GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,233
Erlang
31
GitHub Actions
20
Go
1,992
Maven
5,000+
npm
3,709
NuGet
661
pip
3,345
Pub
11
RubyGems
884
Rust
846
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
108,693 advisories
Filter by severity
A NULL pointer dereference in the component libPdfCore.dll of Wondershare PDF Reader v1.0.9.2544...
Moderate
Unreviewed
CVE-2024-48294
was published
Nov 18, 2024
A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS...
Moderate
Unreviewed
CVE-2024-9474
was published
Nov 18, 2024
Incorrect access control in QuickHeal Antivirus Pro 24.1.0.182 and earlier allows authenticated...
Moderate
Unreviewed
CVE-2024-48293
was published
Nov 18, 2024
Cross-Site Scripting (XSS) in the "Rules" functionality in WordServer 11.8.2 allows a remote...
Moderate
Unreviewed
CVE-2024-50849
was published
Nov 18, 2024
Cross Site Scripting vulnerability in Ferozo Email version 1.1 allows a local attacker to execute...
Moderate
Unreviewed
CVE-2024-33231
was published
Nov 19, 2024
An uninitialized pointer dereference in OpenAirInterface CN5G AMF up to v2.0.0 allows attackers...
Moderate
Unreviewed
CVE-2024-24446
was published
Nov 15, 2024
In the Linux kernel, the following vulnerability has been resolved:
drm/radeon: Fix encoder-...
Moderate
Unreviewed
CVE-2024-50201
was published
Nov 8, 2024
In the Linux kernel, the following vulnerability has been resolved:
RDMA/bnxt_re: Fix a bug...
Moderate
Unreviewed
CVE-2024-50208
was published
Nov 8, 2024
A vulnerability has been found in SourceCodester Best Employee Management System 1.0 and...
Moderate
Unreviewed
CVE-2024-11214
was published
Nov 14, 2024
In the Linux kernel, the following vulnerability has been resolved:
ring-buffer: Fix reader...
Moderate
Unreviewed
CVE-2024-50207
was published
Nov 8, 2024
In the Linux kernel, the following vulnerability has been resolved:
nilfs2: propagate directory...
Moderate
Unreviewed
CVE-2024-50202
was published
Nov 8, 2024
A vulnerability, which was classified as critical, was found in SourceCodester Best Employee...
Moderate
Unreviewed
CVE-2024-11213
was published
Nov 14, 2024
In the Linux kernel, the following vulnerability has been resolved:
posix-clock: posix-clock:...
Moderate
Unreviewed
CVE-2024-50210
was published
Nov 8, 2024
Cross Site Scripting (XSS) vulnerability in PluginOps MailChimp Subscribe Forms allows Stored XSS...
Moderate
Unreviewed
CVE-2024-43211
was published
Nov 1, 2024
A vulnerability, which was classified as critical, has been found in SourceCodester Best Employee...
Moderate
Unreviewed
CVE-2024-11212
was published
Nov 14, 2024
In the Linux kernel, the following vulnerability has been resolved:
fs: don't try and remove...
Moderate
Unreviewed
CVE-2024-50204
was published
Nov 8, 2024
An HTML injection vulnerability exists where an authenticated, remote attacker with...
Moderate
Unreviewed
CVE-2024-1471
was published
Feb 15, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-51923
was published
Nov 19, 2024
Missing Authorization vulnerability in QunatumCloud Floating Buttons for WooCommerce allows...
Moderate
Unreviewed
CVE-2024-52395
was published
Nov 19, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Repute InfoSystems ARMember, Repute...
Moderate
Unreviewed
CVE-2022-47424
was published
Nov 19, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Creative Motion Disable Admin Notices...
Moderate
Unreviewed
CVE-2024-52420
was published
Nov 19, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-51928
was published
Nov 19, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-51899
was published
Nov 19, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-51883
was published
Nov 19, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-51905
was published
Nov 19, 2024
ProTip!
Advisories are also available from the
GraphQL API