GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,815
Erlang
36
GitHub Actions
32
Go
2,401
Maven
5,000+
npm
4,044
NuGet
723
pip
3,830
Pub
12
RubyGems
933
Rust
1,003
Swift
38
Unreviewed advisories
All unreviewed
5,000+
7,004 advisories
Filter by severity
The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is...
High
Unreviewed
CVE-2025-4381
was published
Jul 2, 2025
The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is...
High
Unreviewed
CVE-2025-5339
was published
Jul 2, 2025
The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is...
High
Unreviewed
CVE-2025-6437
was published
Jul 2, 2025
The application is vulnerable to SQL injection attacks. An attacker is able to dump the...
High
Unreviewed
CVE-2025-1708
was published
Jul 3, 2025
The GoZen Forms plugin for WordPress is vulnerable to SQL Injection via the 'forms-id' parameter...
High
Unreviewed
CVE-2025-6783
was published
Jul 4, 2025
The GoZen Forms plugin for WordPress is vulnerable to SQL Injection via the 'forms-id' parameter...
High
Unreviewed
CVE-2025-6782
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-24748
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-28967
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-30947
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-30969
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-28969
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-30979
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-24780
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-32297
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-49870
was published
Jul 4, 2025
A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected devices are...
High
Unreviewed
CVE-2025-40735
was published
Jul 8, 2025
SQL injection in Ivanti Endpoint Manager before version 2024 SU3 and 2022 SU8 Security Update 1...
High
Unreviewed
CVE-2025-7037
was published
Jul 8, 2025
Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft...
High
Unreviewed
CVE-2025-47178
was published
Jul 8, 2025
The Events Manager – Calendar, Bookings, Tickets, and more! plugin for WordPress is vulnerable to...
High
Unreviewed
CVE-2025-6970
was published
Jul 10, 2025
A vulnerability exists in Advantech iView that could allow for SQL
injection through the CUtils...
High
Unreviewed
CVE-2025-48891
was published
Jul 11, 2025
A vulnerability exists in Advantech iView that could allow SQL injection
and remote code...
High
Unreviewed
CVE-2025-52577
was published
Jul 11, 2025
A vulnerability exists in Advantech iView that allows for SQL injection
and remote code...
High
Unreviewed
CVE-2025-53515
was published
Jul 11, 2025
A vulnerability exists in Advantech iView that could allow for SQL
injection and remote code...
High
Unreviewed
CVE-2025-53475
was published
Jul 11, 2025
The WPGYM - Wordpress Gym Management System plugin for WordPress is vulnerable to SQL Injection...
High
Unreviewed
CVE-2025-7442
was published
Jul 11, 2025
SQL Injection vulnerability in openSIS v.9.1 allows a remote attacker to execute arbitrary code...
High
Unreviewed
CVE-2025-26186
was published
Jul 15, 2025
ProTip!
Advisories are also available from the
GraphQL API