GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,299
Erlang
31
GitHub Actions
21
Go
2,065
Maven
5,000+
npm
3,744
NuGet
668
pip
3,425
Pub
12
RubyGems
892
Rust
877
Swift
36
Unreviewed advisories
All unreviewed
5,000+
121,048 advisories
Filter by severity
Buffer overflow vulnerability in the component driver module
Impact: Successful exploitation of...
Moderate
Unreviewed
CVE-2024-56450
was published
Jan 8, 2025
Vulnerability of input parameters not being verified during glTF model loading in the 3D engine...
Moderate
Unreviewed
CVE-2024-56455
was published
Jan 8, 2025
The MDTF – Meta Data and Taxonomies Filter plugin for WordPress is vulnerable to SQL Injection...
Moderate
Unreviewed
CVE-2024-12030
was published
Jan 8, 2025
Cross-site scripting vulnerability exists in MZK-DP300N firmware versions 1.05 and earlier. If an...
Moderate
Unreviewed
CVE-2025-21603
was published
Jan 8, 2025
The Slotti Ajanvaraus plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2024-12521
was published
Jan 8, 2025
Startup control vulnerability in the ability module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2024-54121
was published
Jan 8, 2025
The SureForms – Drag and Drop Form Builder for WordPress plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-12713
was published
Jan 8, 2025
The Easy Form Builder – WordPress plugin form builder: contact form, survey form, payment form,...
Moderate
Unreviewed
CVE-2024-12112
was published
Jan 8, 2025
Vulnerability of variables not being initialized in the notification module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-56446
was published
Jan 8, 2025
Instruction authentication bypass vulnerability in the Findnetwork module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-56445
was published
Jan 8, 2025
Race condition vulnerability in the distributed notification module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-54120
was published
Jan 8, 2025
Race condition vulnerability in the Bastet module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2024-56441
was published
Jan 8, 2025
Improper Input Validation vulnerability in Management Program in TXOne Networks Portable...
Moderate
Unreviewed
CVE-2024-47934
was published
Jan 8, 2025
Vulnerability of improper authentication in the ANS system service module
Impact: Successful...
Moderate
Unreviewed
CVE-2023-52955
was published
Jan 8, 2025
Dell PowerScale OneFS versions 8.2.2.x through 9.9.0.0 contain an uncontrolled resource...
Moderate
Unreviewed
CVE-2024-47239
was published
Jan 8, 2025
Vulnerability of input parameters not being verified in the widget framework module
Impact:...
Moderate
Unreviewed
CVE-2024-56437
was published
Jan 8, 2025
Vulnerability of improper memory address protection in the HUKS module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-56438
was published
Jan 8, 2025
Permission control vulnerability in the Connectivity module
Impact: Successful exploitation of...
Moderate
Unreviewed
CVE-2024-56440
was published
Jan 8, 2025
Vulnerability of native APIs not being implemented in the NFC service module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-56442
was published
Jan 8, 2025
Cross-process screen stack vulnerability in the UIExtension module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-56443
was published
Jan 8, 2025
Vulnerability of improper permission control in the Gallery module
Impact: Successful...
Moderate
Unreviewed
CVE-2023-52954
was published
Jan 8, 2025
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to an...
Moderate
Unreviewed
CVE-2024-40679
was published
Jan 8, 2025
Path traversal vulnerability in the Medialibrary module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2023-52953
was published
Jan 8, 2025
Cross-process screen stack vulnerability in the UIExtension module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-56436
was published
Jan 8, 2025
UAF vulnerability in the device node access module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2024-56434
was published
Jan 8, 2025
ProTip!
Advisories are also available from the
GraphQL API