GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,239
Erlang
31
GitHub Actions
21
Go
2,007
Maven
5,000+
npm
3,716
NuGet
662
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
92,864 advisories
Filter by severity
IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data 4.0.0 through 5.0.2 does not...
High
Unreviewed
CVE-2024-49353
was published
Nov 26, 2024
The Security & Malware scan by CleanTalk plugin for WordPress is vulnerable to unauthorized SQL...
High
Unreviewed
CVE-2024-10570
was published
Nov 26, 2024
The Spam protection, Anti-Spam, FireWall by CleanTalk plugin for WordPress is vulnerable to...
High
Unreviewed
CVE-2024-10781
was published
Nov 26, 2024
Dell Wyse Management Suite, versions WMS 4.4 and prior, contain an Improper Restriction of...
High
Unreviewed
CVE-2024-49597
was published
Nov 26, 2024
The Booking & Appointment Plugin for WooCommerce plugin for WordPress is vulnerable to...
High
Unreviewed
CVE-2024-10729
was published
Nov 26, 2024
Dell Wyse Management Suite, version WMS 4.4 and before, contain an Authentication Bypass by...
High
Unreviewed
CVE-2024-49595
was published
Nov 26, 2024
IBM Data Virtualization Manager for z/OS 1.1 and 1.2 could allow an authenticated user to inject...
High
Unreviewed
CVE-2024-52899
was published
Nov 26, 2024
A Client-Side Template Injection (CSTI) vulnerability in the component /project/new/scrum of...
High
Unreviewed
CVE-2024-53554
was published
Nov 26, 2024
The application Sensei Mac Cleaner contains a local privilege escalation vulnerability, allowing...
High
Unreviewed
CVE-2024-7915
was published
Nov 25, 2024
The com.uaudio.bsd.helper service, responsible for handling privileged operations, fails to...
High
Unreviewed
CVE-2024-8272
was published
Nov 25, 2024
An issue was discovered in Centreon centreon-open-tickets 24.10.x before 24.10.0, 24.04.x before...
High
Unreviewed
CVE-2024-45756
was published
Nov 25, 2024
An issue was discovered in Centreon centreon-dsm-server 24.10.x before 24.10.0, 24.04.x before 24...
High
Unreviewed
CVE-2024-45755
was published
Nov 25, 2024
A vulnerability, which was classified as critical, has been found in eNMS up to 4.2. Affected by...
High
Unreviewed
CVE-2024-11664
was published
Nov 25, 2024
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability...
High
Unreviewed
CVE-2024-11665
was published
Nov 25, 2024
virtualenv before 20.26.6 allows command injection through the activation scripts for a virtual...
High
Unreviewed
CVE-2024-53899
was published
Nov 24, 2024
The The Request a Quote for WooCommerce and Elementor – Get a Quote Button – Product Enquiry Form...
High
Unreviewed
CVE-2024-11034
was published
Nov 23, 2024
The MP3 Sticky Player plugin for WordPress is vulnerable to Directory Traversal in all versions...
High
Unreviewed
CVE-2024-10803
was published
Nov 23, 2024
The School Management System for Wordpress plugin for WordPress is vulnerable to arbitrary file...
High
Unreviewed
CVE-2024-9660
was published
Nov 23, 2024
The WPGYM - Wordpress Gym Management System plugin for WordPress is vulnerable to privilege...
High
Unreviewed
CVE-2024-9941
was published
Nov 23, 2024
The WP-Orphanage Extended plugin for WordPress is vulnerable to Cross-Site Request Forgery in all...
High
Unreviewed
CVE-2024-11415
was published
Nov 23, 2024
The LA-Studio Element Kit for Elementor plugin for WordPress is vulnerable to Local File...
High
Unreviewed
CVE-2024-10873
was published
Nov 23, 2024
NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an...
High
Unreviewed
CVE-2024-0122
was published
Nov 23, 2024
Visteon Infotainment App SoC Missing Immutable Root of Trust in Hardware Local Privilege...
High
Unreviewed
CVE-2024-8357
was published
Nov 23, 2024
Visteon Infotainment VIP MCU Code Insufficient Validation of Data Authenticity Local Privilege...
High
Unreviewed
CVE-2024-8356
was published
Nov 23, 2024
Nikon NEF Codec Thumbnail Provider NRW File Parsing Heap-based Buffer Overflow Remote Code...
High
Unreviewed
CVE-2024-8025
was published
Nov 23, 2024
ProTip!
Advisories are also available from the
GraphQL API