GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,737
Maven
5,000+
npm
4,337
NuGet
765
pip
4,112
Pub
12
RubyGems
960
Rust
1,068
Swift
45
Unreviewed advisories
All unreviewed
5,000+
15,760 advisories
Filter by severity
LangGraph's SQLite is vulnerable to SQL injection via metadata filter key in SQLite checkpointer list method
High
GHSA-9rwj-6rc7-p77c
was published
for
langgraph-checkpoint-sqlite
(pip)
Dec 10, 2025
COMMAX Smart Home System CDP-1020n contains an SQL injection vulnerability that allows attackers...
Critical
Unreviewed
CVE-2021-47708
was published
Dec 9, 2025
OpenBMCS 2.4 contains an SQL injection vulnerability that allows authenticated attackers to...
High
Unreviewed
CVE-2021-47704
was published
Dec 9, 2025
An improper neutralization of special elements used in an sql command ('sql injection')...
High
Unreviewed
CVE-2025-64156
was published
Dec 9, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Unknown
Unreviewed
CVE-2025-67520
was published
Dec 9, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Unknown
Unreviewed
CVE-2025-67519
was published
Dec 9, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Unknown
Unreviewed
CVE-2025-67518
was published
Dec 9, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Unknown
Unreviewed
CVE-2025-67517
was published
Dec 9, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Unknown
Unreviewed
CVE-2025-67516
was published
Dec 9, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Unknown
Unreviewed
CVE-2025-62093
was published
Dec 9, 2025
A security issue was discovered in DataMosaix Private Cloud, allowing users with low privilege to...
High
Unreviewed
CVE-2025-12807
was published
Dec 9, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-12504
was published
Dec 9, 2025
SQL Injection in Frappe HelpDesk in the dashboard get_dashboard_data due to unsafe concatenation...
High
Unreviewed
CVE-2025-10655
was published
Dec 9, 2025
SQL injection vulnerability in /php/api_patient_schedule.php in SourceCodester Patients Waiting...
Critical
Unreviewed
CVE-2025-64081
was published
Dec 8, 2025
A vulnerability has been found in itsourcecode Student Management System 1.0. Affected by this...
Moderate
Unreviewed
CVE-2025-14258
was published
Dec 8, 2025
A security vulnerability has been detected in code-projects Online Ordering System 1.0. This...
Moderate
Unreviewed
CVE-2025-14251
was published
Dec 8, 2025
A flaw has been found in itsourcecode Student Management System 1.0. Affected is an unknown...
Moderate
Unreviewed
CVE-2025-14257
was published
Dec 8, 2025
A vulnerability was detected in itsourcecode Student Management System 1.0. This impacts an...
Moderate
Unreviewed
CVE-2025-14256
was published
Dec 8, 2025
A vulnerability was found in code-projects Simple Shopping Cart 1.0. This vulnerability affects...
Moderate
Unreviewed
CVE-2025-14246
was published
Dec 8, 2025
A vulnerability was identified in code-projects Simple Shopping Cart 1.0. Impacted is an unknown...
Moderate
Unreviewed
CVE-2025-14248
was published
Dec 8, 2025
A vulnerability was determined in code-projects Simple Shopping Cart 1.0. This issue affects some...
Moderate
Unreviewed
CVE-2025-14247
was published
Dec 8, 2025
Vitals ESP developed by Galaxy Software Services has a SQL Injection vulnerability, allowing...
High
Unreviewed
CVE-2025-14254
was published
Dec 8, 2025
Vitals ESP developed by Galaxy Software Services has a SQL Injection vulnerability, allowing...
High
Unreviewed
CVE-2025-14255
was published
Dec 8, 2025
A vulnerability has been found in itsourcecode Student Information System 1.0. This affects an...
Moderate
Unreviewed
CVE-2025-14214
was published
Dec 8, 2025
The Tag, Category, and Taxonomy Manager – AI Autotagger with OpenAI plugin for WordPress is...
Moderate
Unreviewed
CVE-2025-13922
was published
Dec 6, 2025
ProTip!
Advisories are also available from the
GraphQL API