GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,262
Erlang
31
GitHub Actions
21
Go
2,030
Maven
5,000+
npm
3,732
NuGet
662
pip
3,409
Pub
12
RubyGems
891
Rust
865
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,779 advisories
Filter by severity
Rapid7 Insight Platform versions prior to November 13th 2024, suffer from a privilege escalation...
Moderate
Unreviewed
CVE-2024-11401
was published
Dec 11, 2024
Missing Authorization vulnerability in Ninja Team Notibar allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2024-54269
was published
Dec 11, 2024
The RapidLoad – Optimize Web Vitals Automatically plugin for WordPress is vulnerable to...
High
Unreviewed
CVE-2024-11840
was published
Dec 11, 2024
An issue was discovered in MSA Safety FieldServer Gateways and Embedded Modules with build...
Critical
Unreviewed
CVE-2024-45493
was published
Dec 10, 2024
The WPForms plugin for WordPress is vulnerable to unauthorized modification of data due to a...
High
Unreviewed
CVE-2024-11205
was published
Dec 10, 2024
SAP HCM Approve Timesheets Version 4 application does not perform necessary authorization checks...
Moderate
Unreviewed
CVE-2024-47581
was published
Dec 10, 2024
SAP NetWeaver Application Server for ABAP and ABAP Platform allows an authenticated attacker to...
Moderate
Unreviewed
CVE-2024-47585
was published
Dec 10, 2024
An issue was discovered in the web services of Digi ConnectPort LTS before 1.4.12. It allows an...
High
Unreviewed
CVE-2024-50628
was published
Dec 10, 2024
Dell OpenManage Server Administrator, versions 11.0.1.0 and prior, contains an improper access...
Moderate
Unreviewed
CVE-2024-45760
was published
Dec 9, 2024
Missing Authorization vulnerability in ProfilePress Membership Team ProfilePress.This issue...
Moderate
Unreviewed
CVE-2023-41953
was published
Dec 9, 2024
Missing Authorization vulnerability in Thehp AIO Contact.This issue affects AIO Contact: from n/a...
Moderate
Unreviewed
CVE-2024-54218
was published
Dec 9, 2024
Missing Authorization vulnerability in Prodigy Commerce Prodigy Commerce allows Exploiting...
Moderate
Unreviewed
CVE-2024-54251
was published
Dec 9, 2024
Missing Authorization vulnerability in theDotstore Minimum and Maximum Quantity for WooCommerce...
Moderate
Unreviewed
CVE-2024-54227
was published
Dec 9, 2024
Missing Authorization vulnerability in Kofi Mokome Message Filter for Contact Form 7.This issue...
Moderate
Unreviewed
CVE-2024-54254
was published
Dec 9, 2024
Missing Authorization vulnerability in Genetech Pie Register Premium.This issue affects Pie...
Moderate
Unreviewed
CVE-2024-52391
was published
Dec 9, 2024
Missing Authorization vulnerability in Astoundify Jobify - Job Board WordPress Theme.This issue...
Moderate
Unreviewed
CVE-2024-52480
was published
Dec 9, 2024
Missing Authorization vulnerability in Translate AI Multilingual Solutions Google Language...
Moderate
Unreviewed
CVE-2023-50375
was published
Dec 9, 2024
Missing Authorization vulnerability in WPSAAD Alt Manager allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2023-50373
was published
Dec 9, 2024
Missing Authorization vulnerability in UserFeedback Team User Feedback allows Exploiting...
Moderate
Unreviewed
CVE-2023-50887
was published
Dec 9, 2024
Missing Authorization vulnerability in ProfilePress Membership Team ProfilePress allows...
Moderate
Unreviewed
CVE-2023-50882
was published
Dec 9, 2024
Missing Authorization vulnerability in LA-Studio LA-Studio Element Kit for Elementor allows...
Moderate
Unreviewed
CVE-2023-50884
was published
Dec 9, 2024
Missing Authorization vulnerability in woobewoo Product Filter by WBW allows Exploiting...
Moderate
Unreviewed
CVE-2023-50877
was published
Dec 9, 2024
Missing Authorization vulnerability in Molongui Molongui allows Exploiting Incorrectly Configured...
Moderate
Unreviewed
CVE-2023-50876
was published
Dec 9, 2024
Missing Authorization vulnerability in Poll Maker Team Poll Maker allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2023-50904
was published
Dec 9, 2024
Missing Authorization vulnerability in Wpmet Metform Elementor Contact Form Builder allows...
Moderate
Unreviewed
CVE-2023-50903
was published
Dec 9, 2024
ProTip!
Advisories are also available from the
GraphQL API