GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
6,175 advisories
Filter by severity
By sending a specially crafted push message, a remote server could have hung the parent process,...
High
Unreviewed
CVE-2024-10466
was published
Oct 29, 2024
MRCMS 3.1.2 contains a SQL injection vulnerability via the RID parameter in /admin/article/delete...
High
Unreviewed
CVE-2024-48177
was published
Oct 28, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-50465
was published
Oct 28, 2024
Deserialization of Untrusted Data vulnerability in Kiboko Labs Namaste! LMS allows Object...
High
Unreviewed
CVE-2024-50408
was published
Oct 28, 2024
A SQL injection vulnerability in Sourcecodester Packers and Movers Management System v1.0 allows...
High
Unreviewed
CVE-2024-48427
was published
Oct 24, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-49691
was published
Oct 24, 2024
Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to SQL Injection in the...
High
Unreviewed
CVE-2024-5608
was published
Oct 24, 2024
SQL Injection vulnerability in hospital management system in php with source code v.1.0.0 allows...
High
Unreviewed
CVE-2024-48657
was published
Oct 23, 2024
An modOSCE SQL Injection vulnerability in Trend Micro Apex One could allow a remote attacker to...
High
Unreviewed
CVE-2024-39753
was published
Oct 22, 2024
A vulnerability in Trend Micro Deep Discovery Inspector (DDI) versions 5.8 and above could allow...
High
Unreviewed
CVE-2024-46902
was published
Oct 22, 2024
Client Management System 1.0 was discovered to contain a SQL injection vulnerability via the...
High
Unreviewed
CVE-2024-48570
was published
Oct 22, 2024
A post-authentication SQL Injection vulnerability within the filters parameter of the extensions...
High
Unreviewed
CVE-2024-9987
was published
Oct 22, 2024
A vulnerability in the Suite Applications Services component of Mitel MiCollab through 9.7.1.110...
High
Unreviewed
CVE-2024-30157
was published
Oct 21, 2024
A vulnerability in the web conferencing component of Mitel MiCollab through 9.7.1.110 could allow...
High
Unreviewed
CVE-2024-30158
was published
Oct 21, 2024
Online Clinic Management System v1.0 was discovered to contain a SQL injection vulnerability via...
High
Unreviewed
CVE-2024-48597
was published
Oct 21, 2024
The API Interface of the AWV (Audio, Web and Video Conferencing) component of Mitel MiCollab...
High
Unreviewed
CVE-2024-47189
was published
Oct 21, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-47328
was published
Oct 21, 2024
The TS Poll WordPress plugin before 2.4.0 does not sanitize and escape a parameter before using...
High
Unreviewed
CVE-2024-8625
was published
Oct 21, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-49613
was published
Oct 20, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-49616
was published
Oct 20, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-49614
was published
Oct 20, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-49618
was published
Oct 20, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-49619
was published
Oct 20, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-49620
was published
Oct 20, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-49612
was published
Oct 20, 2024
ProTip!
Advisories are also available from the
GraphQL API