GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,517
Maven
5,000+
npm
4,150
NuGet
736
pip
3,952
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
7,187 advisories
Filter by severity
A vulnerability has been found in yeqifu carRental up to 3fabb7eae93d209426638863980301d6f99866b3...
Moderate
Unreviewed
CVE-2025-9650
was published
Aug 29, 2025
The Slider Revolution plugin for WordPress is vulnerable to Path Traversal in all versions up to,...
Moderate
Unreviewed
CVE-2025-9217
was published
Aug 29, 2025
Nagios XI < 2024R1.3.2 contains a remote code execution vulnerability by chaining two flaws: an...
High
Unreviewed
CVE-2024-13986
was published
Aug 28, 2025
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2025-53588
was published
Aug 28, 2025
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2025-54029
was published
Aug 28, 2025
Improper limitation of a pathname to a restricted directory ('Path Traversal') issue exists in...
High
Unreviewed
CVE-2025-58072
was published
Aug 28, 2025
Improper limitation of a pathname to a restricted directory ('Path Traversal') issue exists in...
High
Unreviewed
CVE-2025-54819
was published
Aug 28, 2025
The File Manager, Code Editor, and Backup by Managefy plugin for WordPress is vulnerable to Path...
Moderate
Unreviewed
CVE-2025-9345
was published
Aug 28, 2025
QiAnXin TianQing Management Center versions up to and including 6.7.0.4130 contain a path...
Critical
Unreviewed
CVE-2024-13984
was published
Aug 28, 2025
LiveBOS, an object-oriented business architecture middleware suite developed by Apex Software Co....
Critical
Unreviewed
CVE-2024-13981
was published
Aug 28, 2025
A path traversal vulnerability exists in the Dahua Smart Park Integrated Management Platform ...
Critical
Unreviewed
CVE-2023-7309
was published
Aug 28, 2025
SPON IP Network Broadcast System, a digital audio transmission platform developed by SPON...
High
Unreviewed
CVE-2024-13982
was published
Aug 28, 2025
A vulnerability in the backup restore functionality of Cisco Nexus Dashboard could allow an...
Moderate
Unreviewed
CVE-2025-20344
was published
Aug 27, 2025
Directory traversal vulnerability in AbanteCart version 1.4.2 allows unauthenticated attackers to...
High
Unreviewed
CVE-2025-50971
was published
Aug 26, 2025
xml2rfc has an arbitrary file read vulnerability
High
GHSA-cfmv-h8fx-85m7
was published
for
xml2rfc
(pip)
Aug 26, 2025
n8n-workflows Main Commit ee25413 allows attackers to execute a directory traversal via the...
Critical
Unreviewed
CVE-2025-55526
was published
Aug 26, 2025
PerfreeBlog v4.0.11 has a directory traversal vulnerability in the getThemeFilesByName function.
High
Unreviewed
CVE-2025-29420
was published
Aug 26, 2025
A path traversal vulnerability in unauthenticated upload functionality allows a malicious actor...
Critical
Unreviewed
CVE-2025-53120
was published
Aug 26, 2025
A security flaw has been discovered in lostvip-com ruoyi-go up to 2.1. Impacted is the function...
Moderate
Unreviewed
CVE-2025-9409
was published
Aug 26, 2025
Craft CMS Potential Remote Code Execution via Twig SSTI
Moderate
CVE-2025-57811
was published
for
craftcms/cms
(Composer)
Aug 25, 2025
The Custom Query Shortcode plugin for WordPress is vulnerable to Path Traversal in all versions...
Moderate
Unreviewed
CVE-2025-8562
was published
Aug 25, 2025
A path traversal vulnerability in the NPM package installation process of Google Cloud Dataform...
Critical
Unreviewed
CVE-2025-9118
was published
Aug 25, 2025
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
Moderate
Unreviewed
CVE-2025-52450
was published
Aug 22, 2025
Dpanel has an arbitrary file read vulnerability
Moderate
CVE-2025-53363
was published
for
github.com/donknap/dpanel
(Go)
Aug 22, 2025
In MindManager Windows versions prior to 24.1.150, attackers could potentially write to...
High
Unreviewed
CVE-2024-56179
was published
Aug 22, 2025
ProTip!
Advisories are also available from the
GraphQL API