GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,930
Maven
5,000+
npm
4,587
NuGet
786
pip
4,294
Pub
12
RubyGems
981
Rust
1,114
Swift
49
Unreviewed advisories
All unreviewed
5,000+
16,133 advisories
Filter by severity
Multi-Vendor Online Groceries Management System v1.0 was discovered to contain a blind SQL...
Critical
Unreviewed
CVE-2022-26632
was published
May 21, 2022
Simple Student Quarterly Result/Grade System v1.0 was discovered to contain a SQL injection...
Critical
Unreviewed
CVE-2022-26633
was published
May 21, 2022
Sourcecodester Covid-19 Directory on Vaccination System1.0 is vulnerable to SQL Injection via the...
Critical
Unreviewed
CVE-2022-28531
was published
May 21, 2022
GRANDCOM DynWEB before 4.2 contains a SQL Injection vulnerability in the admin login interface. A...
Critical
Unreviewed
CVE-2021-37413
was published
May 20, 2022
Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/classes/Users...
Critical
Unreviewed
CVE-2022-28962
was published
May 20, 2022
Spip Web Framework v3.1.13 and below was discovered to contain multiple SQL injection...
High
Unreviewed
CVE-2022-28961
was published
May 20, 2022
Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /classes/master.php?f...
High
Unreviewed
CVE-2022-29304
was published
May 20, 2022
SQL injection in moodle
Critical
CVE-2022-30599
was published
for
moodle/moodle
(Composer)
May 19, 2022
Vulnerability in Fidelis Network and Deception CommandPost enables SQL injection through the web...
High
Unreviewed
CVE-2022-24391
was published
May 18, 2022
In Home Clean Service System 1.0, the password parameter is vulnerable to SQL injection attacks.
Critical
Unreviewed
CVE-2022-30052
was published
May 18, 2022
In Toll Tax Management System 1.0, the id parameter appears to be vulnerable to SQL injection...
Critical
Unreviewed
CVE-2022-30053
was published
May 18, 2022
In Covid 19 Travel Pass Management 1.0, the code parameter is vulnerable to SQL injection attacks.
Critical
Unreviewed
CVE-2022-30054
was published
May 18, 2022
The affected On-Premise is vulnerable to data exfiltration through improper neutralization of...
High
Unreviewed
CVE-2022-1358
was published
May 18, 2022
The affected On-Premise cnMaestro is vulnerable to a pre-auth data exfiltration through improper...
High
Unreviewed
CVE-2022-1361
was published
May 18, 2022
Multiple SQL injection vulnerabilities in ZeusCart 4.x.
High
Unreviewed
CVE-2014-3868
was published
May 17, 2022
D?j? Vu Crescendo Sales CRM has remote SQL Injection
High
Unreviewed
CVE-2014-4984
was published
May 17, 2022
SQL injection vulnerability in DBD::PgPP 0.05 and earlier
Critical
Unreviewed
CVE-2014-7257
was published
May 17, 2022
The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has SQL injection.
Critical
Unreviewed
CVE-2014-10387
was published
May 17, 2022
The duplicate-post plugin before 2.6 for WordPress has SQL injection.
Critical
Unreviewed
CVE-2014-10379
was published
May 17, 2022
The i-recommend-this plugin before 3.7.3 for WordPress has SQL injection.
Critical
Unreviewed
CVE-2014-10376
was published
May 17, 2022
SQL injection vulnerability in TYPO3 Another Backend Login (wrg_anotherbelogin) extension before...
High
Unreviewed
CVE-2008-5087
was published
May 17, 2022
SQL injection vulnerability in view.php in ElkaGroup Image Gallery 1.0 allows remote attackers to...
High
Unreviewed
CVE-2008-5037
was published
May 17, 2022
SQL injection vulnerability in default.asp in ASP-DEv XM Events Diary allows remote attackers to...
High
Unreviewed
CVE-2008-5923
was published
May 17, 2022
SQL injection vulnerability in diary_viewC.asp in ASP-DEv XM Events Diary allows remote attackers...
High
Unreviewed
CVE-2008-5924
was published
May 17, 2022
SQL injection vulnerability in A4Desk PHP Event Calendar allows remote attackers to execute...
High
Unreviewed
CVE-2008-6104
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API