GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,360
Erlang
33
GitHub Actions
22
Go
2,127
Maven
5,000+
npm
3,793
NuGet
683
pip
3,471
Pub
12
RubyGems
894
Rust
894
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
6,389 advisories
Filter by severity
A SQL Injection vulnerability was found in /shopping/track-orders.php in PHPGurukul Online...
High
Unreviewed
CVE-2025-26156
was published
Feb 14, 2025
A SQL Injection vulnerability was found in /admin/manage-propertytype.php in PHPGurukul Land...
High
Unreviewed
CVE-2025-25387
was published
Feb 13, 2025
A SQL Injection vulnerability was found in /admin/aboutus.php in PHPGurukul Land Record System v1...
High
Unreviewed
CVE-2025-25352
was published
Feb 13, 2025
A SQL Injection was found in /admin/admin-profile.php in PHPGurukul Land Record System v1.0,...
High
Unreviewed
CVE-2025-25354
was published
Feb 13, 2025
A SQL Injection vulnerability was found in /admin/bwdates-reports-details.php in PHPGurukul Land...
High
Unreviewed
CVE-2025-25356
was published
Feb 13, 2025
A SQL Injection vulnerability was found in /admin/contactus.php in PHPGurukul Land Record System...
High
Unreviewed
CVE-2025-25357
was published
Feb 13, 2025
A SQL Injection vulnerability was found in /admin/bwdates-reports-details.php in PHPGurukul Land...
High
Unreviewed
CVE-2025-25355
was published
Feb 13, 2025
The LTL Freight Quotes – For Customers of FedEx Freight plugin for WordPress is vulnerable to SQL...
High
Unreviewed
CVE-2024-13480
was published
Feb 12, 2025
The Small Package Quotes – Purolator Edition plugin for WordPress is vulnerable to SQL Injection...
High
Unreviewed
CVE-2024-13532
was published
Feb 12, 2025
The Small Package Quotes – UPS Edition plugin for WordPress is vulnerable to SQL Injection via...
High
Unreviewed
CVE-2024-13475
was published
Feb 12, 2025
The LTL Freight Quotes – XPO Edition plugin for WordPress is vulnerable to SQL Injection via the ...
High
Unreviewed
CVE-2024-13490
was published
Feb 12, 2025
The LTL Freight Quotes – Worldwide Express Edition plugin for WordPress is vulnerable to SQL...
High
Unreviewed
CVE-2024-13473
was published
Feb 12, 2025
The LTL Freight Quotes – Unishippers Edition plugin for WordPress is vulnerable to SQL Injection...
High
Unreviewed
CVE-2024-13477
was published
Feb 12, 2025
The ShipEngine Shipping Quotes plugin for WordPress is vulnerable to SQL Injection via the ...
High
Unreviewed
CVE-2024-13531
was published
Feb 12, 2025
The Ebook Downloader plugin for WordPress is vulnerable to SQL Injection via the 'download'...
High
Unreviewed
CVE-2024-13435
was published
Feb 12, 2025
Cacti through 1.2.29 allows SQL injection in the template function in host_templates.php via the...
High
Unreviewed
CVE-2025-26520
was published
Feb 12, 2025
The Super Store Finder plugin for WordPress is vulnerable to SQL Injection via the ...
High
Unreviewed
CVE-2024-13440
was published
Feb 9, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-25116
was published
Feb 7, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-25151
was published
Feb 7, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-22700
was published
Feb 4, 2025
Prolink 4G LTE Mobile Wi-Fi DL-7203E V4.0.0B05 is vulnerable to SQL Injection in in the /reqproc...
High
Unreviewed
CVE-2024-57238
was published
Feb 3, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-22693
was published
Feb 3, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-22691
was published
Feb 3, 2025
EasyVirt DCScope 8.6.0 and earlier and co2Scope 1.3.0 and earlier are vulnerable to SQL Injection...
High
Unreviewed
CVE-2024-57587
was published
Feb 1, 2025
Avi Load Balancer contains an unauthenticated blind SQL Injection vulnerability which was...
High
Unreviewed
CVE-2025-22217
was published
Jan 28, 2025
ProTip!
Advisories are also available from the
GraphQL API