GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,286
Erlang
31
GitHub Actions
21
Go
2,058
Maven
5,000+
npm
3,742
NuGet
668
pip
3,423
Pub
12
RubyGems
892
Rust
875
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
111,399 advisories
Filter by severity
Cross Site Scripting vulnerability in Audiocodes MP-202b v.4.4.3 allows a remote attacker to...
Moderate
Unreviewed
CVE-2024-48197
was published
Jan 2, 2025
Tokens in CTFd used for account activation and password resetting can be used interchangeably for...
Moderate
Unreviewed
CVE-2024-11717
was published
Jan 2, 2025
A vulnerability was found in SourceCodester Online Eyewear Shop 1.0 and classified as critical....
Moderate
Unreviewed
CVE-2025-0173
was published
Jan 2, 2025
Local privilege escalation due to excessive permissions assigned to Tray Monitor service. The...
Moderate
Unreviewed
CVE-2024-55542
was published
Jan 2, 2025
Web installer integrity check used weak hash algorithm. The following products are affected:...
Moderate
Unreviewed
CVE-2024-56414
was published
Jan 2, 2025
Missing session invalidation after user deletion. The following products are affected: Acronis...
Moderate
Unreviewed
CVE-2024-56413
was published
Jan 2, 2025
A vulnerability has been found in code-projects Chat System 1.0 and classified as critical....
Moderate
Unreviewed
CVE-2025-0172
was published
Jan 2, 2025
While assignment of a user to a team (bracket) in CTFd should be possible only once, at the...
Moderate
Unreviewed
CVE-2024-11716
was published
Jan 2, 2025
Local privilege escalation due to DLL hijacking vulnerability. The following products are...
Moderate
Unreviewed
CVE-2024-55540
was published
Jan 2, 2025
Missing Authorization vulnerability in WeyHan Ng Post Teaser.This issue affects Post Teaser: from...
Moderate
Unreviewed
CVE-2022-45811
was published
Jan 2, 2025
Missing Authorization vulnerability in Liquid Web / StellarWP GiveWP.This issue affects GiveWP:...
Moderate
Unreviewed
CVE-2023-23672
was published
Jan 2, 2025
Kentico CMS in version 7 is vulnerable to a Reflected XSS attacks through manipulation of a...
Moderate
Unreviewed
CVE-2024-12907
was published
Jan 2, 2025
Missing Authorization vulnerability in JoomUnited WP Table Manager allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2022-47601
was published
Jan 2, 2025
Missing Authorization vulnerability in 10Web 10WebAnalytics allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2023-47807
was published
Jan 2, 2025
Missing Authorization vulnerability in Porto Theme Porto Theme - Functionality allows Exploiting...
Moderate
Unreviewed
CVE-2023-48739
was published
Jan 2, 2025
Sensitive information disclosure due to insecure folder permissions. The following products are...
Moderate
Unreviewed
CVE-2024-49385
was published
Jan 2, 2025
Missing Authorization vulnerability in Repute InfoSystems ARMember Premium allows Exploiting...
Moderate
Unreviewed
CVE-2023-39994
was published
Jan 2, 2025
Missing Authorization vulnerability in IDX IMPress Listings allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2023-45633
was published
Jan 2, 2025
Missing Authorization vulnerability in LuckyWP LuckyWP Scripts Control allows Exploiting...
Moderate
Unreviewed
CVE-2023-47778
was published
Jan 2, 2025
Missing Authorization vulnerability in Xtemos WoodMart allows Exploiting Incorrectly Configured...
Moderate
Unreviewed
CVE-2023-32240
was published
Jan 2, 2025
Sensitive information disclosure due to missing authentication. The following products are...
Moderate
Unreviewed
CVE-2024-55538
was published
Jan 2, 2025
Missing Authorization vulnerability in Putler / Storeapps Putler Connector for WooCommerce.This...
Moderate
Unreviewed
CVE-2023-40327
was published
Jan 2, 2025
A vulnerability, which was classified as critical, was found in code-projects Chat System 1.0....
Moderate
Unreviewed
CVE-2025-0171
was published
Jan 2, 2025
Missing Authorization vulnerability in 10Web 10Web Map Builder for Google Maps allows Exploiting...
Moderate
Unreviewed
CVE-2023-45272
was published
Jan 2, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Uncanny Owl Uncanny Toolkit Pro for LearnDash...
Moderate
Unreviewed
CVE-2024-37438
was published
Jan 2, 2025
ProTip!
Advisories are also available from the
GraphQL API