was published
Aug 29, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-39653
was published
Aug 29, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-43132
was published
Aug 29, 2024
SQL injection vulnerabilities in SportsNET affecting version 4.0.1. These vulnerabilities could...
Critical
Unreviewed
CVE-2024-29723
was published
Aug 29, 2024
SQL injection vulnerabilities in SportsNET affecting version 4.0.1. These vulnerabilities could...
Critical
Unreviewed
CVE-2024-29727
was published
Aug 29, 2024
SQL injection vulnerabilities in SportsNET affecting version 4.0.1. These vulnerabilities could...
Critical
Unreviewed
CVE-2024-29731
was published
Aug 29, 2024
SQL injection vulnerabilities in SportsNET affecting version 4.0.1. These vulnerabilities could...
Critical
Unreviewed
CVE-2024-29730
was published
Aug 29, 2024
SQL injection vulnerabilities in SportsNET affecting version 4.0.1. These vulnerabilities could...
Critical
Unreviewed
CVE-2024-29724
was published
Aug 29, 2024
SQL injection vulnerabilities in SportsNET affecting version 4.0.1. These vulnerabilities could...
Critical
Unreviewed
CVE-2024-29728
was published
Aug 29, 2024
SQL injection vulnerabilities in SportsNET affecting version 4.0.1. These vulnerabilities could...
Critical
Unreviewed
CVE-2024-29726
was published
Aug 29, 2024
SQL injection vulnerabilities in SportsNET affecting version 4.0.1. These vulnerabilities could...
Critical
Unreviewed
CVE-2024-29725
was published
Aug 29, 2024
SQL injection vulnerabilities in SportsNET affecting version 4.0.1. These vulnerabilities could...
Critical
Unreviewed
CVE-2024-29729
was published
Aug 29, 2024
The Media Library Folders plugin for WordPress is vulnerable to second order SQL Injection via...
Critical
Unreviewed
CVE-2024-7857
was published
Aug 29, 2024
An issue in EQ Enterprise Management System before v2.0.0 allows attackers to execute a directory...
Critical
Unreviewed
CVE-2024-44761
was published
Aug 28, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), CWE - 564 -...
Critical
Unreviewed
CVE-2024-7071
was published
Aug 27, 2024
The product does not validate any query towards persistent
data, resulting in a risk of injection...
Critical
Unreviewed
CVE-2024-4872
was published
Aug 27, 2024
ProTip!
Advisories are also available from the
GraphQL API