GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
104 advisories
Filter by severity
The Simple Download Counter plugin for WordPress is vulnerable to Arbitrary File Read in all...
Moderate
Unreviewed
CVE-2025-1730
was published
Mar 1, 2025
The account file upload functionality in Syspass 3.2.x fails to properly handle special...
Moderate
Unreviewed
CVE-2025-25478
was published
Mar 1, 2025
IBM Watson Query on Cloud Pak for Data 4.0.0 through 4.0.9, 4.5.0 through 4.5.3, 4.6.0 through 4...
Moderate
Unreviewed
CVE-2024-22341
was published
Feb 22, 2025
Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in...
Moderate
Unreviewed
CVE-2024-47265
was published
Feb 13, 2025
An unauthenticated file deletion vulnerability in the Palo Alto Networks PAN-OS management web...
Moderate
Unreviewed
CVE-2025-0109
was published
Feb 12, 2025
NTLM Hash Disclosure Spoofing Vulnerability
Moderate
Unreviewed
CVE-2025-21377
was published
Feb 11, 2025
External control of a file name in Ivanti Connect Secure before version 22.7R2.6 and Ivanti...
Moderate
Unreviewed
CVE-2024-12058
was published
Feb 11, 2025
Multiple Western Telematic (WTI) products contain a web interface that is vulnerable to a local...
Moderate
Unreviewed
CVE-2025-0630
was published
Feb 4, 2025
The Drag and Drop Multiple File Upload – Contact Form 7 plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-12267
was published
Jan 31, 2025
The W2S – Migrate WooCommerce to Shopify plugin for WordPress is vulnerable to Arbitrary File...
Moderate
Unreviewed
CVE-2024-12861
was published
Jan 30, 2025
An arbitrary file deletion vulnerability in Palo Alto Networks Expedition enables an...
Moderate
Unreviewed
CVE-2025-0105
was published
Jan 11, 2025
A vulnerability was found in Campcodes School Faculty Scheduling System 1.0 and classified as...
Moderate
Unreviewed
CVE-2025-0211
was published
Jan 4, 2025
A vulnerability was found in TCS BaNCS 10. It has been classified as problematic. This affects an...
Moderate
Unreviewed
CVE-2025-0202
was published
Jan 4, 2025
The Easy Digital Downloads – eCommerce Payments and Subscriptions made easy plugin for WordPress...
Moderate
Unreviewed
CVE-2024-12875
was published
Dec 21, 2024
A vulnerability was found in SourceCodester Best House Rental Management System 1.0 and...
Moderate
Unreviewed
CVE-2024-12357
was published
Dec 9, 2024
Keycloak Path Traversal Vulnerability Due to External Control of File Name or Path
Moderate
CVE-2024-10492
was published
for
org.keycloak:keycloak-quarkus-server
(Maven)
Nov 25, 2024
NTLM Hash Disclosure Spoofing Vulnerability
Moderate
Unreviewed
CVE-2024-43451
was published
Nov 12, 2024
The Code Explorer plugin for WordPress is vulnerable to arbitrary external file reading in all...
Moderate
Unreviewed
CVE-2023-5816
was published
Oct 30, 2024
A file overwrite vulnerability exists in gaizhenbiao/chuanhuchatgpt versions <= 20240410. This...
Moderate
Unreviewed
CVE-2024-5823
was published
Oct 29, 2024
A vulnerability was found in jeanmarc77 123solar up to 1.8.4.5. It has been rated as critical....
Moderate
Unreviewed
CVE-2024-9275
was published
Sep 27, 2024
A vulnerability was found in SourceCodester Simple Online Bidding System 1.0. It has been...
Moderate
Unreviewed
CVE-2024-7911
was published
Aug 18, 2024
Microsoft Outlook Remote Code Execution Vulnerability
Moderate
Unreviewed
CVE-2024-38173
was published
Aug 13, 2024
Windows Compressed Folder Tampering Vulnerability
Moderate
Unreviewed
CVE-2024-38165
was published
Aug 13, 2024
A vulnerability has been found in itsourcecode Airline Reservation System 1.0 and classified as...
Moderate
Unreviewed
CVE-2024-7496
was published
Aug 6, 2024
A vulnerability was found in itsourcecode Airline Reservation System 1.0 and classified as...
Moderate
Unreviewed
CVE-2024-7497
was published
Aug 6, 2024
ProTip!
Advisories are also available from the
GraphQL API