GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
20,529 advisories
Filter by severity
A flaw was found in GNOME Maps, which is vulnerable to a code injection attack via its service...
Critical
Unreviewed
CVE-2023-43091
was published
Nov 17, 2024
Deserialization of Untrusted Data vulnerability in DMC Airin Blog allows Object Injection.This...
Critical
Unreviewed
CVE-2024-52413
was published
Nov 17, 2024
Deserialization of Untrusted Data vulnerability in Anthony Carbon WDES Responsive Mobile Menu...
Critical
Unreviewed
CVE-2024-52414
was published
Nov 17, 2024
Deserialization of Untrusted Data vulnerability in Stephen Cui Xin allows Object Injection.This...
Critical
Unreviewed
CVE-2024-52412
was published
Nov 17, 2024
Deserialization of Untrusted Data vulnerability in Phan An AJAX Random Posts allows Object...
Critical
Unreviewed
CVE-2024-52409
was published
Nov 17, 2024
Unrestricted Upload of File with Dangerous Type vulnerability in Davor Zeljkovic Convert...
Critical
Unreviewed
CVE-2024-52397
was published
Nov 17, 2024
Deserialization of Untrusted Data vulnerability in Flowcraft UX Design Studio Advanced...
Critical
Unreviewed
CVE-2024-52411
was published
Nov 17, 2024
Missing Authorization vulnerability in Eugen Bobrowski Debug Tool allows Upload a Web Shell to a...
Critical
Unreviewed
CVE-2024-52416
was published
Nov 17, 2024
Unrestricted Upload of File with Dangerous Type vulnerability in Bikram Joshi B-Banner Slider...
Critical
Unreviewed
CVE-2024-52405
was published
Nov 17, 2024
Unrestricted Upload of File with Dangerous Type vulnerability in codeSavory BasePress Migration...
Critical
Unreviewed
CVE-2024-52407
was published
Nov 17, 2024
Unrestricted Upload of File with Dangerous Type vulnerability in Wibergs Web CSV to html allows...
Critical
Unreviewed
CVE-2024-52406
was published
Nov 17, 2024
Unrestricted Upload of File with Dangerous Type vulnerability in Team PushAssist Push...
Critical
Unreviewed
CVE-2024-52408
was published
Nov 17, 2024
Deserialization of Untrusted Data vulnerability in Phoenixheart Referrer Detector allows Object...
Critical
Unreviewed
CVE-2024-52410
was published
Nov 17, 2024
Unrestricted Upload of File with Dangerous Type vulnerability in Subhasis Laha Gallerio allows...
Critical
Unreviewed
CVE-2024-52400
was published
Nov 17, 2024
Unrestricted Upload of File with Dangerous Type vulnerability in Bigfive CF7 Reply Manager.This...
Critical
Unreviewed
CVE-2024-52404
was published
Nov 17, 2024
Unrestricted Upload of File with Dangerous Type vulnerability in Clarisse K. Writer Helper allows...
Critical
Unreviewed
CVE-2024-52399
was published
Nov 17, 2024
Unrestricted Upload of File with Dangerous Type vulnerability in WPExperts User Management allows...
Critical
Unreviewed
CVE-2024-52403
was published
Nov 17, 2024
Unrestricted Upload of File with Dangerous Type vulnerability in Halyra CDI.This issue affects...
Critical
Unreviewed
CVE-2024-52398
was published
Nov 17, 2024
The Backup and Staging by WP Time Capsule plugin for WordPress is vulnerable to arbitrary file...
Critical
Unreviewed
CVE-2024-8856
was published
Nov 16, 2024
Multiple Buffer overflows in the MMS Client in MZ Automation LibIEC61850 before commit...
Critical
Unreviewed
CVE-2024-45970
was published
Nov 15, 2024
Multiple Buffer overflows in the MMS Client in MZ Automation LibIEC61850 before commit...
Critical
Unreviewed
CVE-2024-45971
was published
Nov 15, 2024
In OpenBSD 7.5 before errata 008 and OpenBSD 7.4 before errata 021,
avoid possible mbuf double...
Critical
Unreviewed
CVE-2024-10934
was published
Nov 15, 2024
A vulnerability in the web UI of Cisco IND could allow an authenticated, remote attacker to...
Critical
Unreviewed
CVE-2023-20036
was published
Nov 15, 2024
A vulnerability in the external authentication mechanism of Cisco Modeling Labs could allow an...
Critical
Unreviewed
CVE-2023-20154
was published
Nov 15, 2024
Improper neutralization of special elements used in a command ('Command Injection') vulnerability...
Critical
Unreviewed
CVE-2024-10443
was published
Nov 15, 2024
ProTip!
Advisories are also available from the
GraphQL API