GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,273
Erlang
31
GitHub Actions
21
Go
2,056
Maven
5,000+
npm
3,740
NuGet
668
pip
3,417
Pub
12
RubyGems
891
Rust
872
Swift
36
Unreviewed advisories
All unreviewed
5,000+
12,921 advisories
Filter by severity
The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for...
High
Unreviewed
CVE-2024-11711
was published
Dec 14, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-54304
was published
Dec 13, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-54292
was published
Dec 13, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-54261
was published
Dec 13, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-54234
was published
Dec 13, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-54258
was published
Dec 13, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-52057
was published
Dec 13, 2024
Improper Neutralization of Special Elements used in an N1QL Command ('N1QL Injection')...
High
Unreviewed
CVE-2024-11837
was published
Dec 13, 2024
The Responsive Filterable Portfolio plugin for WordPress is vulnerable to SQL Injection via the ...
Moderate
Unreviewed
CVE-2019-25221
was published
Dec 13, 2024
A SQL injection vulnerability in /index.php in PHPGurukul Park Ticketing Management System v1.0...
Critical
Unreviewed
CVE-2024-54811
was published
Dec 12, 2024
A SQL Injection vulnerability was found in /admin/index.php in phpgurukul Online Nurse Hiring...
Critical
Unreviewed
CVE-2024-55099
was published
Dec 12, 2024
A SQL Injection vulnerability was found in /preschool/admin/password-recovery.php in PHPGurukul...
Critical
Unreviewed
CVE-2024-54810
was published
Dec 12, 2024
A SQL injection vulnerability was found in phpgurukul Online Nurse Hiring System v1.0 in /admin...
Critical
Unreviewed
CVE-2024-54842
was published
Dec 12, 2024
An authenticated attacker with the user/role "Poweruser" can perform an SQL injection by...
Moderate
Unreviewed
CVE-2024-50584
was published
Dec 12, 2024
An unauthenticated attacker can perform an SQL injection by accessing the /class/dbconnect.php...
Moderate
Unreviewed
CVE-2024-28145
was published
Dec 12, 2024
The SQL Chart Builder plugin for WordPress is vulnerable to SQL Injection via the 'arg1' arg of...
Moderate
Unreviewed
CVE-2024-11430
was published
Dec 12, 2024
The Library Management System – Manage e-Digital Books Library plugin for WordPress is vulnerable...
Moderate
Unreviewed
CVE-2024-12406
was published
Dec 12, 2024
A vulnerability was found in code-projects Farmacia 1.0. It has been rated as critical. This...
Moderate
Unreviewed
CVE-2024-12492
was published
Dec 12, 2024
A vulnerability classified as critical has been found in 1000 Projects Attendance Tracking...
Moderate
Unreviewed
CVE-2024-12497
was published
Dec 12, 2024
A vulnerability was found in cjbi wetech-cms 1.0/1.1/1.2. It has been declared as critical....
Moderate
Unreviewed
CVE-2024-12481
was published
Dec 12, 2024
A vulnerability was found in cjbi wetech-cms 1.0/1.1/1.2. It has been classified as critical....
Moderate
Unreviewed
CVE-2024-12480
was published
Dec 12, 2024
A vulnerability was found in cjbi wetech-cms 1.0/1.1/1.2 and classified as critical. This issue...
Moderate
Unreviewed
CVE-2024-12479
was published
Dec 12, 2024
SQL injection vulnerability in JEPAAS7.2.8, via /je/rbac/rbac/loadLoginCount in the dateVal...
High
Unreviewed
CVE-2024-51165
was published
Dec 10, 2024
Phpgurukul's Beauty Parlour Management System v1.1 is vulnerable to SQL Injection in `login.php`...
Critical
Unreviewed
CVE-2024-53480
was published
Dec 10, 2024
SQL injection in the admin web console of Ivanti CSA before version 5.0.3 allows a remote...
Critical
Unreviewed
CVE-2024-11773
was published
Dec 10, 2024
ProTip!
Advisories are also available from the
GraphQL API