GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,701
Maven
5,000+
npm
4,328
NuGet
761
pip
4,103
Pub
12
RubyGems
958
Rust
1,064
Swift
45
Unreviewed advisories
All unreviewed
5,000+
7,198 advisories
Filter by severity
The My auctions allegro plugin for WordPress is vulnerable to SQL Injection via the ‘auction_id’...
High
Unreviewed
CVE-2025-12850
was published
Dec 5, 2025
Advantech iView versions 5.7.05.7057 and prior do not properly sanitize SNMP v1 trap (Port 162)...
High
Unreviewed
CVE-2025-13373
was published
Dec 5, 2025
dawa-pharma-1.0 allows unauthenticated attackers to execute SQL queries on the server, allowing...
High
Unreviewed
CVE-2023-53734
was published
Dec 4, 2025
Obi08/Enrollment System 1.0 contains a SQL injection vulnerability in the keyword parameter of ...
High
Unreviewed
CVE-2024-58276
was published
Dec 4, 2025
A Blind SQL injection vulnerability has been identified in QuickCMS. Improper neutralization of...
High
Unreviewed
CVE-2025-12465
was published
Dec 2, 2025
SQL injection vulnerability in TCMAN GIM v11 in version 20250304. This vulnerability allows an...
High
Unreviewed
CVE-2025-41013
was published
Dec 2, 2025
The VikRentCar Car Rental Management System plugin for WordPress is vulnerable to time-based...
High
Unreviewed
CVE-2025-13724
was published
Dec 2, 2025
WebITR developed by Uniong has a SQL Injection vulnerability, allowing authenticated remote...
High
Unreviewed
CVE-2025-13769
was published
Nov 28, 2025
WebITR developed by Uniong has a SQL Injection vulnerability, allowing authenticated remote...
High
Unreviewed
CVE-2025-13770
was published
Nov 28, 2025
SQL Injection vulnerability in last usage logs in Devolutions Server.This issue affects...
High
Unreviewed
CVE-2025-13757
was published
Nov 27, 2025
Multiple SQL Injections in Frappe CRM Dashboard Controller due to unsafe concatenation of user...
High
Unreviewed
CVE-2025-11461
was published
Nov 26, 2025
Hive Metastore Server is vulnerable to SQL Injection
High
CVE-2025-62728
was published
for
org.apache.hive:hive-common
(Maven)
Nov 26, 2025
PostgreSQL SQL Injection (status_sql.php) in DB Electronica Telecomunicazioni S.p.A. Mozart FM...
High
Unreviewed
CVE-2025-66260
was published
Nov 26, 2025
ZIRA Group WBRM 7.0 is vulnerable to SQL Injection in referenceLookupsByTableNameAndColumnName.
High
Unreviewed
CVE-2025-56401
was published
Nov 24, 2025
The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is...
High
Unreviewed
CVE-2025-7402
was published
Nov 24, 2025
The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection via the 'columns_search'...
High
Unreviewed
CVE-2025-13138
was published
Nov 21, 2025
Campcodes Online Hospital Management System 1.0 is vulnerable to SQL Injection in /admin/index...
High
Unreviewed
CVE-2025-63719
was published
Nov 19, 2025
OpenSTAManager has Authenticated SQL Injection in API via 'display' parameter
High
CVE-2025-65103
was published
for
devcode-it/openstamanager
(Composer)
Nov 19, 2025
The Community Events plugin for WordPress is vulnerable to SQL Injection via the 'dayofyear'...
High
Unreviewed
CVE-2025-12646
was published
Nov 19, 2025
An improper neutralization of special elements used in an SQL Command ("SQL Injection")...
High
Unreviewed
CVE-2025-58692
was published
Nov 18, 2025
SQL injection vulnerability in WinPlus v24.11.27 by Informática del Este. This vulnerability...
High
Unreviewed
CVE-2025-41348
was published
Nov 18, 2025
The Premmerce Wholesale Pricing for WooCommerce plugin for WordPress is vulnerable to SQL...
High
Unreviewed
CVE-2025-12411
was published
Nov 18, 2025
phpMyFAQ has Authenticated SQL Injection in Configuration Update Functionality
High
CVE-2025-62519
was published
for
phpmyfaq/phpmyfaq
(Composer)
Nov 17, 2025
The Booking for Appointments and Events Calendar – Amelia plugin for WordPress is vulnerable to...
High
Unreviewed
CVE-2025-12482
was published
Nov 16, 2025
ZenTao Biz < 6.5, ZenTao Max < 3.0, ZenTao Open Source Edition < 16.5, and ZenTao Open Source...
High
Unreviewed
CVE-2022-4984
was published
Nov 13, 2025
ProTip!
Advisories are also available from the
GraphQL API