GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,263
NuGet
760
pip
4,058
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
15,536 advisories
Filter by severity
A CGGIServlet SQL injection remote code execution (RCE) vulnerability in Trend Micro Control...
High
Unreviewed
CVE-2018-3603
was published
May 14, 2022
SQL Injection exists in the Zh GoogleMap 8.4.0.0 component for Joomla! via the id parameter in a...
Critical
Unreviewed
CVE-2018-6582
was published
May 14, 2022
SQL Injection exists in the InviteX 3.0.5 component for Joomla! via the invite_type parameter in...
Critical
Unreviewed
CVE-2018-6394
was published
May 14, 2022
SQL Injection exists in the Saxum Numerology 3.0.4 component for Joomla! via the publicid parameter.
Critical
Unreviewed
CVE-2018-7177
was published
May 14, 2022
SQL Injection exists in the Advertisement Board 3.1.0 component for Joomla! via a task...
Critical
Unreviewed
CVE-2018-5982
was published
May 14, 2022
SQL Injection exists in the Smart Shoutbox 3.0.0 component for Joomla! via the shoutauthor...
Critical
Unreviewed
CVE-2018-5975
was published
May 14, 2022
SQL Injection exists in the AllVideos Reloaded 1.2.x component for Joomla! via the divid parameter.
Critical
Unreviewed
CVE-2018-5990
was published
May 14, 2022
SQL Injection exists in the SquadManagement 1.0.3 component for Joomla! via the id parameter.
Critical
Unreviewed
CVE-2018-7179
was published
May 14, 2022
SQL Injection exists in the JB Bus 2.3 component for Joomla! via the order_number parameter.
Critical
Unreviewed
CVE-2018-6372
was published
May 14, 2022
SQL Injection exists in the SimpleCalendar 3.1.9 component for Joomla! via the catid array...
Critical
Unreviewed
CVE-2018-5974
was published
May 14, 2022
SQL Injection exists in the JS Jobs 1.1.9 component for Joomla! via the zipcode parameter in a...
Critical
Unreviewed
CVE-2018-5994
was published
May 14, 2022
PHP Scripts Mall News Website Script 2.0.4 has SQL Injection via a search term.
Critical
Unreviewed
CVE-2018-6928
was published
May 14, 2022
controllers/member/Api.php in dayrui FineCms 5.2.0 has SQL Injection: a request with s=member,c...
Critical
Unreviewed
CVE-2018-6893
was published
May 14, 2022
The MySQL component in Plixer Scrutinizer (aka Dell SonicWALL Scrutinizer) 9.0.1.19899 and...
High
Unreviewed
CVE-2012-3951
was published
May 14, 2022
SQL Injection exists in the JquickContact 1.3.2.2.1 component for Joomla! via a task=refresh&sid=...
Critical
Unreviewed
CVE-2018-5983
was published
May 14, 2022
A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5. The aaa-idm...
High
Unreviewed
CVE-2022-45932
was published
Nov 27, 2022
Soyket Chowdhury Vehicle Sales Management System version 2017-07-30 is vulnerable to multiple SQL...
Critical
Unreviewed
CVE-2017-1000474
was published
May 14, 2022
In Library Management System 1.0 the /card/in-card.php file id_no parameters are vulnerable to...
Critical
Unreviewed
CVE-2022-37794
was published
Sep 13, 2022
A SQL injection vulnerability in a Trend Micro Email Encryption Gateway 5.5 policy script could...
Critical
Unreviewed
CVE-2018-6228
was published
May 14, 2022
In Joomla! 3.5.0 through 3.8.5, the lack of type casting of a variable in a SQL statement leads...
High
Unreviewed
CVE-2018-8045
was published
May 14, 2022
SmartVista SVFE2 v2.2.22 was discovered to contain a SQL injection vulnerability via the UserForm...
High
Unreviewed
CVE-2022-38616
was published
Sep 14, 2022
Open Source SACCO Management System v1.0 vulnerable to SQL Injection via /sacco_shield...
High
Unreviewed
CVE-2022-42218
was published
Oct 19, 2022
Huawei UMA V200R001C00 has a SQL injection vulnerability in the operation and maintenance module....
High
Unreviewed
CVE-2017-15329
was published
May 14, 2022
An AdHocQuery_Processor SQL injection remote code execution (RCE) vulnerability in Trend Micro...
High
Unreviewed
CVE-2018-3602
was published
May 14, 2022
SQL Injection exists in the JSP Tickets 1.1 component for Joomla! via the ticketcode parameter in...
Critical
Unreviewed
CVE-2018-6609
was published
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API