GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,168
Erlang
30
GitHub Actions
19
Go
1,975
Maven
5,000+
npm
3,698
NuGet
654
pip
3,314
Pub
11
RubyGems
882
Rust
831
Swift
35
Unreviewed advisories
All unreviewed
5,000+
6,174 advisories
Filter by severity
A vulnerability classified as critical was found in ZZCMS 2023. Affected by this vulnerability is...
Moderate
Unreviewed
CVE-2024-7927
was published
Aug 19, 2024
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2024-43345
was published
Aug 19, 2024
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2024-43328
was published
Aug 19, 2024
A vulnerability, which was classified as problematic, has been found in FastAdmin up to 1.3.3...
Moderate
Unreviewed
CVE-2024-7928
was published
Aug 20, 2024
The Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form &...
Critical
Unreviewed
CVE-2024-7777
was published
Aug 20, 2024
The Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form &...
High
Unreviewed
CVE-2024-7782
was published
Aug 20, 2024
A path handling issue was addressed with improved validation. This issue is fixed in macOS Sonoma...
Moderate
Unreviewed
CVE-2024-27887
was published
Jul 30, 2024
The WPS Office (aka cn.wps.moffice_eng) application before 17.0.0 for Android fails to properly...
High
Unreviewed
CVE-2024-35205
was published
May 14, 2024
Arbitrary file read vulnerability through the Jenkins CLI can lead to RCE
Critical
CVE-2024-23897
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
Jan 24, 2024
smanga 3.2.7 does not filter the file parameter at the PHP/get file flow.php interface, resulting...
High
Unreviewed
CVE-2024-34193
was published
May 20, 2024
Mobile Security Framework (MobSF) has a Zip Slip Vulnerability in .a Static Library Files
High
CVE-2024-43399
was published
for
mobsf
(pip)
Aug 19, 2024
A Local File Inclusion vulnerability has been found in ComfortKey, a product of Celsius Benelux....
High
Unreviewed
CVE-2024-27120
was published
Aug 14, 2024
An issue in Super easy enterprise management system v.1.0.0 and before allows a local attacker to...
Moderate
Unreviewed
CVE-2024-42680
was published
Aug 15, 2024
Directory Traversal vulnerability in Mgt-commerce CloudPanel v.2.0.0 thru v.2.4.0 allows a remote...
High
Unreviewed
CVE-2024-24320
was published
Jun 14, 2024
Logsign Unified SecOps Platform Directory Traversal Arbitrary File Deletion Vulnerability. This...
High
Unreviewed
CVE-2024-7600
was published
Aug 21, 2024
Windscribe Directory Traversal Local Privilege Escalation Vulnerability. This vulnerability...
High
Unreviewed
CVE-2024-6141
was published
Aug 21, 2024
Logsign Unified SecOps Platform Directory Traversal Arbitrary Directory Deletion Vulnerability....
High
Unreviewed
CVE-2024-7603
was published
Aug 21, 2024
Logsign Unified SecOps Platform Directory data_export_delete_all Traversal Arbitrary File...
High
Unreviewed
CVE-2024-7601
was published
Aug 21, 2024
Logsign Unified SecOps Platform Directory Traversal Information Disclosure Vulnerability. This...
Moderate
Unreviewed
CVE-2024-7602
was published
Aug 21, 2024
An issue in the downloader.php component of TOSEI online store management system v4.02, v4.03,...
High
Unreviewed
CVE-2024-43022
was published
Aug 21, 2024
Appwrite Directory Traversal vulnerability
High
CVE-2022-25377
was published
for
appwrite/server-ce
(Composer)
Feb 23, 2024
NGINX Agent's "config_dirs" restriction feature allows a highly privileged attacker to gain the...
Moderate
Unreviewed
CVE-2024-7634
was published
Aug 22, 2024
Insecure permissions in Netgear WNR614 JNR1010V2/N300-V1.1.0.54_1.0.1 allows attackers to access...
Moderate
Unreviewed
CVE-2024-36795
was published
Jun 6, 2024
The Filter & Grids WordPress plugin before 2.8.33 is vulnerable to Local File Inclusion via the...
Critical
Unreviewed
CVE-2024-6164
was published
Jul 18, 2024
The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information...
High
Unreviewed
CVE-2024-28992
was published
Jul 17, 2024
ProTip!
Advisories are also available from the
GraphQL API