GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,343
Erlang
31
GitHub Actions
22
Go
2,107
Maven
5,000+
npm
3,764
NuGet
679
pip
3,452
Pub
12
RubyGems
892
Rust
886
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
113,592 advisories
Filter by severity
The Jupiter X Core plugin for WordPress is vulnerable to Directory Traversal in all versions up...
Moderate
Unreviewed
CVE-2025-0365
was published
Feb 1, 2025
The Directorist: AI-Powered WordPress Business Directory Plugin with Classified Ads Listings...
Moderate
Unreviewed
CVE-2024-12041
was published
Feb 1, 2025
The aThemes Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2024-13547
was published
Feb 1, 2025
The Site Search 360 plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2024-11780
was published
Feb 1, 2025
The WordPress Contact Forms by Cimatti plugin for WordPress is vulnerable to unauthorized access...
Moderate
Unreviewed
CVE-2024-12184
was published
Feb 1, 2025
The AnimateGL Animations for WordPress – Elementor & Gutenberg Blocks Animations plugin for...
Moderate
Unreviewed
CVE-2024-12620
was published
Feb 1, 2025
The RapidLoad – Optimize Web Vitals Automatically plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-13651
was published
Feb 1, 2025
A vulnerability was found in code-projects Job Recruitment 1.0. It has been classified as...
Moderate
Unreviewed
CVE-2025-0934
was published
Jan 31, 2025
The Python standard library functions `urllib.parse.urlsplit` and `urlparse` accepted domain...
Moderate
Unreviewed
CVE-2025-0938
was published
Jan 31, 2025
IBM Financial Transaction Manager for SWIFT Services for Multiplatforms 3.2.4.0 through 3.2.4.1...
Moderate
Unreviewed
CVE-2024-49349
was published
Jan 31, 2025
IBM Financial Transaction Manager for SWIFT Services for Multiplatforms 3.2.4.0 through 3.2.4.1...
Moderate
Unreviewed
CVE-2024-49339
was published
Jan 31, 2025
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 Standard Edition...
Moderate
Unreviewed
CVE-2024-47103
was published
Jan 31, 2025
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 Standard Edition...
Moderate
Unreviewed
CVE-2024-45089
was published
Jan 31, 2025
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 Standard Edition...
Moderate
Unreviewed
CVE-2024-40696
was published
Jan 31, 2025
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 is vulnerable to...
Moderate
Unreviewed
CVE-2023-38739
was published
Jan 31, 2025
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 Standard Edition...
Moderate
Unreviewed
CVE-2024-49807
was published
Jan 31, 2025
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 Standard Edition...
Moderate
Unreviewed
CVE-2024-47116
was published
Jan 31, 2025
Reflected Cross-Site Scripting (XSS) in TeamCal Neo, version 3.8.2. This allows an attacker to...
Moderate
Unreviewed
CVE-2025-0930
was published
Jan 31, 2025
Local privilege escalation due to DLL hijacking vulnerability. The following products are...
Moderate
Unreviewed
CVE-2025-24827
was published
Jan 31, 2025
Local privilege escalation due to DLL hijacking vulnerability. The following products are...
Moderate
Unreviewed
CVE-2025-24828
was published
Jan 31, 2025
Local privilege escalation due to DLL hijacking vulnerability. The following products are...
Moderate
Unreviewed
CVE-2025-24830
was published
Jan 31, 2025
Local privilege escalation due to unquoted search path vulnerability. The following products are...
Moderate
Unreviewed
CVE-2025-24831
was published
Jan 31, 2025
Local privilege escalation due to DLL hijacking vulnerability. The following products are...
Moderate
Unreviewed
CVE-2025-24829
was published
Jan 31, 2025
The Post Form – Registration Form – Profile Form for User Profiles – Frontend Content Forms for...
Moderate
Unreviewed
CVE-2024-12037
was published
Jan 31, 2025
The eHive Objects Image Grid plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2024-13662
was published
Jan 31, 2025
ProTip!
Advisories are also available from the
GraphQL API