GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,810
Erlang
36
GitHub Actions
31
Go
2,396
Maven
5,000+
npm
4,030
NuGet
721
pip
3,820
Pub
12
RubyGems
932
Rust
988
Swift
38
Unreviewed advisories
All unreviewed
5,000+
6,995 advisories
Filter by severity
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-30969
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-24748
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-28967
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-28969
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-30979
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-32297
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-24780
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-49870
was published
Jul 4, 2025
SQL injection vulnerability in Daily Expense Manager v1.0. This vulnerability allows an attacker...
High
Unreviewed
CVE-2025-40731
was published
Jun 30, 2025
A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected devices are...
High
Unreviewed
CVE-2025-40735
was published
Jul 8, 2025
SQL injection in Ivanti Endpoint Manager before version 2024 SU3 and 2022 SU8 Security Update 1...
High
Unreviewed
CVE-2025-7037
was published
Jul 8, 2025
Multiple SQL injection vulnerabilities in BOINC allow remote attackers to execute arbitrary SQL...
High
Unreviewed
CVE-2013-2018
was published
May 5, 2022
Multiple SQL injection vulnerabilities on the Sinapsi eSolar Light Photovoltaic System Monitor ...
High
Unreviewed
CVE-2012-5861
was published
May 17, 2022
Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft...
High
Unreviewed
CVE-2025-47178
was published
Jul 8, 2025
The Events Manager – Calendar, Bookings, Tickets, and more! plugin for WordPress is vulnerable to...
High
Unreviewed
CVE-2025-6970
was published
Jul 10, 2025
The Form Vibes plugin for WordPress is vulnerable to SQL Injection via the ‘fv_export_data’...
High
Unreviewed
CVE-2024-5325
was published
Jul 12, 2024
In streampark-console the list pages(e.g: application pages), users can sort page by field. This...
High
Unreviewed
CVE-2023-52290
was published
Jul 16, 2024
The Wallet for WooCommerce plugin for WordPress is vulnerable to SQL Injection via the 'search...
High
Unreviewed
CVE-2024-6353
was published
Jul 12, 2024
A vulnerability exists in Advantech iView that could allow for SQL
injection through the CUtils...
High
Unreviewed
CVE-2025-48891
was published
Jul 11, 2025
A vulnerability exists in Advantech iView that allows for SQL injection
and remote code...
High
Unreviewed
CVE-2025-53515
was published
Jul 11, 2025
A vulnerability exists in Advantech iView that could allow SQL injection
and remote code...
High
Unreviewed
CVE-2025-52577
was published
Jul 11, 2025
A vulnerability exists in Advantech iView that could allow for SQL
injection and remote code...
High
Unreviewed
CVE-2025-53475
was published
Jul 11, 2025
The WPGYM - Wordpress Gym Management System plugin for WordPress is vulnerable to SQL Injection...
High
Unreviewed
CVE-2025-7442
was published
Jul 11, 2025
SQL Injection vulnerability in openSIS v.9.1 allows a remote attacker to execute arbitrary code...
High
Unreviewed
CVE-2025-26186
was published
Jul 15, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-48161
was published
Jul 16, 2025
ProTip!
Advisories are also available from the
GraphQL API