GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,750
Erlang
35
GitHub Actions
29
Go
2,323
Maven
5,000+
npm
3,956
NuGet
712
pip
3,739
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
121,666 advisories
Filter by severity
Missing Authorization vulnerability in WP Royal Royal Elementor Addons allows Exploiting...
Moderate
Unreviewed
CVE-2024-56227
was published
Dec 31, 2024
Missing Authorization vulnerability in Stephen Sherrard Member Directory and Contact Form allows...
Moderate
Unreviewed
CVE-2024-56215
was published
Dec 31, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-56224
was published
Dec 31, 2024
Missing Authorization vulnerability in VW THEMES VW Automobile Lite allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2024-56234
was published
Dec 31, 2024
A vulnerability was found in SourceCodester Multi Role Login System 1.0. It has been classified...
Moderate
Unreviewed
CVE-2024-13069
was published
Dec 31, 2024
Missing Authorization vulnerability in Leap13 Premium Addons for Elementor allows Accessing...
Moderate
Unreviewed
CVE-2024-56225
was published
Dec 31, 2024
Missing Authorization vulnerability in W3 Eden, Inc. Download Manager allows Exploiting...
Moderate
Unreviewed
CVE-2024-56217
was published
Dec 31, 2024
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Moderate
Unreviewed
CVE-2024-56216
was published
Dec 31, 2024
Path Traversal: '.../...//' vulnerability in Themewinter Eventin allows Path Traversal.This issue...
Moderate
Unreviewed
CVE-2024-56213
was published
Dec 31, 2024
In WhatsUp Gold versions released before 2024.0.2, an authenticated user can use a specially...
Moderate
Unreviewed
CVE-2024-12105
was published
Dec 31, 2024
Protection Mechanism Failure in bootloader prior to SMR Oct-2024 Release 1 allows physical...
Moderate
Unreviewed
CVE-2024-49422
was published
Dec 31, 2024
A vulnerability was found in CodeAstro Online Food Ordering System 1.0 and classified as critical...
Moderate
Unreviewed
CVE-2024-13067
was published
Dec 31, 2024
An issue exists in SoftIron HyperCloud
where authenticated, but non-admin users can create data...
Moderate
Unreviewed
CVE-2024-13058
was published
Dec 31, 2024
Foxit PDF Reader Link Following Local Privilege Escalation Vulnerability. This vulnerability...
Moderate
Unreviewed
CVE-2024-12753
was published
Dec 30, 2024
A vulnerability was found in Tsinghua Unigroup Electronic Archives Management System 3.2.210802...
Moderate
Unreviewed
CVE-2024-13042
was published
Dec 30, 2024
Veritas / Arctera Data Insight before 7.1.1 allows Application Administrators to conduct SQL...
Moderate
Unreviewed
CVE-2024-46542
was published
Dec 30, 2024
AnyDesk Link Following Information Disclosure Vulnerability. This vulnerability allows local...
Moderate
Unreviewed
CVE-2024-12754
was published
Dec 30, 2024
Mashov – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
Moderate
Unreviewed
CVE-2024-47923
was published
Dec 30, 2024
Infinix devices contain a pre-loaded "com.rlk.weathers" application, that exposes an unsecured...
Moderate
Unreviewed
CVE-2024-12993
was published
Dec 30, 2024
Tiki Wiki CMS – CWE-80: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic...
Moderate
Unreviewed
CVE-2024-47918
was published
Dec 30, 2024
A vulnerability was found in 1000 Projects Attendance Tracking Management System 1.0. It has been...
Moderate
Unreviewed
CVE-2024-13037
was published
Dec 30, 2024
A vulnerability was found in code-projects Simple Chat System 1.0. It has been rated as critical....
Moderate
Unreviewed
CVE-2024-13039
was published
Dec 30, 2024
A vulnerability was found in CodeAstro Simple Loan Management System 1.0. It has been declared as...
Moderate
Unreviewed
CVE-2024-13038
was published
Dec 30, 2024
A vulnerability classified as problematic has been found in Antabot White-Jotter up to 0.2.2....
Moderate
Unreviewed
CVE-2024-13031
was published
Dec 30, 2024
A vulnerability was found in code-projects Chat System 1.0 and classified as critical. This issue...
Moderate
Unreviewed
CVE-2024-13036
was published
Dec 30, 2024
ProTip!
Advisories are also available from the
GraphQL API