GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,743
Erlang
35
GitHub Actions
29
Go
2,318
Maven
5,000+
npm
3,950
NuGet
711
pip
3,730
Pub
12
RubyGems
920
Rust
965
Swift
38
Unreviewed advisories
All unreviewed
5,000+
14,375 advisories
Filter by severity
SQL Injection in create customer group function in EasyUse MailHunter Ultimate 2023 and earlier...
High
Unreviewed
CVE-2023-34210
was published
Oct 17, 2023
In the module extratabspro before version 2.2.8 from MyPresta.eu for PrestaShop, a guest can...
Critical
Unreviewed
CVE-2023-45386
was published
Oct 17, 2023
nocodb SQL Injection vulnerability
Moderate
CVE-2023-43794
was published
for
nocodb
(npm)
Oct 17, 2023
lylme_spage v1.7.0 was discovered to contain a SQL injection vulnerability via the $userip...
Critical
Unreviewed
CVE-2023-45951
was published
Oct 17, 2023
Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the...
Critical
Unreviewed
CVE-2023-46007
was published
Oct 18, 2023
Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the...
Critical
Unreviewed
CVE-2023-46005
was published
Oct 18, 2023
Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the...
Critical
Unreviewed
CVE-2023-46006
was published
Oct 18, 2023
The iPanorama 360 – WordPress Virtual Tour Builder plugin for WordPress is vulnerable to SQL...
Moderate
Unreviewed
CVE-2023-5336
was published
Oct 19, 2023
The ChatBot plugin for WordPress is vulnerable to SQL Injection via the $strid parameter in...
High
Unreviewed
CVE-2023-5204
was published
Oct 19, 2023
In the module "Rotator Img" (posrotatorimg) in versions at least up to 1.1 from PosThemes for...
Critical
Unreviewed
CVE-2023-45379
was published
Oct 19, 2023
DM Concept configurator before v4.9.4 was discovered to contain a SQL injection vulnerability via...
Critical
Unreviewed
CVE-2023-43986
was published
Oct 19, 2023
In the module "Creative Popup" (creativepopup) up to version 1.6.9 from WebshopWorks for...
Critical
Unreviewed
CVE-2023-45381
was published
Oct 19, 2023
In the module "Carousels Pack - Instagram, Products, Brands, Supplier" (hicarouselspack) for...
Critical
Unreviewed
CVE-2023-45376
was published
Oct 19, 2023
The Slimstat Analytics plugin for WordPress is vulnerable to SQL Injection via the plugin's...
Moderate
Unreviewed
CVE-2023-4598
was published
Oct 20, 2023
The Cyr to Lat plugin for WordPress is vulnerable to authenticated SQL Injection via the ...
High
Unreviewed
CVE-2022-4290
was published
Oct 20, 2023
The Horizontal scrolling announcement plugin for WordPress is vulnerable to SQL Injection via the...
High
Unreviewed
CVE-2023-4999
was published
Oct 20, 2023
A vulnerability, which was classified as critical, was found in Netentsec NS-ASG Application...
Moderate
Unreviewed
CVE-2023-5681
was published
Oct 20, 2023
Sitolog sitologapplicationconnect v7.8.a and before was discovered to contain a SQL injection...
Critical
Unreviewed
CVE-2023-37824
was published
Oct 20, 2023
A vulnerability has been found in Tongda OA 2017 and classified as critical. This vulnerability...
Moderate
Unreviewed
CVE-2023-5682
was published
Oct 20, 2023
Langchain SQL Injection vulnerability
Critical
CVE-2023-32785
was published
for
langchain
(pip)
Oct 21, 2023
An issue was discovered in SuperWebMailer 9.00.0.01710. It allows Export SQL Injection via the...
High
Unreviewed
CVE-2023-38190
was published
Oct 21, 2023
A vulnerability, which was classified as critical, was found in Netentsec NS-ASG Application...
Moderate
Unreviewed
CVE-2023-5700
was published
Oct 23, 2023
A vulnerability was found in CodeAstro Internet Banking System 1.0 and classified as critical....
Moderate
Unreviewed
CVE-2023-5693
was published
Oct 23, 2023
Unauthenticated SQL injection in the GetStudentGroupStudents method in IDAttend’s IDWeb...
Critical
Unreviewed
CVE-2023-26568
was published
Oct 25, 2023
Unauthenticated SQL injection in the GetExcursionList method in IDAttend’s IDWeb application 3.1...
Critical
Unreviewed
CVE-2023-26572
was published
Oct 25, 2023
ProTip!
Advisories are also available from the
GraphQL API