GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,356
Erlang
31
GitHub Actions
22
Go
2,120
Maven
5,000+
npm
3,782
NuGet
683
pip
3,460
Pub
12
RubyGems
893
Rust
892
Swift
38
Unreviewed advisories
All unreviewed
5,000+
13,217 advisories
Filter by severity
A vulnerability, which was classified as critical, was found in 1000 Projects Bookstore...
Moderate
Unreviewed
CVE-2025-1173
was published
Feb 11, 2025
A vulnerability, which was classified as critical, has been found in 1000 Projects Bookstore...
Moderate
Unreviewed
CVE-2025-1172
was published
Feb 11, 2025
A vulnerability was found in Mayuri K Employee Management System up to 192.168.70.3 and...
Moderate
Unreviewed
CVE-2025-1167
was published
Feb 11, 2025
A vulnerability was found in SourceCodester Contact Manager with Export to VCF 1.0. It has been...
Moderate
Unreviewed
CVE-2025-1168
was published
Feb 11, 2025
An SQL injection vulnerability exists in Stock-Forecaster <=01-04-2020. By sending a specially...
Moderate
Unreviewed
CVE-2024-57178
was published
Feb 10, 2025
The Super Store Finder plugin for WordPress is vulnerable to SQL Injection via the ...
High
Unreviewed
CVE-2024-13440
was published
Feb 9, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-25116
was published
Feb 7, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-25151
was published
Feb 7, 2025
A SQL Injection vulnerability exists in the /feed/insert.json endpoint of the Emoncms project >=...
Critical
Unreviewed
CVE-2025-22992
was published
Feb 6, 2025
An SQL injection vulnerability in the pjActionGetUser function of PHPJabbers Cinema Booking...
Critical
Unreviewed
CVE-2024-57430
was published
Feb 6, 2025
SQL Injection vulnerability in SourceCodester Responsive E-Learning System 1.0 allows remote...
Critical
Unreviewed
CVE-2020-36084
was published
Feb 6, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-22699
was published
Feb 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-22700
was published
Feb 4, 2025
A SQL injection vulnerability in the JS Jobs plugin versions 1.1.5-1.4.2 for Joomla allows...
Moderate
Unreviewed
CVE-2025-22206
was published
Feb 4, 2025
SQL injection vulnerability in the ZimbraSyncService SOAP endpoint in Zimbra Collaboration 10.0.x...
Critical
Unreviewed
CVE-2025-25064
was published
Feb 3, 2025
A SQL injection vulnerability in timeoutWarning.asp in Advantive VeraCore through 2025.1.0 allows...
Moderate
Unreviewed
CVE-2025-25181
was published
Feb 3, 2025
Moss v0.1.3 version has an SQL injection vulnerability that allows attackers to inject carefully...
Critical
Unreviewed
CVE-2024-57098
was published
Feb 3, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-22691
was published
Feb 3, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-22693
was published
Feb 3, 2025
A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0....
Moderate
Unreviewed
CVE-2025-0946
was published
Feb 1, 2025
A vulnerability classified as critical has been found in itsourcecode Tailoring Management System...
Moderate
Unreviewed
CVE-2025-0945
was published
Feb 1, 2025
A vulnerability was found in itsourcecode Tailoring Management System 1.0. It has been rated as...
Moderate
Unreviewed
CVE-2025-0944
was published
Feb 1, 2025
A vulnerability was found in itsourcecode Tailoring Management System 1.0. It has been declared...
Moderate
Unreviewed
CVE-2025-0943
was published
Feb 1, 2025
The MultiLoca - WooCommerce Multi Locations Inventory Management plugin for WordPress is...
Moderate
Unreviewed
CVE-2024-13341
was published
Feb 1, 2025
EasyVirt DCScope 8.6.0 and earlier and co2Scope 1.3.0 and earlier are vulnerable to SQL Injection...
High
Unreviewed
CVE-2024-57587
was published
Feb 1, 2025
ProTip!
Advisories are also available from the
GraphQL API