Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

24,509 advisories

Loading
The easy-digital-downloads plugin before 2.3.3 for WordPress has SQL injection. Critical Unreviewed
CVE-2015-9324 was published May 24, 2022
Tiny File Manager v2.4.7 and below is vulnerable to session fixation. Critical Unreviewed
CVE-2022-40916 was published Feb 6, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')... Critical Unreviewed
CVE-2024-30498 was published Mar 29, 2024
Remote Code Execution Vulnerability in NPM mongo-express Critical
CVE-2019-10758 was published for mongo-express (npm) Dec 30, 2019
JLLeitschuh
Code Injection in PHPUnit Critical
CVE-2017-9841 was published for phpunit/phpunit (Composer) Mar 26, 2022
donatj
WhoDB has a path traversal opening Sqlite3 database Critical
CVE-2025-24786 was published for github.com/clidey/whodb/core (Go) Feb 6, 2025
nnsee modelorona
hkdeman
Citrix Workspace App before 1904 for Windows has Incorrect Access Control. Critical Unreviewed
CVE-2019-11634 was published May 24, 2022
ProTip! Advisories are also available from the GraphQL API