GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
8,846 advisories
Filter by severity
In Splunk Enterprise versions below 9.3.0, 9.2.4, and 9.1.7 and Splunk Cloud Platform versions...
Low
Unreviewed
CVE-2024-53245
was published
Dec 10, 2024
The Simple Restrict plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
Moderate
Unreviewed
CVE-2024-11106
was published
Dec 10, 2024
The WP Private Content Plus plugin for WordPress is vulnerable to Sensitive Information Exposure...
Moderate
Unreviewed
CVE-2024-11292
was published
Dec 6, 2024
A vulnerability was found in Guangzhou Huayi Intelligent Technology Jeewms 3.7. It has been rated...
Moderate
Unreviewed
CVE-2024-11961
was published
Nov 28, 2024
Zohocorp ManageEngine Analytics Plus versions below 6100 are vulnerable to authenticated...
High
Unreviewed
CVE-2024-52323
was published
Nov 27, 2024
The ProfilePress plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
Moderate
Unreviewed
CVE-2024-11083
was published
Nov 27, 2024
Information disclosure due to uninitialized variable.
High
Unreviewed
CVE-2017-18306
was published
Nov 26, 2024
Information disclosure possible while audio playback.
High
Unreviewed
CVE-2017-18307
was published
Nov 26, 2024
The Jeg Elementor Kit plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
Moderate
Unreviewed
CVE-2024-8899
was published
Nov 26, 2024
The Increase Maximum Upload File Size | Increase Execution Time plugin for WordPress is...
Moderate
Unreviewed
CVE-2024-11265
was published
Nov 23, 2024
ChargePoint Home Flex Bluetooth Low Energy Information Disclosure Vulnerability. This...
Low
Unreviewed
CVE-2024-7391
was published
Nov 23, 2024
An exposure of sensitive information vulnerability has been reported to affect QNAP AI Core. If...
High
Unreviewed
CVE-2024-38647
was published
Nov 22, 2024
The Sky Addons for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure...
Moderate
Unreviewed
CVE-2024-9542
was published
Nov 22, 2024
Local File Inclusion vulnerability in Vegam Solutions Vegam 4i v.6.3.47.0 and earlier allows a...
High
Unreviewed
CVE-2024-51163
was published
Nov 20, 2024
The The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu,...
Moderate
Unreviewed
CVE-2024-10365
was published
Nov 20, 2024
A vulnerability in the Admin portal of Cisco Identity Services Engine (ISE) could allow an...
Moderate
Unreviewed
CVE-2020-3525
was published
Nov 18, 2024
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache HertzBeat.
...
High
Unreviewed
CVE-2024-45791
was published
Nov 18, 2024
A vulnerability in a debug function for Cisco RCM for Cisco StarOS Software could allow...
Moderate
Unreviewed
CVE-2022-20648
was published
Nov 15, 2024
The Essential Addons for Elementor – Best Elementor Addon, Templates, Widgets, Kits & WooCommerce...
Moderate
Unreviewed
CVE-2024-8978
was published
Nov 15, 2024
The Essential Addons for Elementor – Best Elementor Addon, Templates, Widgets, Kits & WooCommerce...
High
Unreviewed
CVE-2024-8979
was published
Nov 15, 2024
In lunary-ai/lunary versions up to and including 1.2.5, an information disclosure vulnerability...
Critical
Unreviewed
CVE-2024-3502
was published
Nov 14, 2024
In lunary-ai/lunary versions up to and including 1.2.5, an information disclosure vulnerability...
Critical
Unreviewed
CVE-2024-3501
was published
Nov 14, 2024
VaeMendis - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
High
Unreviewed
CVE-2024-47915
was published
Nov 14, 2024
Improper access control in the Password History feature in Devolutions DVLS 2024.3.6 and earlier...
Moderate
Unreviewed
CVE-2024-10971
was published
Nov 12, 2024
A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected...
Moderate
Unreviewed
CVE-2024-46894
was published
Nov 12, 2024
ProTip!
Advisories are also available from the
GraphQL API