GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
49
GitHub Actions
49
Go
3,405
Maven
5,000+
npm
5,000+
NuGet
882
pip
4,641
Pub
13
RubyGems
1,026
Rust
1,209
Swift
53
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
63 advisories
Filter by severity
HCL AION is affected by a vulnerability where certain offering configurations may permit...
Low
Unreviewed
CVE-2025-52646
was published
Mar 16, 2026
An SQL injection vulnerability has been reported to affect Video Station. If an attacker gains...
Low
Unreviewed
CVE-2024-14025
was published
Mar 11, 2026
Sourcecodester Logistic Hub Parcel's Management System v1.0 is vulnerable to SQL Injection in ...
Low
Unreviewed
CVE-2026-26891
was published
Mar 3, 2026
Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy...
Low
Unreviewed
CVE-2026-26888
was published
Mar 3, 2026
Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy...
Low
Unreviewed
CVE-2026-26889
was published
Mar 3, 2026
Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy...
Low
Unreviewed
CVE-2026-26887
was published
Mar 3, 2026
Sourcecodester Simple Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in...
Low
Unreviewed
CVE-2026-26886
was published
Mar 3, 2026
Sourcecodester Simple Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in...
Low
Unreviewed
CVE-2026-26885
was published
Mar 3, 2026
Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy...
Low
Unreviewed
CVE-2026-26890
was published
Mar 3, 2026
Sourcecodester Simple Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in...
Low
Unreviewed
CVE-2026-26883
was published
Mar 3, 2026
Sourcecodester Simple Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in...
Low
Unreviewed
CVE-2026-26884
was published
Mar 3, 2026
An error-based SQL injection vulnerability exists in the Sunbird Power IQ 9.2.0 API. The...
Low
Unreviewed
CVE-2025-55703
was published
Dec 15, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Low
Unreviewed
CVE-2025-62655
was published
Oct 18, 2025
An Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Low
Unreviewed
CVE-2025-24474
was published
Jul 8, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Low
Unreviewed
CVE-2024-12706
was published
Apr 28, 2025
In Sherpa Orchestrator 141851, multiple time-based blind SQL injections can be performed by an...
Low
Unreviewed
CVE-2025-46546
was published
Apr 25, 2025
A SQL injection in VirtueMart component 1.0.0 - 4.4.7 for Joomla allows authenticated attackers ...
Low
Unreviewed
CVE-2025-25228
was published
Apr 21, 2025
An improper neutralization of special elements used in an SQL command ('SQL Injection')...
Low
Unreviewed
CVE-2022-29059
was published
Mar 14, 2025
A SQL injection vulnerability in the ConvertForms component versions 1.0.0-1.0.0 - 4.4.9 for...
Low
Unreviewed
CVE-2025-22212
was published
Mar 5, 2025
A SQL injection vulnerability in the JoomShopping component versions 1.0.0-1.4.3 for Joomla...
Low
Unreviewed
CVE-2025-22211
was published
Feb 26, 2025
The Dell Secure Connect Gateway (SCG) Application and Appliance, versions prior to 5.28, contains...
Low
Unreviewed
CVE-2024-51539
was published
Feb 25, 2025
A vulnerability was found in ITSourcecode Simple ChatBox up to 1.0. This vulnerability affects...
Low
Unreviewed
CVE-2025-25877
was published
Feb 21, 2025
A vulnerability was found in ITSourcecode Simple ChatBox up to 1.0. This vulnerability affects...
Low
Unreviewed
CVE-2025-25878
was published
Feb 21, 2025
A improper neutralization of special elements used in an sql command ('sql injection') in...
Low
Unreviewed
CVE-2024-55593
was published
Jan 14, 2025
An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated...
Low
Unreviewed
CVE-2023-42236
was published
Jan 14, 2025
ProTip!
Advisories are also available from the
GraphQL API