GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,342
Erlang
31
GitHub Actions
22
Go
2,106
Maven
5,000+
npm
3,764
NuGet
679
pip
3,451
Pub
12
RubyGems
892
Rust
886
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
113,582 advisories
Filter by severity
OS command injection vulnerability exists in ELECOM wireless LAN routers. A specially crafted...
Moderate
Unreviewed
CVE-2024-39607
was published
Aug 1, 2024
The CTT Expresso para WooCommerce plugin for WordPress is vulnerable to sensitive information...
Moderate
Unreviewed
CVE-2024-6687
was published
Aug 1, 2024
Unrestricted upload of file with dangerous type vulnerability exists in ELECOM wireless LAN...
Moderate
Unreviewed
CVE-2024-34021
was published
Aug 1, 2024
A vulnerability, which was classified as critical, was found in YouDianCMS 7. Affected is an...
Moderate
Unreviewed
CVE-2024-7329
was published
Aug 1, 2024
A vulnerability has been found in YouDianCMS 7 and classified as critical. Affected by this...
Moderate
Unreviewed
CVE-2024-7330
was published
Aug 1, 2024
A vulnerability classified as critical was found in Xinhu RockOA 2.6.2. This vulnerability...
Moderate
Unreviewed
CVE-2024-7327
was published
Aug 1, 2024
A vulnerability, which was classified as problematic, has been found in YouDianCMS 7. This issue...
Moderate
Unreviewed
CVE-2024-7328
was published
Aug 1, 2024
An issue was discovered in filestash v0.4. The usage of the ssh.InsecureIgnoreHostKey() disables...
Moderate
Unreviewed
CVE-2024-41258
was published
Jul 31, 2024
An issue was discovered in litestream v0.3.13. The usage of the ssh.InsecureIgnoreHostKey()...
Moderate
Unreviewed
CVE-2024-41254
was published
Jul 31, 2024
An issue was discovered in the IhisiServiceSmm module in Insyde InsydeH2O with kernel 5.2 before...
Moderate
Unreviewed
CVE-2023-28149
was published
Jul 31, 2024
A vulnerability was reported in Lenovo PC Manager versions prior to 2.6.40.3154 that could allow...
Moderate
Unreviewed
CVE-2017-3772
was published
Jul 31, 2024
A vulnerability in Cato Networks SDP Client on Windows allows the insertion of sensitive...
Moderate
Unreviewed
CVE-2024-6977
was published
Jul 31, 2024
Improper Input Validation vulnerability in Cato Networks SDP Client on Windows allows Command...
Moderate
Unreviewed
CVE-2024-6978
was published
Jul 31, 2024
A “CWE-352: Cross-Site Request Forgery (CSRF)” can be exploited by remote attackers to perform...
Moderate
Unreviewed
CVE-2024-3083
was published
Jul 31, 2024
A “CWE-121: Stack-based Buffer Overflow” in the wd210std.dll dynamic library packaged with the...
Moderate
Unreviewed
CVE-2024-31203
was published
Jul 31, 2024
A “CWE-428: Unquoted Search Path or Element” affects the ThermoscanIP_Scrutation service. Such...
Moderate
Unreviewed
CVE-2024-31201
was published
Jul 31, 2024
A “CWE-201: Insertion of Sensitive Information Into Sent Data” affecting the administrative...
Moderate
Unreviewed
CVE-2024-31200
was published
Jul 31, 2024
A “CWE-256: Plaintext Storage of a Password” affecting the administrative account allows an...
Moderate
Unreviewed
CVE-2024-3082
was published
Jul 31, 2024
Acrobat for Edge versions 126.0.2592.81 and earlier are affected by an out-of-bounds read...
Moderate
Unreviewed
CVE-2024-39379
was published
Jul 31, 2024
The Download Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2024-6208
was published
Jul 31, 2024
A vulnerability classified as problematic was found in itsourcecode Online Blood Bank Management...
Moderate
Unreviewed
CVE-2024-7321
was published
Jul 31, 2024
A vulnerability classified as critical has been found in itsourcecode Online Blood Bank...
Moderate
Unreviewed
CVE-2024-7320
was published
Jul 31, 2024
A vulnerability was found in code-projects Online Bus Reservation Site 1.0. It has been rated as...
Moderate
Unreviewed
CVE-2024-7311
was published
Jul 31, 2024
The Tainacan plugin for WordPress is vulnerable to unauthorized access of data due to a missing...
Moderate
Unreviewed
CVE-2024-7135
was published
Jul 31, 2024
A vulnerability was found in SourceCodester Record Management System 1.0. It has been classified...
Moderate
Unreviewed
CVE-2024-7309
was published
Jul 31, 2024
ProTip!
Advisories are also available from the
GraphQL API