GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,286
Erlang
31
GitHub Actions
21
Go
2,058
Maven
5,000+
npm
3,742
NuGet
668
pip
3,423
Pub
12
RubyGems
892
Rust
875
Swift
36
Unreviewed advisories
All unreviewed
5,000+
120,530 advisories
Filter by severity
Missing Authorization vulnerability in 10Web 10Web Map Builder for Google Maps allows Exploiting...
Moderate
Unreviewed
CVE-2023-45272
was published
Jan 2, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Uncanny Owl Uncanny Toolkit Pro for LearnDash...
Moderate
Unreviewed
CVE-2024-37438
was published
Jan 2, 2025
Missing Authorization vulnerability in Analytify.This issue affects Analytify: from n/a through 4...
Moderate
Unreviewed
CVE-2022-45830
was published
Jan 2, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Creativthemes Point allows Cross Site Request...
Moderate
Unreviewed
CVE-2024-37931
was published
Jan 2, 2025
Missing Authorization vulnerability in Daniel Söderström / Sidney van de Stouwe Subscribe to...
Moderate
Unreviewed
CVE-2022-43476
was published
Jan 2, 2025
A vulnerability classified as problematic has been found in Beijing Yunfan Internet Technology...
Moderate
Unreviewed
CVE-2024-13110
was published
Jan 2, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Automattic WP Job Manager - Resume Manager...
Moderate
Unreviewed
CVE-2024-37241
was published
Jan 2, 2025
Cross-Site Request Forgery (CSRF) vulnerability in BUDDYBOSS LLC BuddyBoss Theme allows Cross...
Moderate
Unreviewed
CVE-2024-37925
was published
Jan 2, 2025
Cross-Site Request Forgery (CSRF) vulnerability in VolThemes Patricia Blog allows Cross Site...
Moderate
Unreviewed
CVE-2024-38732
was published
Jan 2, 2025
Cross-Site Request Forgery (CSRF) vulnerability in MyThemeShop Schema Lite allows Cross Site...
Moderate
Unreviewed
CVE-2024-37452
was published
Jan 2, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Marsian i-amaze allows Cross Site Request...
Moderate
Unreviewed
CVE-2024-38731
was published
Jan 2, 2025
Missing Authorization vulnerability in Galleryape Gallery Images Ape allows Exploiting...
Moderate
Unreviewed
CVE-2022-41995
was published
Jan 2, 2025
A vulnerability classified as critical was found in Beijing Yunfan Internet Technology Yunfan...
Moderate
Unreviewed
CVE-2024-13111
was published
Jan 2, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Marsian allows Cross Site Request Forgery.This...
Moderate
Unreviewed
CVE-2024-38764
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-56257
was published
Jan 2, 2025
A vulnerability was found in Beijing Yunfan Internet Technology Yunfan Learning Examination...
Moderate
Unreviewed
CVE-2024-13109
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-56268
was published
Jan 2, 2025
A vulnerability was found in D-Link DIR-816 A2 1.10CNB05_R1B011D88210. It has been declared as...
Moderate
Unreviewed
CVE-2024-13108
was published
Jan 2, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Epsiloncool WP Fast Total Search.This issue...
Moderate
Unreviewed
CVE-2024-38778
was published
Jan 2, 2025
Cross-Site Request Forgery (CSRF) vulnerability in FS-code FS Poster allows Cross Site Request...
Moderate
Unreviewed
CVE-2024-37237
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-56302
was published
Jan 2, 2025
Missing Authorization vulnerability in Sonaar Music MP3 Audio Player for Music, Radio & Podcast...
Moderate
Unreviewed
CVE-2024-56266
was published
Jan 2, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in Beee ACF City Selector allows...
Moderate
Unreviewed
CVE-2024-56264
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-56258
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-56252
was published
Jan 2, 2025
ProTip!
Advisories are also available from the
GraphQL API