GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,279
Erlang
31
GitHub Actions
21
Go
2,056
Maven
5,000+
npm
3,740
NuGet
668
pip
3,421
Pub
12
RubyGems
891
Rust
873
Swift
36
Unreviewed advisories
All unreviewed
5,000+
3,815 advisories
Filter by severity
Failure to sanitize quotes which can lead to sql injection in squel
Critical
GHSA-4qhx-g9wp-g9m6
was published
for
squel
(npm)
Jun 14, 2019
SQL Injection in usmanhalalit/pixie
Critical
CVE-2019-10766
was published
for
usmanhalalit/pixie
(Composer)
Nov 20, 2019
Invalid HTTP method overrides allow possible XSS or other attacks in Symfony
Critical
CVE-2019-10913
was published
for
symfony/http-foundation
(Composer)
Dec 2, 2019
SQL injection in phpMyAdmin
Critical
CVE-2019-18622
was published
for
phpmyadmin/phpmyadmin
(Composer)
Jan 16, 2020
SQL injection in Centreon
Critical
CVE-2019-16194
was published
for
centreon/centreon
(Composer)
Feb 11, 2020
Privilege Escalation due to Blind NoSQL Injection in flintcms
Critical
CVE-2018-3783
was published
for
flintcms
(npm)
Aug 21, 2018
SQL Injection in Kylin
Critical
CVE-2020-13926
was published
for
org.apache.kylin:kylin-server-base
(Maven)
Jul 27, 2020
A vulnerability, which was classified as critical, has been found in SourceCodester Online Flight...
Critical
Unreviewed
CVE-2023-0245
was published
Jan 12, 2023
A vulnerability classified as critical has been found in TuziCMS 2.0.6. This affects the function...
Critical
Unreviewed
CVE-2023-0243
was published
Jan 12, 2023
A vulnerability, which was classified as critical, has been found in pointhi searx_stats. This...
Critical
Unreviewed
CVE-2014-125077
was published
Jan 15, 2023
The Fontsy WordPress plugin through 1.8.6 does not properly sanitize and escape a parameter...
Critical
Unreviewed
CVE-2022-4447
was published
Jan 16, 2023
A vulnerability was found in 2071174A vinylmap. It has been classified as critical. Affected is...
Critical
Unreviewed
CVE-2015-10056
was published
Jan 16, 2023
A vulnerability, which was classified as critical, has been found in risheesh debutsav. This...
Critical
Unreviewed
CVE-2014-125081
was published
Jan 18, 2023
A vulnerability was found in VictorFerraresi pokemon-database-php. It has been declared as...
Critical
Unreviewed
CVE-2015-10064
was published
Jan 17, 2023
A vulnerability was found in PictureThisWebServer and classified as critical. This issue affects...
Critical
Unreviewed
CVE-2015-10055
was published
Jan 16, 2023
A vulnerability classified as critical has been found in PrivateSky apersistence. This affects an...
Critical
Unreviewed
CVE-2017-20171
was published
Jan 18, 2023
A vulnerability was found in nivit redports. It has been declared as critical. This vulnerability...
Critical
Unreviewed
CVE-2014-125082
was published
Jan 18, 2023
CakePHP Database\\Query::offset() and limit() methods are vulnerable to SQL injection
Critical
CVE-2023-22727
was published
for
cakephp/cakephp
(Composer)
Jan 20, 2023
** UNSUPPPORTED WHEN ASSIGNED **** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in...
Critical
Unreviewed
CVE-2010-10007
was published
Jan 18, 2023
Jeecg-boot is vulnerable to SQL injection
Critical
CVE-2022-47105
was published
for
org.jeecgframework.boot:jeecg-boot-base-core
(Maven)
Jan 19, 2023
There is SQL Injection vulnerability at Helmet Store Showroom v1.0 Login Page. This vulnerability...
Critical
Unreviewed
CVE-2022-46071
was published
Dec 14, 2022
Luocms v2.0 is affected by SQL Injection in /admin/news/sort_mod.php.
Critical
Unreviewed
CVE-2022-24603
was published
Mar 11, 2022
Luocms v2.0 is affected by SQL Injection in /admin/news/sort_ok.php.
Critical
Unreviewed
CVE-2022-24606
was published
Mar 11, 2022
ProTip!
Advisories are also available from the
GraphQL API