GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,324
Erlang
31
GitHub Actions
21
Go
2,087
Maven
5,000+
npm
3,751
NuGet
674
pip
3,437
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
808 advisories
Filter by severity
Missing Authorization vulnerability in Shopfiles Ltd Ebook Store allows Exploiting Incorrectly...
High
Unreviewed
CVE-2023-22701
was published
Dec 9, 2024
Missing Authorization vulnerability in brandtoss WP Mailster allows Exploiting Incorrectly...
High
Unreviewed
CVE-2024-53805
was published
Dec 6, 2024
The AI Quiz | Quiz Maker plugin for WordPress is vulnerable to unauthorized modification of data...
High
Unreviewed
CVE-2024-11323
was published
Dec 6, 2024
Incorrect access control in the component content://com.handcent.messaging.provider...
High
Unreviewed
CVE-2024-53605
was published
Dec 2, 2024
The Accessibility by AllAccessible plugin for WordPress is vulnerable to unauthorized...
High
Unreviewed
CVE-2024-11643
was published
Dec 4, 2024
A vulnerability Veeam Backup & Replication allows low-privileged users to control and modify...
High
Unreviewed
CVE-2024-42453
was published
Dec 4, 2024
The TI WooCommerce Wishlist plugin for WordPress is vulnerable to unauthorized modification of...
High
Unreviewed
CVE-2024-10567
was published
Dec 4, 2024
An issue was discovered in Victure RX1800 WiFi 6 Router (software EN_V1.0.0_r12_110933, hardware...
High
Unreviewed
CVE-2024-53938
was published
Dec 3, 2024
In checkPermissions of RecognitionService.java, there is a possible permissions bypass due to a...
High
Unreviewed
CVE-2017-13316
was published
Nov 27, 2024
An issue has been discovered in GitLab CE/EE affecting all versions from 8.12 before 17.4.5, 17.5...
High
Unreviewed
CVE-2024-8114
was published
Nov 26, 2024
The WPGYM - Wordpress Gym Management System plugin for WordPress is vulnerable to privilege...
High
Unreviewed
CVE-2024-9941
was published
Nov 23, 2024
The com.uaudio.bsd.helper service, responsible for handling privileged operations, fails to...
High
Unreviewed
CVE-2024-8272
was published
Nov 25, 2024
NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an...
High
Unreviewed
CVE-2024-0122
was published
Nov 23, 2024
The Sky Addons for Elementor (Free Templates Library, Live Copy, Animations, Post Grid, Post...
High
Unreviewed
CVE-2024-11601
was published
Nov 22, 2024
The Sky Addons for Elementor (Free Templates Library, Live Copy, Animations, Post Grid, Post...
High
Unreviewed
CVE-2024-11104
was published
Nov 22, 2024
Apache IoTDB grafana-connector contains an interface without authorization
High
CVE-2022-38370
was published
for
org.apache.iotdb:iotdb-grafana-connector
(Maven)
Sep 6, 2022
TOTOLINK EX200 V4.0.3c.7646_B20201211 does not contain an authentication mechanism by default.
High
Unreviewed
CVE-2024-31813
was published
Apr 8, 2024
The Classified Listing – Classified ads & Business Directory Plugin plugin for WordPress is...
High
Unreviewed
CVE-2024-11194
was published
Nov 19, 2024
Apache Airflow: Bypass permission verification to read code of other dags
High
CVE-2023-50944
was published
for
apache-airflow
(pip)
Jan 24, 2024
The Post Grid Gutenberg Blocks and WordPress Blog Plugin – PostX plugin for WordPress is...
High
Unreviewed
CVE-2024-10728
was published
Nov 16, 2024
In multiple functions in AppInfoBase.java, there is a possible way to manipulate app permission...
High
Unreviewed
CVE-2024-43088
was published
Nov 13, 2024
Vulnerability of improper permission control in the window management module.
Impact: Successful...
High
Unreviewed
CVE-2023-52713
was published
Apr 7, 2024
In getInstalledAccessibilityPreferences of AccessibilitySettings.java, there is a possible way to...
High
Unreviewed
CVE-2024-43087
was published
Nov 13, 2024
Missing Authorization vulnerability in KCT Ai Auto Tool Content Writing Assistant (Gemini Writer,...
High
Unreviewed
CVE-2024-52383
was published
Nov 14, 2024
ProTip!
Advisories are also available from the
GraphQL API