GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,285
Erlang
31
GitHub Actions
21
Go
2,057
Maven
5,000+
npm
3,742
NuGet
668
pip
3,422
Pub
12
RubyGems
892
Rust
875
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
94,027 advisories
Filter by severity
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-56029
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-56028
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-56032
was published
Jan 2, 2025
An unintended entry point vulnerability has been identified in certain router models, which may...
High
Unreviewed
CVE-2024-13062
was published
Jan 2, 2025
An improper input insertion vulnerability in AiCloud on certain router models may lead to...
High
Unreviewed
CVE-2024-12912
was published
Jan 2, 2025
A widget local file inclusion vulnerability in Trend Micro Apex One could allow a remote attacker...
High
Unreviewed
CVE-2024-52047
was published
Dec 31, 2024
A LogServer link following vulnerability in Trend Micro Apex One could allow a local attacker to...
High
Unreviewed
CVE-2024-52049
was published
Dec 31, 2024
A LogServer arbitrary file creation vulnerability in Trend Micro Apex One could allow a local...
High
Unreviewed
CVE-2024-52050
was published
Dec 31, 2024
A LogServer link following vulnerability in Trend Micro Apex One could allow a local attacker to...
High
Unreviewed
CVE-2024-52048
was published
Dec 31, 2024
A security agent link following vulnerability in Trend Micro Apex One could allow a local...
High
Unreviewed
CVE-2024-55632
was published
Dec 31, 2024
An origin validation error vulnerability in Trend Micro Apex One could allow a local attacker to...
High
Unreviewed
CVE-2024-55917
was published
Dec 31, 2024
An engine link following vulnerability in Trend Micro Apex One could allow a local attacker to...
High
Unreviewed
CVE-2024-55631
was published
Dec 31, 2024
A flaw was found in FFmpeg's HLS playlist parsing. This vulnerability allows a denial of service...
High
Unreviewed
CVE-2023-6603
was published
Dec 31, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Amarjeet Amar allows Authentication Bypass...
High
Unreviewed
CVE-2024-56206
was published
Dec 31, 2024
Cross-Site Request Forgery (CSRF) vulnerability in EditionGuard Dev Team EditionGuard for...
High
Unreviewed
CVE-2024-56207
was published
Dec 31, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Yonatan Reinberg of Social Ink Sinking...
High
Unreviewed
CVE-2024-56204
was published
Dec 31, 2024
Missing Authorization vulnerability in Webful Creations Computer Repair Shop allows Privilege...
High
Unreviewed
CVE-2024-56061
was published
Dec 31, 2024
Cross-Site Request Forgery (CSRF) vulnerability in George Holmes II Wayne Audio Player allows...
High
Unreviewed
CVE-2024-56203
was published
Dec 31, 2024
Missing Authorization vulnerability in Azzaroco WP SuperBackup allows Exploiting Incorrectly...
High
Unreviewed
CVE-2024-56070
was published
Dec 31, 2024
Deserialization of Untrusted Data vulnerability in Azzaroco WP SuperBackup.This issue affects WP...
High
Unreviewed
CVE-2024-56068
was published
Dec 31, 2024
Missing Authorization vulnerability in Azzaroco WP SuperBackup allows Exploiting Incorrectly...
High
Unreviewed
CVE-2024-56067
was published
Dec 31, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-56041
was published
Dec 31, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-56265
was published
Dec 31, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-56209
was published
Dec 31, 2024
Missing Authorization vulnerability in DeluxeThemes Userpro.This issue affects Userpro: from n/a...
High
Unreviewed
CVE-2024-56211
was published
Dec 31, 2024
ProTip!
Advisories are also available from the
GraphQL API