GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,340
Erlang
31
GitHub Actions
22
Go
2,101
Maven
5,000+
npm
3,764
NuGet
679
pip
3,451
Pub
12
RubyGems
892
Rust
885
Swift
37
Unreviewed advisories
All unreviewed
5,000+
102,843 advisories
Filter by severity
A memory corruption issue was addressed with improved input validation. This issue is fixed in...
High
Unreviewed
CVE-2019-7287
was published
May 24, 2022
V8 in Google Chrome prior to 54.0.2840.90 for Linux, and 54.0.2840.85 for Android, and 54.0.2840...
High
Unreviewed
CVE-2016-5198
was published
May 14, 2022
Pimcore Authenticated Stored Cross-Site Scripting (XSS) Via Search Document
High
GHSA-xr3m-6gq6-22cg
was published
for
pimcore/pimcore
(Composer)
Jan 28, 2025
Improper Preservation of Permissions in github.com/cloudflare/cfrpki/cmd/octorpki
High
CVE-2021-3978
was published
for
github.com/cloudflare/cfrpki
(Go)
Nov 19, 2021
Use after free in DevTools in Google Chrome prior to 132.0.6834.159 allowed a remote attacker to...
High
Unreviewed
CVE-2025-0762
was published
Jan 29, 2025
Mailcow through 2024-11b has a session fixation vulnerability in the web panel. It allows remote...
High
Unreviewed
CVE-2024-56529
was published
Jan 29, 2025
An issue in Open5GS v.2.7.2 allows a remote attacker to cause a denial of service via the...
High
Unreviewed
CVE-2024-57519
was published
Jan 29, 2025
A use after free issue was addressed with improved memory management. This issue is fixed in...
High
Unreviewed
CVE-2025-24085
was published
Jan 28, 2025
AutoLib Software Systems OPAC v20.10 was discovered to have multiple API keys exposed within the...
High
Unreviewed
CVE-2024-48310
was published
Jan 29, 2025
An issue was discovered in DTEX DEC-M (DTEX Forwarder) 6.1.1. The com.dtexsystems.helper service,...
High
Unreviewed
CVE-2024-55968
was published
Jan 29, 2025
The Competition Form WordPress plugin through 2.0 does not sanitise and escape a parameter before...
High
Unreviewed
CVE-2024-12749
was published
Jan 29, 2025
Insecure Permissons vulnerability found in Shop_CMS YerShop all versions allows a remote attacker...
High
Unreviewed
CVE-2020-23362
was published
May 9, 2023
MonicaHQ version 4.0.0 allows an authenticated remote attacker to execute malicious code in the...
High
Unreviewed
CVE-2023-1031
was published
May 8, 2023
A flaw was found in the rsync daemon which could be triggered when rsync compares file checksums....
High
Unreviewed
CVE-2024-12085
was published
Jan 14, 2025
Zohocorp ManageEngine Applications Manager versions 174000 and prior are vulnerable to the...
High
Unreviewed
CVE-2024-41140
was published
Jan 29, 2025
The Flexible Wishlist for WooCommerce – Ecommerce Wishlist & Save for later plugin for WordPress...
High
Unreviewed
CVE-2024-13696
was published
Jan 29, 2025
Multiple switches are affected by an out-of-bounds write vulnerability. This vulnerability is...
High
Unreviewed
CVE-2024-7695
was published
Jan 29, 2025
Removing an XSLT parameter during processing could have lead to an exploitable use-after-free. We...
High
Unreviewed
CVE-2022-26485
was published
Dec 22, 2022
A use after free issue was addressed with improved memory management. This issue is fixed in iOS...
High
Unreviewed
CVE-2023-28205
was published
Apr 10, 2023
Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06 is vulnerable to Buffer Overflow via ...
High
Unreviewed
CVE-2024-48420
was published
Jan 27, 2025
In Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06, the request /goform/fromSetDDNS does...
High
Unreviewed
CVE-2024-48418
was published
Jan 27, 2025
In AXESS ACS (Auto Configuration Server) through 5.2.0, unsanitized user input in the TR069 API...
High
Unreviewed
CVE-2024-56316
was published
Jan 28, 2025
Insecure Permissions vulnerability in CMSimple v.5.16 allows a remote attacker to obtain...
High
Unreviewed
CVE-2024-57547
was published
Jan 28, 2025
A type confusion issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.4,...
High
Unreviewed
CVE-2025-24137
was published
Jan 28, 2025
An integer overflow was addressed through improved input validation. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-24156
was published
Jan 28, 2025
ProTip!
Advisories are also available from the
GraphQL API