GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,675
Maven
5,000+
npm
4,297
NuGet
760
pip
4,077
Pub
12
RubyGems
957
Rust
1,058
Swift
45
Unreviewed advisories
All unreviewed
5,000+
4,246 advisories
Filter by severity
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-10437
was published
Nov 19, 2025
DzzOffice v2.3.7 and before is vulnerable to SQL Injection in explorer/groupmanage.
Critical
Unreviewed
CVE-2025-63694
was published
Nov 18, 2025
PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the email parameter in...
Critical
Unreviewed
CVE-2024-44659
was published
Nov 17, 2025
A SQL injection vulnerability exists in the login functionality of WellSky Harmony version 4.1.0...
Critical
Unreviewed
CVE-2025-56385
was published
Nov 12, 2025
A SQL Injection Vulnerability in CentralSquare Community Development 19.5.7 allows attackers to...
Critical
Unreviewed
CVE-2025-64280
was published
Nov 12, 2025
Zohocorp ManageEngine Analytics Plus versions 6170 and below are vulnerable to Unauthenticated...
Critical
Unreviewed
CVE-2025-8324
was published
Nov 11, 2025
Multiple SQL injection vulnerabilitites in ycf1998 money-pos system before commit...
Critical
Unreviewed
CVE-2025-63689
was published
Nov 7, 2025
An SQL injection vulnerability has been reported to affect QuMagie. A remote attacker can exploit...
Critical
Unreviewed
CVE-2025-52425
was published
Nov 7, 2025
SQL injection vulnerability in DIAL's CentrosNet v2.64. Allows an attacker to retrieve, create,...
Critical
Unreviewed
CVE-2025-10870
was published
Nov 7, 2025
Advantech iView versions prior to v5.7.04 build 6425 contain a vulnerability within the SNMP...
Critical
Unreviewed
CVE-2022-50593
was published
Nov 6, 2025
Advantech iView versions prior to v5.7.04 build 6425 contain a vulnerability within the SNMP...
Critical
Unreviewed
CVE-2022-50595
was published
Nov 6, 2025
Advantech iView versions prior to v5.7.04 build 6425 contain a vulnerability within the SNMP...
Critical
Unreviewed
CVE-2022-50592
was published
Nov 6, 2025
SuiteCRM versions prior to 7.12.6 contain a SQL injection vulnerability within the processing of...
Critical
Unreviewed
CVE-2022-50589
was published
Nov 6, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-52773
was published
Nov 6, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-48089
was published
Nov 6, 2025
Django vulnerable to SQL injection via _connector keyword argument in QuerySet and Q objects.
Critical
CVE-2025-64459
was published
for
django
(pip)
Nov 5, 2025
An unauthenticated SQL Injection was discovered within the Geutebruck G-Cam E-Series Cameras...
Critical
Unreviewed
CVE-2025-12463
was published
Nov 3, 2025
Car-Booking-System-PHP v.1.0 is vulnerable to SQL Injection in /carlux/sign-in.php.
Critical
Unreviewed
CVE-2025-63451
was published
Nov 3, 2025
Car-Booking-System-PHP v.1.0 is vulnerable to SQL Injection in /carlux/forgot-pass.php.
Critical
Unreviewed
CVE-2025-63452
was published
Nov 3, 2025
Car-Booking-System-PHP v.1.0 is vulnerable to SQL Injection in /carlux/contact.php.
Critical
Unreviewed
CVE-2025-63453
was published
Nov 3, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-6520
was published
Oct 31, 2025
A vulnerability was found in code-projects Online Complaint Site 1.0. This issue affects some...
Critical
Unreviewed
CVE-2025-63622
was published
Oct 29, 2025
WordPress plugin Contact Form CFDB7 versions up to and including 1.3.2 are affected by a pre...
Critical
Unreviewed
CVE-2025-4665
was published
Oct 29, 2025
SQL injection vulnerability in the DRED virtual campus platform. This vulnerability allows an...
Critical
Unreviewed
CVE-2025-41009
was published
Oct 27, 2025
A SQL injection vulnerability has been identified in DobryCMS. Improper neutralization of input...
Critical
Unreviewed
CVE-2025-8536
was published
Oct 24, 2025
ProTip!
Advisories are also available from the
GraphQL API