GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,951
Erlang
39
GitHub Actions
38
Go
2,607
Maven
5,000+
npm
4,251
NuGet
757
pip
4,017
Pub
12
RubyGems
953
Rust
1,049
Swift
45
Unreviewed advisories
All unreviewed
5,000+
7,142 advisories
Filter by severity
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-47645
was published
Jul 16, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-32574
was published
Jul 16, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-49876
was published
Jul 16, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-49034
was published
Jul 16, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-54043
was published
Jul 16, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-54026
was published
Jul 16, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-48301
was published
Jul 16, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-48299
was published
Jul 16, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-48161
was published
Jul 16, 2025
SQL injection vulnerability in SCATI Vision Web of SCATI Labs from version 4.8 to 7.2. This...
High
Unreviewed
CVE-2025-40985
was published
Jul 16, 2025
SQL Injection vulnerability in openSIS v.9.1 allows a remote attacker to execute arbitrary code...
High
Unreviewed
CVE-2025-26186
was published
Jul 15, 2025
The WPGYM - Wordpress Gym Management System plugin for WordPress is vulnerable to SQL Injection...
High
Unreviewed
CVE-2025-7442
was published
Jul 11, 2025
A vulnerability exists in Advantech iView that allows for SQL injection
and remote code...
High
Unreviewed
CVE-2025-53515
was published
Jul 11, 2025
A vulnerability exists in Advantech iView that could allow for SQL
injection and remote code...
High
Unreviewed
CVE-2025-53475
was published
Jul 11, 2025
A vulnerability exists in Advantech iView that could allow SQL injection
and remote code...
High
Unreviewed
CVE-2025-52577
was published
Jul 11, 2025
A vulnerability exists in Advantech iView that could allow for SQL
injection through the CUtils...
High
Unreviewed
CVE-2025-48891
was published
Jul 11, 2025
The Events Manager – Calendar, Bookings, Tickets, and more! plugin for WordPress is vulnerable to...
High
Unreviewed
CVE-2025-6970
was published
Jul 10, 2025
Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft...
High
Unreviewed
CVE-2025-47178
was published
Jul 8, 2025
SQL injection in Ivanti Endpoint Manager before version 2024 SU3 and 2022 SU8 Security Update 1...
High
Unreviewed
CVE-2025-7037
was published
Jul 8, 2025
A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected devices are...
High
Unreviewed
CVE-2025-40735
was published
Jul 8, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-49870
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-32297
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-24780
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-30979
was published
Jul 4, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-28969
was published
Jul 4, 2025
ProTip!
Advisories are also available from the
GraphQL API