GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,876
Erlang
37
GitHub Actions
36
Go
2,522
Maven
5,000+
npm
4,176
NuGet
741
pip
3,965
Pub
12
RubyGems
947
Rust
1,028
Swift
39
Unreviewed advisories
All unreviewed
5,000+
3,048 advisories
Filter by severity
The MasterStudy LMS Pro plugin for WordPress is vulnerable to arbitrary file uploads due to...
High
Unreviewed
CVE-2025-7438
was published
Jul 18, 2025
A vulnerability, which was classified as critical, has been found in code-projects Simple Car...
Moderate
Unreviewed
CVE-2025-7477
was published
Jul 12, 2025
The Front End Editor plugin for WordPress is vulnerable to arbitrary file uploads due to missing...
Critical
Unreviewed
CVE-2012-10019
was published
Jul 19, 2025
The WPshop 2 – E-Commerce plugin for WordPress is vulnerable to arbitrary file uploads due to...
Critical
Unreviewed
CVE-2015-10135
was published
Jul 19, 2025
The Work The Flow File Upload plugin for WordPress is vulnerable to arbitrary file uploads due to...
Critical
Unreviewed
CVE-2015-10138
was published
Jul 19, 2025
The WP Mobile Detector plugin for WordPress is vulnerable to arbitrary file uploads due to...
Critical
Unreviewed
CVE-2016-15043
was published
Jul 19, 2025
CWE-434 Unrestricted Upload of File with Dangerous Type
High
Unreviewed
CVE-2025-46384
was published
Jul 20, 2025
WinMatrix3 Web package developed by Simopro Technology has an Arbitrary File Upload vulnerability...
High
Unreviewed
CVE-2025-7917
was published
Jul 21, 2025
Dell AppSync, version(s) 4.6.0.0, contains an Unrestricted Upload of File with Dangerous Type...
Moderate
Unreviewed
CVE-2025-32744
was published
Jul 21, 2025
The Website Contact Form With File Upload plugin for WordPress is vulnerable to arbitrary file...
Critical
Unreviewed
CVE-2015-10137
was published
Jul 22, 2025
The FoxyPress plugin for WordPress is vulnerable to arbitrary file uploads due to missing file...
Critical
Unreviewed
CVE-2012-10020
was published
Jul 22, 2025
Sitecore PowerShell Extensions, an add-on to Sitecore Experience Manager (XM) and Experience...
High
Unreviewed
CVE-2025-34511
was published
Jun 17, 2025
nova-tiptap has Unauthenticated Arbitrary File Upload Vulnerability
Critical
CVE-2025-54082
was published
for
manogi/nova-tiptap
(Composer)
Jul 21, 2025
A vulnerability in the API of Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity...
Moderate
Unreviewed
CVE-2025-20130
was published
Jun 4, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9...
Critical
Unreviewed
CVE-2025-54444
was published
Jul 23, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9...
High
Unreviewed
CVE-2025-54447
was published
Jul 23, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9...
Critical
Unreviewed
CVE-2025-54448
was published
Jul 23, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9...
High
Unreviewed
CVE-2025-54441
was published
Jul 23, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9...
High
Unreviewed
CVE-2025-54439
was published
Jul 23, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9...
Critical
Unreviewed
CVE-2025-54449
was published
Jul 23, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9...
Critical
Unreviewed
CVE-2025-54440
was published
Jul 23, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9...
Critical
Unreviewed
CVE-2025-54442
was published
Jul 23, 2025
In Pluck CMS 4.7.20-dev, an authenticated attacker can upload or create a crafted PHP file under...
High
Unreviewed
CVE-2025-46099
was published
Jul 23, 2025
An authenticated arbitrary file upload vulnerability exists in the SMA 100 series web management...
Critical
Unreviewed
CVE-2025-40599
was published
Jul 23, 2025
simogeo/filemanager arbitrary file upload vulnerability
Critical
CVE-2025-46001
was published
for
simogeo/filemanager
(Composer)
Jul 18, 2025
ProTip!
Advisories are also available from the
GraphQL API