GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
22
Go
2,095
Maven
5,000+
npm
3,760
NuGet
678
pip
3,446
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
920 advisories
Filter by severity
Delinea addressed a reported case on Secret Server v11.7.31 (protocol handler version 6.0.3.26)...
Moderate
Unreviewed
CVE-2024-12908
was published
Dec 26, 2024
The The Ninja Forms – The Contact Form Builder That Grows With You plugin for WordPress is...
Moderate
Unreviewed
CVE-2024-12238
was published
Dec 29, 2024
A flaw was found in FFmpeg. This vulnerability allows unexpected additional CPU load and storage...
Moderate
Unreviewed
CVE-2023-6604
was published
Jan 6, 2025
A flaw was found in FFmpeg's HLS demuxer. This vulnerability allows bypassing unsafe file...
Moderate
Unreviewed
CVE-2023-6601
was published
Jan 6, 2025
The The Design for Contact Form 7 Style WordPress Plugin – CF7 WOW Styler plugin for WordPress is...
Moderate
Unreviewed
CVE-2024-12419
was published
Jan 7, 2025
A vulnerability was found in code-projects Online Book Shop 1.0 and classified as problematic....
Moderate
Unreviewed
CVE-2025-0295
was published
Jan 7, 2025
Vulnerability of improper access control in the home screen widget module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-56448
was published
Jan 8, 2025
There is an HTML injection vulnerability in Esri Portal for ArcGIS <=11.0 that may allow a remote...
Moderate
Unreviewed
CVE-2024-25706
was published
Apr 4, 2024
A vulnerability was found in PbootCMS up to 3.2.3. It has been classified as critical. This...
Moderate
Unreviewed
CVE-2024-12789
was published
Dec 19, 2024
There is a MEDIUM severity vulnerability affecting CPython.
The
email module didn’t properly...
Moderate
Unreviewed
CVE-2024-6923
was published
Aug 1, 2024
MonicaHQ v4.1.2 was discovered to contain a Client-Side Injection vulnerability via the last_name...
Moderate
Unreviewed
CVE-2024-54999
was published
Jan 13, 2025
In Code-Projects Online Car Rental System 1.0, the file upload feature does not validate file...
Moderate
Unreviewed
CVE-2024-57487
was published
Jan 13, 2025
MonicaHQ v4.1.1 was discovered to contain an authenticated Client-Side Injection vulnerability...
Moderate
Unreviewed
CVE-2024-54997
was published
Jan 10, 2025
SAP BusinessObjects Business Intelligence Platform allows an authenticated user with restricted...
Moderate
Unreviewed
CVE-2025-0060
was published
Jan 14, 2025
Aterm WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG1200HP2,...
Moderate
Unreviewed
CVE-2024-28005
was published
Mar 28, 2024
dom-iterator code execution vulnerability
Moderate
CVE-2024-21541
was published
for
dom-iterator
(npm)
Nov 13, 2024
The The Motors – Car Dealer, Classifieds & Listing plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-10970
was published
Jan 16, 2025
Direct code injection vulnerability in CuteNews 1.3.6 and earlier allows remote attackers with...
Moderate
Unreviewed
CVE-2005-1876
was published
May 1, 2022
** DISPUTED ** PHP remote file inclusion vulnerability in centipaid_class.php in CentiPaid 1.4.3...
Moderate
Unreviewed
CVE-2006-6975
was published
May 1, 2022
A improper neutralization of special elements used in a template engine [CWE-1336] in...
Moderate
Unreviewed
CVE-2023-47542
was published
Apr 9, 2024
ProTip!
Advisories are also available from the
GraphQL API