GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
2,751 advisories
Filter by severity
unzip-stream allows Arbitrary File Write via artifact extraction
High
GHSA-6jrj-vc65-c983
was published
for
unzip-stream
(npm)
Aug 26, 2024
A traversal vulnerability in GeneralDocs.aspx in CentralSquare CryWolf (False Alarm Management)...
High
Unreviewed
CVE-2024-45241
was published
Aug 26, 2024
Python Pip Pandas v2.2.2 was discovered to contain an arbitrary file read vulnerability.
High
Unreviewed
CVE-2024-42992
was published
Aug 23, 2024
An issue in the downloader.php component of TOSEI online store management system v4.02, v4.03,...
High
Unreviewed
CVE-2024-43022
was published
Aug 21, 2024
Windscribe Directory Traversal Local Privilege Escalation Vulnerability. This vulnerability...
High
Unreviewed
CVE-2024-6141
was published
Aug 21, 2024
Logsign Unified SecOps Platform Directory Traversal Arbitrary File Deletion Vulnerability. This...
High
Unreviewed
CVE-2024-7600
was published
Aug 21, 2024
Logsign Unified SecOps Platform Directory Traversal Arbitrary Directory Deletion Vulnerability....
High
Unreviewed
CVE-2024-7603
was published
Aug 21, 2024
Logsign Unified SecOps Platform Directory data_export_delete_all Traversal Arbitrary File...
High
Unreviewed
CVE-2024-7601
was published
Aug 21, 2024
The Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form &...
High
Unreviewed
CVE-2024-7782
was published
Aug 20, 2024
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2024-43345
was published
Aug 19, 2024
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2024-43328
was published
Aug 19, 2024
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2024-43271
was published
Aug 19, 2024
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2024-43232
was published
Aug 19, 2024
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2024-43221
was published
Aug 19, 2024
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2024-43248
was published
Aug 19, 2024
Mobile Security Framework (MobSF) has a Zip Slip Vulnerability in .a Static Library Files
High
CVE-2024-43399
was published
for
mobsf
(pip)
Aug 19, 2024
The JetElements plugin for WordPress is vulnerable to Local File Inclusion in all versions up to,...
High
Unreviewed
CVE-2024-7145
was published
Aug 16, 2024
The JetTabs for Elementor plugin for WordPress is vulnerable to Local File Inclusion in all...
High
Unreviewed
CVE-2024-7146
was published
Aug 16, 2024
A Local File Inclusion vulnerability has been found in ComfortKey, a product of Celsius Benelux....
High
Unreviewed
CVE-2024-27120
was published
Aug 14, 2024
webcrack has an Arbitrary File Write Vulnerability on Windows when Parsing and Saving a Malicious Bundle
High
CVE-2024-43373
was published
for
webcrack
(npm)
Aug 14, 2024
Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by an...
High
Unreviewed
CVE-2024-39399
was published
Aug 14, 2024
Path traversal in the skin management component of Ivanti Avalanche 6.3.1 allows a remote...
High
Unreviewed
CVE-2024-38652
was published
Aug 14, 2024
In Ocean Data Systems Dream Report, a path traversal vulnerability could allow an attacker to...
High
Unreviewed
CVE-2024-6618
was published
Aug 13, 2024
Path traversal vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11...
High
Unreviewed
CVE-2024-23787
was published
Aug 13, 2024
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2024-43140
was published
Aug 13, 2024
ProTip!
Advisories are also available from the
GraphQL API