GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,743
Erlang
35
GitHub Actions
29
Go
2,315
Maven
5,000+
npm
3,949
NuGet
711
pip
3,729
Pub
12
RubyGems
920
Rust
965
Swift
38
Unreviewed advisories
All unreviewed
5,000+
14,356 advisories
Filter by severity
The Contact Form by WD WordPress plugin through 1.13.23 does not properly sanitise and escape a...
High
Unreviewed
CVE-2023-2655
was published
Jan 16, 2024
SQL injection vulnerability in the registrationform endpoint of CloudClassroom-PHP-Project v1.0....
High
Unreviewed
CVE-2025-45542
was published
Jun 2, 2025
A time-based SQL injection vulnerability exists in mydetailsstudent.php in the CloudClassroom PHP...
High
Unreviewed
CVE-2024-57459
was published
Jun 2, 2025
The WP Fastest Cache WordPress plugin before 0.9.5 does not escape user input in the...
High
Unreviewed
CVE-2021-24869
was published
Jan 16, 2024
An SQL injection vulnerability exists in the delete function of DuckDBVectorStore in run-llama...
Critical
Unreviewed
CVE-2025-1750
was published
Jun 2, 2025
Navidrome allows SQL Injection via role parameter
High
CVE-2025-48949
was published
for
github.com/navidrome/navidrome
(Go)
May 29, 2025
An issue was discovered in the Archibus app 4.0.3 for iOS. It uses a local database that is...
High
Unreviewed
CVE-2023-48645
was published
Feb 2, 2024
An issue was discovered in the A4N (Aremis 4 Nomad) application 1.5.0 for Android. It allows SQL...
Critical
Unreviewed
CVE-2022-34909
was published
Feb 27, 2023
An issue was discovered in Archibus Web Central 2022.03.01.107. A service exposed by the...
High
Unreviewed
CVE-2022-45165
was published
Jan 10, 2023
** UNSUPPORTED WHEN ASSIGNED ** An issue was discovered in HelpDeskZ 1.0.2. The feature to auto...
High
Unreviewed
CVE-2020-26546
was published
May 24, 2022
Apache Superset: Improper authorization bypass on row level security via SQL Injection
High
CVE-2025-48912
was published
for
apache-superset
(pip)
May 30, 2025
A vulnerability classified as critical was found in PHPGurukul News Portal 4.1. This...
Moderate
Unreviewed
CVE-2024-3767
was published
Apr 15, 2024
Symfony Service IDs Allow Injection
Critical
CVE-2019-10910
was published
for
symfony/dependency-injection
(Composer)
Nov 18, 2019
MantisBT SQL Injection via mc_project_get_users function
Moderate
CVE-2020-28413
was published
for
mantisbt/mantisbt
(Composer)
May 24, 2022
Multiple SQL Injection vulnerabilities in Teachers Record Management System 1.0 allow remote...
High
Unreviewed
CVE-2021-28423
was published
May 24, 2022
A vulnerability classified as critical was found in itsourcecode Gym Management System 1.0. This...
Moderate
Unreviewed
CVE-2025-4362
was published
May 6, 2025
A vulnerability has been found in PHPGurukul e-Diary Management System 1.0 and classified as...
Moderate
Unreviewed
CVE-2025-3242
was published
Apr 4, 2025
A vulnerability classified as critical has been found in code-projects Patient Record Management...
Moderate
Unreviewed
CVE-2025-3211
was published
Apr 4, 2025
A vulnerability was found in 1000 Projects Daily College Class Work Report Book 1.0. It has been...
Moderate
Unreviewed
CVE-2024-12964
was published
Dec 26, 2024
A vulnerability, which was classified as critical, was found in Campcodes Online Hospital...
Moderate
Unreviewed
CVE-2025-5298
was published
May 28, 2025
A vulnerability classified as critical has been found in Campcodes Online Hospital Management...
Moderate
Unreviewed
CVE-2025-5224
was published
May 27, 2025
A vulnerability was found in Campcodes Online Hospital Management System 1.0. It has been rated...
Moderate
Unreviewed
CVE-2025-5229
was published
May 27, 2025
A vulnerability, which was classified as critical, was found in Campcodes Advanced Online Voting...
Moderate
Unreviewed
CVE-2025-5225
was published
May 27, 2025
A vulnerability classified as critical was found in Campcodes Online Hospital Management System 1...
Moderate
Unreviewed
CVE-2025-5246
was published
May 27, 2025
A vulnerability classified as critical was found in itsourcecode Gym Management System 1.0....
Moderate
Unreviewed
CVE-2025-4359
was published
May 6, 2025
ProTip!
Advisories are also available from the
GraphQL API