GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,779
Maven
5,000+
npm
4,380
NuGet
770
pip
4,159
Pub
12
RubyGems
963
Rust
1,071
Swift
45
Unreviewed advisories
All unreviewed
5,000+
15,891 advisories
Filter by severity
Time-based blind SQL Injection vulnerability in Cloudlog v2.6.15 at the endpoint /index.php...
Critical
Unreviewed
CVE-2024-44065
was published
Dec 26, 2025
SQL injection vulnerability in krishanmuraiji SMS v.1.0, within the /studentms/admin/edit-class...
Moderate
Unreviewed
CVE-2025-66947
was published
Dec 26, 2025
Riello UPS NetMan 208 Application before 1.12 allows cgi-bin/login.cgi username SQL Injection....
Moderate
Unreviewed
CVE-2025-68914
was published
Dec 24, 2025
SOCA Access Control System 180612 contains multiple SQL injection vulnerabilities that allow...
Critical
Unreviewed
CVE-2018-25128
was published
Dec 24, 2025
MyNET up to v26.08.316 was discovered to contain an Unauthenticated SQL Injection vulnerability...
Moderate
Unreviewed
CVE-2024-39037
was published
Dec 24, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-68590
was published
Dec 24, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-68570
was published
Dec 24, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-68496
was published
Dec 24, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-68519
was published
Dec 24, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2023-36525
was published
Dec 24, 2025
PMB 7.4.6 contains a SQL injection vulnerability in the storage parameter of the ajax.php...
Critical
Unreviewed
CVE-2023-53982
was published
Dec 23, 2025
Improper input handling in /Grocery/search_products_itname.php inPuneethReddyHC event-management...
Critical
Unreviewed
CVE-2025-65354
was published
Dec 23, 2025
Orangescrum 1.8.0 contains an authenticated SQL injection vulnerability that allows authorized...
High
Unreviewed
CVE-2021-47720
was published
Dec 23, 2025
SQL Injection vulnerability in RuoYi v.4.7.9 and before allows a remote attacker to execute...
Critical
Unreviewed
CVE-2024-57521
was published
Dec 23, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-68550
was published
Dec 23, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-68561
was published
Dec 23, 2025
Hasura GraphQL 1.3.3 contains a local file read vulnerability that allows attackers to access...
Moderate
Unreviewed
CVE-2021-47714
was published
Dec 23, 2025
SOUND4 IMPACT/FIRST/PULSE/Eco version 2.x contains an SQL injection vulnerability in the 'index...
Critical
Unreviewed
CVE-2023-53960
was published
Dec 23, 2025
Atom CMS 2.0 contains an unauthenticated SQL injection vulnerability that allows remote attackers...
Critical
Unreviewed
CVE-2023-53975
was published
Dec 23, 2025
WebTareas 2.4 contains a SQL injection vulnerability in the webTareasSID cookie parameter that...
Critical
Unreviewed
CVE-2023-53972
was published
Dec 23, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-12514
was published
Dec 22, 2025
Advantech WebAccess/SCADA
is vulnerable to SQL injection, which may allow an attacker to execute...
Moderate
Unreviewed
CVE-2025-46268
was published
Dec 18, 2025
A SQL Injection vulnerability exists in phpMsAdmin version 2.2 in the database_mode.php file. An...
Moderate
Unreviewed
CVE-2025-63948
was published
Dec 18, 2025
WBiz Desk 1.2 contains a SQL injection vulnerability that allows non-admin users to manipulate...
Moderate
Unreviewed
CVE-2023-53935
was published
Dec 18, 2025
A SQL injection vulnerability in Kentico Xperience allows authenticated editors to inject...
High
Unreviewed
CVE-2021-47711
was published
Dec 18, 2025
ProTip!
Advisories are also available from the
GraphQL API