GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,300
Erlang
31
GitHub Actions
21
Go
2,065
Maven
5,000+
npm
3,744
NuGet
668
pip
3,427
Pub
12
RubyGems
892
Rust
877
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
94,273 advisories
Filter by severity
A vulnerability classified as critical has been found in REVE Antivirus 1.0.0.0 on Linux. This...
High
Unreviewed
CVE-2024-13206
was published
Jan 9, 2025
A vulnerability was found in Ruby. The Ruby interpreter is vulnerable to the Marvin Attack. This...
High
Unreviewed
CVE-2025-0306
was published
Jan 9, 2025
Due to the improper handling of batch files in child_process.spawn / child_process.spawnSync, a...
High
Unreviewed
CVE-2024-27980
was published
Jan 9, 2025
A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy...
High
Unreviewed
CVE-2025-0283
was published
Jan 9, 2025
SourceCodester Computer Laboratory Management System 1.0 is vulnerable to Incorrect Access...
High
Unreviewed
CVE-2024-54818
was published
Jan 8, 2025
Type Confusion in V8 in Google Chrome prior to 131.0.6778.264 allowed a remote attacker to...
High
Unreviewed
CVE-2025-0291
was published
Jan 8, 2025
Dell VxRail, versions 8.0.000 through 8.0.311, contain(s) a Plaintext Storage of a Password...
High
Unreviewed
CVE-2025-21111
was published
Jan 8, 2025
Command Injection in Minidlna version v1.3.3 and before allows an attacker to execute arbitrary...
High
Unreviewed
CVE-2024-51442
was published
Jan 8, 2025
An issue was discovered in the Interllect Core Search in Polaris FT Intellect Core Banking 9.5....
High
Unreviewed
CVE-2024-55517
was published
Jan 8, 2025
Dell VxRail, versions 7.0.000 through 7.0.532, contain(s) a Plaintext Storage of a Password...
High
Unreviewed
CVE-2025-21102
was published
Jan 8, 2025
The Modula Image Gallery plugin for WordPress is vulnerable to arbitrary file uploads due to...
High
Unreviewed
CVE-2024-12853
was published
Jan 8, 2025
The Ultimate Gift Cards for WooCommerce – Create WooCommerce Gift Cards, Gift Vouchers, Redeem &...
High
Unreviewed
CVE-2024-11423
was published
Jan 8, 2025
The Garden Gnome Package plugin for WordPress is vulnerable to arbitrary file uploads due to...
High
Unreviewed
CVE-2024-12854
was published
Jan 8, 2025
The WordPress File Upload plugin for WordPress is vulnerable to Path Traversal in all versions up...
High
Unreviewed
CVE-2024-9939
was published
Jan 8, 2025
The Cost Calculator Builder PRO plugin for WordPress is vulnerable to blind time-based SQL...
High
Unreviewed
CVE-2024-11939
was published
Jan 8, 2025
Integer overflow vulnerability during glTF model loading in the 3D engine module
Impact:...
High
Unreviewed
CVE-2024-56451
was published
Jan 8, 2025
The WordPress Webinar Plugin – WebinarPress plugin for WordPress is vulnerable to arbitrary file...
High
Unreviewed
CVE-2024-11270
was published
Jan 8, 2025
The WordPress Webinar Plugin – WebinarPress plugin for WordPress is vulnerable to modification of...
High
Unreviewed
CVE-2024-11271
was published
Jan 8, 2025
The Ultimate WordPress Toolkit – WP Extended plugin for WordPress is vulnerable to Remote Code...
High
Unreviewed
CVE-2024-11816
was published
Jan 8, 2025
The The Ultimate WordPress Toolkit – WP Extended plugin for WordPress is vulnerable to...
High
Unreviewed
CVE-2024-11916
was published
Jan 8, 2025
Access control vulnerability in the identity authentication module
Impact: Successful...
High
Unreviewed
CVE-2024-56439
was published
Jan 8, 2025
Cross-process screen stack vulnerability in the UIExtension module
Impact: Successful...
High
Unreviewed
CVE-2024-56444
was published
Jan 8, 2025
Vulnerability of improper permission control in the window management module
Impact: Successful...
High
Unreviewed
CVE-2024-56447
was published
Jan 8, 2025
An issue was discovered in SuiteCRM 7.12.7. Authenticated users can use CRM functions to upload...
High
Unreviewed
CVE-2022-45185
was published
Jan 7, 2025
An issue was discovered in SuiteCRM 7.12.7. Authenticated users can recover an arbitrary field of...
High
Unreviewed
CVE-2022-45186
was published
Jan 7, 2025
ProTip!
Advisories are also available from the
GraphQL API