GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,825
Erlang
36
GitHub Actions
32
Go
2,419
Maven
5,000+
npm
4,055
NuGet
723
pip
3,847
Pub
12
RubyGems
934
Rust
1,006
Swift
38
Unreviewed advisories
All unreviewed
5,000+
2,940 advisories
Filter by severity
A vulnerability was found in URVE Web Manager. It has been classified as critical. This affects...
High
Unreviewed
CVE-2022-2418
was published
Jul 16, 2022
Barangay Management System v1.0 was discovered to contain an arbitrary file upload vulnerability...
High
Unreviewed
CVE-2022-34024
was published
Jul 20, 2022
A vulnerability, which was classified as critical, was found in SourceCodester Company Website...
Critical
Unreviewed
CVE-2022-2750
was published
Aug 12, 2022
IBM FileNet WorkPlace XT could allow a remote attacker to upload arbitrary files, which could...
High
Unreviewed
CVE-2016-8921
was published
May 17, 2022
IBM Security Verify Identity Manager 10.0 could allow a privileged user to upload a malicious...
Low
Unreviewed
CVE-2022-22450
was published
Jul 15, 2022
A vulnerability was found in SourceCodester Gym Management System. It has been declared as...
High
Unreviewed
CVE-2022-2749
was published
Aug 12, 2022
Unrestricted file upload vulnerability in EMC Documentum WebTop 6.7SP1 before P31, 6.7SP2 before...
Moderate
Unreviewed
CVE-2015-4524
was published
May 17, 2022
Remote file upload vulnerability in fast-image-adder v1.1 Wordpress plugin
Critical
Unreviewed
CVE-2015-1000001
was published
May 17, 2022
Unrestricted file upload vulnerability in the fileUnzip->unzip method in Dotclear before 2.10.3...
High
Unreviewed
CVE-2016-7902
was published
May 17, 2022
Feehi CMS arbitrary code execution via crafted PHP file
High
CVE-2022-34971
was published
for
feehi/cms
(Composer)
Jul 28, 2022
IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to upload arbitrary...
High
Unreviewed
CVE-2016-6124
was published
May 17, 2022
Arox School ERP Pro v1.0 was discovered to contain multiple arbitrary file upload vulnerabilities...
High
Unreviewed
CVE-2022-32119
was published
Jul 16, 2022
A vulnerability, which was classified as critical, has been found in SourceCodester Gym...
Critical
Unreviewed
CVE-2022-2744
was published
Aug 12, 2022
IBM Tivoli Key Lifecycle Manager 2.5, and 2.6 could allow a remote attacker to upload arbitrary...
High
Unreviewed
CVE-2016-6104
was published
May 17, 2022
Barangay Management System v1.0 was discovered to contain a remote code execution (RCE)...
High
Unreviewed
CVE-2022-34120
was published
Jul 28, 2022
Authenticated Arbitrary File Creation via Export function vulnerability in GiveWP's GiveWP plugin...
High
Unreviewed
CVE-2022-28700
was published
Jul 22, 2022
A vulnerability has been found in SourceCodester Simple Online Book Store System and classified...
Critical
Unreviewed
CVE-2022-2746
was published
Aug 12, 2022
A vulnerability was found in SourceCodester Company Website CMS and classified as critical....
Critical
Unreviewed
CVE-2022-2751
was published
Aug 12, 2022
In Exam Reviewer Management System 1.0, an authenticated attacker can upload a web-shell php file...
High
Unreviewed
CVE-2022-40878
was published
Sep 28, 2022
Zoo Management System v1.0 has an arbitrary file upload vulnerability in the picture upload point...
High
Unreviewed
CVE-2022-40924
was published
Sep 27, 2022
Open Source Point of Sale v3.3.7 was discovered to contain an arbitrary file upload vulnerability...
High
Unreviewed
CVE-2022-34578
was published
Jul 29, 2022
Hiby R3 PRO firmware v1.5 to v1.7 was discovered to contain a file upload vulnerability via the...
Critical
Unreviewed
CVE-2022-34496
was published
Jul 30, 2022
Unrestricted file upload vulnerability in the Document Builder in IBM Rational Publishing Engine ...
Moderate
Unreviewed
CVE-2016-2914
was published
May 17, 2022
Arbitrary file upload vulnerability in php uploader
Critical
Unreviewed
CVE-2022-40721
was published
Oct 4, 2022
Sims v1.0 was discovered to contain an arbitrary file upload vulnerability via the component ...
High
Unreviewed
CVE-2022-34549
was published
Jul 28, 2022
ProTip!
Advisories are also available from the
GraphQL API