GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,757
Erlang
35
GitHub Actions
29
Go
2,327
Maven
5,000+
npm
3,960
NuGet
712
pip
3,741
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
14,473 advisories
Filter by severity
D-Link Online behavior audit gateway DAR-7000 V31R02B1413C is vulnerable to SQL Injection via ...
Critical
Unreviewed
CVE-2023-44693
was published
Oct 17, 2023
D-Link Online behavior audit gateway DAR-7000 V31R02B1413C is vulnerable to SQL Injection via ...
Critical
Unreviewed
CVE-2023-44694
was published
Oct 17, 2023
nocodb SQL Injection vulnerability
Moderate
CVE-2023-43794
was published
for
nocodb
(npm)
Oct 17, 2023
lylme_spage v1.7.0 was discovered to contain a SQL injection vulnerability via the $userip...
Critical
Unreviewed
CVE-2023-45951
was published
Oct 17, 2023
Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the...
Critical
Unreviewed
CVE-2023-46005
was published
Oct 18, 2023
Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the...
Critical
Unreviewed
CVE-2023-46006
was published
Oct 18, 2023
Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the...
Critical
Unreviewed
CVE-2023-46007
was published
Oct 18, 2023
The iPanorama 360 – WordPress Virtual Tour Builder plugin for WordPress is vulnerable to SQL...
Moderate
Unreviewed
CVE-2023-5336
was published
Oct 19, 2023
The ChatBot plugin for WordPress is vulnerable to SQL Injection via the $strid parameter in...
High
Unreviewed
CVE-2023-5204
was published
Oct 19, 2023
In the module "Rotator Img" (posrotatorimg) in versions at least up to 1.1 from PosThemes for...
Critical
Unreviewed
CVE-2023-45379
was published
Oct 19, 2023
DM Concept configurator before v4.9.4 was discovered to contain a SQL injection vulnerability via...
Critical
Unreviewed
CVE-2023-43986
was published
Oct 19, 2023
In the module "Creative Popup" (creativepopup) up to version 1.6.9 from WebshopWorks for...
Critical
Unreviewed
CVE-2023-45381
was published
Oct 19, 2023
In the module "Carousels Pack - Instagram, Products, Brands, Supplier" (hicarouselspack) for...
Critical
Unreviewed
CVE-2023-45376
was published
Oct 19, 2023
The Slimstat Analytics plugin for WordPress is vulnerable to SQL Injection via the plugin's...
Moderate
Unreviewed
CVE-2023-4598
was published
Oct 20, 2023
The Cyr to Lat plugin for WordPress is vulnerable to authenticated SQL Injection via the ...
High
Unreviewed
CVE-2022-4290
was published
Oct 20, 2023
The Horizontal scrolling announcement plugin for WordPress is vulnerable to SQL Injection via the...
High
Unreviewed
CVE-2023-4999
was published
Oct 20, 2023
Sitolog sitologapplicationconnect v7.8.a and before was discovered to contain a SQL injection...
Critical
Unreviewed
CVE-2023-37824
was published
Oct 20, 2023
A vulnerability has been found in Tongda OA 2017 and classified as critical. This vulnerability...
Moderate
Unreviewed
CVE-2023-5682
was published
Oct 20, 2023
A vulnerability, which was classified as critical, was found in Netentsec NS-ASG Application...
Moderate
Unreviewed
CVE-2023-5681
was published
Oct 20, 2023
Langchain SQL Injection vulnerability
Critical
CVE-2023-32785
was published
for
langchain
(pip)
Oct 21, 2023
An issue was discovered in SuperWebMailer 9.00.0.01710. It allows Export SQL Injection via the...
High
Unreviewed
CVE-2023-38190
was published
Oct 21, 2023
A vulnerability, which was classified as critical, was found in Netentsec NS-ASG Application...
Moderate
Unreviewed
CVE-2023-5700
was published
Oct 23, 2023
A vulnerability was found in CodeAstro Internet Banking System 1.0 and classified as critical....
Moderate
Unreviewed
CVE-2023-5693
was published
Oct 23, 2023
Unauthenticated SQL injection in the GetExcursionList method in IDAttend’s IDWeb application 3.1...
Critical
Unreviewed
CVE-2023-26572
was published
Oct 25, 2023
Unauthenticated SQL injection in the GetStudentGroupStudents method in IDAttend’s IDWeb...
Critical
Unreviewed
CVE-2023-26568
was published
Oct 25, 2023
ProTip!
Advisories are also available from the
GraphQL API