GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
22
Go
2,095
Maven
5,000+
npm
3,760
NuGet
678
pip
3,446
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
12,635 advisories
Filter by severity
Multiple SQL injection vulnerabilities in PHP Address Book 8.2.5 allow remote attackers to...
High
Unreviewed
CVE-2013-0135
was published
May 5, 2022
Multiple SQL injection vulnerabilities in the administration interface in ASKIA askiaweb allow...
High
Unreviewed
CVE-2013-0123
was published
May 5, 2022
Multiple SQL injection vulnerabilities in Open Ticket Request System (OTRS) Help Desk 3.0.x...
High
Unreviewed
CVE-2013-4717
was published
May 5, 2022
Multiple SQL injection vulnerabilities in D-Link DSR-150 with firmware before 1.08B44; DSR-150N...
High
Unreviewed
CVE-2013-5945
was published
May 5, 2022
SQL injection vulnerability in Dolibarr ERP/CRM 3.3.1 allows remote attackers to execute...
High
Unreviewed
CVE-2013-2091
was published
May 5, 2022
minidlna has SQL Injection that may allow retrieval of arbitrary files
Critical
Unreviewed
CVE-2013-2738
was published
May 5, 2022
Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the...
Critical
Unreviewed
CVE-2022-27420
was published
May 5, 2022
Wuzhicms v4.1.0 was discovered to contain a SQL injection vulnerability via the groupid parameter...
Critical
Unreviewed
CVE-2022-27431
was published
May 5, 2022
wdja v2.1 is affected by a SQL injection vulnerability in the foreground search function.
Critical
Unreviewed
CVE-2021-42185
was published
May 5, 2022
A SQL injection vulnerability exists in Sourcecodester Fantastic Blog CMS 1.0 . An attacker can...
Critical
Unreviewed
CVE-2022-28512
was published
May 5, 2022
Cscms 4.1 is vulnerable to SQL Injection. Log into the background, open the song module, create a...
High
Unreviewed
CVE-2022-28552
was published
May 5, 2022
Poultry Farm Management System v1.0 was discovered to contain a SQL injection vulnerability via...
High
Unreviewed
CVE-2022-28099
was published
May 5, 2022
SQL injection in osTicket before 1.14.8 and 1.15.4 login and password reset process allows...
Critical
Unreviewed
CVE-2021-42235
was published
May 5, 2022
In OpenLDAP 2.x before 2.5.12 and 2.6.x before 2.6.2, a SQL injection vulnerability exists in the...
Critical
Unreviewed
CVE-2022-29155
was published
May 5, 2022
Multiple SQL injection vulnerabilities in EMC RSA enVision 4.x before 4.1 Patch 4 allow remote...
Moderate
Unreviewed
CVE-2012-0401
was published
May 4, 2022
SQL injection vulnerability in the web component in Cisco Unified MeetingPlace 7.1 allows remote...
Moderate
Unreviewed
CVE-2012-0337
was published
May 4, 2022
Multiple SQL injection vulnerabilities in Symantec Altiris WISE Package Studio before 8.0MR1...
Moderate
Unreviewed
CVE-2012-0293
was published
May 4, 2022
Multiple SQL injection vulnerabilities in Advantech/BroadWin WebAccess before 7.0 allow remote...
High
Unreviewed
CVE-2012-0244
was published
May 4, 2022
SQL injection vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to...
High
Unreviewed
CVE-2012-0234
was published
May 4, 2022
SQL injection vulnerability in Invensys Wonderware Information Server 4.0 SP1 and 4.5 allows...
High
Unreviewed
CVE-2012-0226
was published
May 4, 2022
Multiple SQL injection vulnerabilities in IBM Tivoli Provisioning Manager Express for Software...
High
Unreviewed
CVE-2012-0199
was published
May 4, 2022
SQL injection vulnerability in ajax.php in Batavi before 1.2.1 allows remote attackers to execute...
High
Unreviewed
CVE-2012-0069
was published
May 4, 2022
curl and libcurl 7.2x before 7.24.0 do not properly consider special characters during extraction...
High
Unreviewed
CVE-2012-0036
was published
May 4, 2022
In the wp-google-maps plugin before 7.11.18 for WordPress, includes/class.rest-api.php in the...
Critical
Unreviewed
CVE-2019-10692
was published
May 4, 2022
Jfinal_cms 5.1.0 is vulnerable to SQL Injection via com.jflyfox.system.log.LogController.java.
High
Unreviewed
CVE-2022-28505
was published
May 4, 2022
ProTip!
Advisories are also available from the
GraphQL API