GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,781
Maven
5,000+
npm
4,386
NuGet
772
pip
4,164
Pub
12
RubyGems
965
Rust
1,073
Swift
45
Unreviewed advisories
All unreviewed
5,000+
15,903 advisories
Filter by severity
CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
High
Unreviewed
CVE-2025-55065
was published
Jan 1, 2026
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-28949
was published
Dec 31, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-30628
was published
Dec 31, 2025
NLB mKlik Macedonia 3.3.12 contains a SQL injection vulnerability in international transfer...
High
Unreviewed
CVE-2023-54163
was published
Dec 31, 2025
SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x contains an SQL injection vulnerability in the 'username'...
High
Unreviewed
CVE-2022-50694
was published
Dec 31, 2025
A flaw has been found in itsourcecode Society Management System 1.0. The affected element is an...
Moderate
Unreviewed
CVE-2025-15354
was published
Dec 30, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-59129
was published
Dec 30, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-68990
was published
Dec 30, 2025
A vulnerability was detected in code-projects Refugee Food Management System 1.0. This issue...
Moderate
Unreviewed
CVE-2025-15212
was published
Dec 30, 2025
A flaw has been found in code-projects Refugee Food Management System 1.0. Impacted is an unknown...
Moderate
Unreviewed
CVE-2025-15211
was published
Dec 30, 2025
A security vulnerability has been detected in code-projects Refugee Food Management System 1.0....
Moderate
Unreviewed
CVE-2025-15210
was published
Dec 30, 2025
In NagiosXI 2026R1.0.1 build 1762361101, Dashboard parameters lack proper filtering, allowing any...
High
Unreviewed
CVE-2025-67255
was published
Dec 29, 2025
Time-based blind SQL Injection vulnerability in Cloudlog v2.6.15 at the endpoint /index.php...
Critical
Unreviewed
CVE-2024-44065
was published
Dec 26, 2025
SQL injection vulnerability in krishanmuraiji SMS v.1.0, within the /studentms/admin/edit-class...
Moderate
Unreviewed
CVE-2025-66947
was published
Dec 26, 2025
Riello UPS NetMan 208 Application before 1.12 allows cgi-bin/login.cgi username SQL Injection....
Moderate
Unreviewed
CVE-2025-68914
was published
Dec 24, 2025
SOCA Access Control System 180612 contains multiple SQL injection vulnerabilities that allow...
Critical
Unreviewed
CVE-2018-25128
was published
Dec 24, 2025
MyNET up to v26.08.316 was discovered to contain an Unauthenticated SQL Injection vulnerability...
Moderate
Unreviewed
CVE-2024-39037
was published
Dec 24, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-68570
was published
Dec 24, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-68590
was published
Dec 24, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-68496
was published
Dec 24, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-68519
was published
Dec 24, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2023-36525
was published
Dec 24, 2025
Improper input handling in /Grocery/search_products_itname.php inPuneethReddyHC event-management...
Critical
Unreviewed
CVE-2025-65354
was published
Dec 23, 2025
PMB 7.4.6 contains a SQL injection vulnerability in the storage parameter of the ajax.php...
Critical
Unreviewed
CVE-2023-53982
was published
Dec 23, 2025
Orangescrum 1.8.0 contains an authenticated SQL injection vulnerability that allows authorized...
High
Unreviewed
CVE-2021-47720
was published
Dec 23, 2025
ProTip!
Advisories are also available from the
GraphQL API