GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,231
Erlang
31
GitHub Actions
20
Go
1,991
Maven
5,000+
npm
3,709
NuGet
661
pip
3,341
Pub
11
RubyGems
884
Rust
846
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
20,543 advisories
Filter by severity
The Really Simple Security (Free, Pro, and Pro Multisite) plugins for WordPress are vulnerable to...
Critical
Unreviewed
CVE-2024-10924
was published
Nov 15, 2024
In lunary-ai/lunary versions up to and including 1.2.5, an information disclosure vulnerability...
Critical
Unreviewed
CVE-2024-3502
was published
Nov 14, 2024
In lunary-ai/lunary versions up to and including 1.2.5, an information disclosure vulnerability...
Critical
Unreviewed
CVE-2024-3501
was published
Nov 14, 2024
An issue in Vehicle Management System 7.31.0.3_20230412 allows an attacker to escalate privileges...
Critical
Unreviewed
CVE-2024-30802
was published
May 14, 2024
An attacker was able to achieve code execution in the content process by exploiting a use-after...
Critical
Unreviewed
CVE-2024-9680
was published
Oct 9, 2024
sunniwell HT3300 before 1.0.0.B022.2 is vulnerable to Insecure Permissions. The /usr/local/bin...
Critical
Unreviewed
CVE-2024-48073
was published
Nov 9, 2024
An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated...
Critical
Unreviewed
CVE-2024-0012
was published
Nov 18, 2024
miniupnp before 4c90b87, as used in Bitcoin Core before 0.12 and other products, lacks checks for...
Critical
Unreviewed
CVE-2015-20111
was published
Nov 18, 2024
An issue in EQ Enterprise Management System before v2.0.0 allows attackers to execute a directory...
Critical
Unreviewed
CVE-2024-44761
was published
Aug 28, 2024
A SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input...
Critical
Unreviewed
CVE-2023-29245
was published
Sep 19, 2023
Unrestricted Upload of File with Dangerous Type vulnerability in Anton Hoelstad WP Quick Setup...
Critical
Unreviewed
CVE-2024-52429
was published
Nov 18, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-52431
was published
Nov 18, 2024
Improper Neutralization of Special Elements Used in a Template Engine vulnerability in Saso...
Critical
Unreviewed
CVE-2024-52427
was published
Nov 18, 2024
Deserialization of Untrusted Data vulnerability in NIX Solutions Ltd NIX Anti-Spam Light allows...
Critical
Unreviewed
CVE-2024-52432
was published
Nov 18, 2024
Deserialization of Untrusted Data vulnerability in Mindstien Technologies My Geo Posts Free...
Critical
Unreviewed
CVE-2024-52433
was published
Nov 18, 2024
Deserialization of Untrusted Data vulnerability in Lis Lis Video Gallery allows Object Injection...
Critical
Unreviewed
CVE-2024-52430
was published
Nov 18, 2024
Improper Neutralization of Special Elements Used in a Template Engine vulnerability in Supsystic...
Critical
Unreviewed
CVE-2024-52434
was published
Nov 18, 2024
The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of...
Critical
Unreviewed
CVE-2024-11312
was published
Nov 18, 2024
The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of...
Critical
Unreviewed
CVE-2024-11313
was published
Nov 18, 2024
The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of...
Critical
Unreviewed
CVE-2024-11311
was published
Nov 18, 2024
The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of...
Critical
Unreviewed
CVE-2024-11315
was published
Nov 18, 2024
The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of...
Critical
Unreviewed
CVE-2024-11314
was published
Nov 18, 2024
A flaw was found in GNOME Maps, which is vulnerable to a code injection attack via its service...
Critical
Unreviewed
CVE-2023-43091
was published
Nov 17, 2024
Deserialization of Untrusted Data vulnerability in DMC Airin Blog allows Object Injection.This...
Critical
Unreviewed
CVE-2024-52413
was published
Nov 17, 2024
Deserialization of Untrusted Data vulnerability in Anthony Carbon WDES Responsive Mobile Menu...
Critical
Unreviewed
CVE-2024-52414
was published
Nov 17, 2024
ProTip!
Advisories are also available from the
GraphQL API