GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
22
Go
2,095
Maven
5,000+
npm
3,760
NuGet
678
pip
3,446
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
113,183 advisories
Filter by severity
Privilege escalation vulnerability in the account synchronisation module.
Impact: Successful...
Moderate
Unreviewed
CVE-2024-39670
was published
Jul 25, 2024
Privilege escalation vulnerability in the NMS module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2023-7271
was published
Jul 25, 2024
An issue was discovered in Archer Platform 6 before 2024.06. Authenticated users can achieve HTML...
Moderate
Unreviewed
CVE-2024-41707
was published
Jul 25, 2024
In affected versions of Octopus Server under certain circumstances it is possible for sensitive...
Moderate
Unreviewed
CVE-2024-6972
was published
Jul 25, 2024
An information disclosure vulnerability in GitLab CE/EE affecting all versions starting from 16.7...
Moderate
Unreviewed
CVE-2024-7057
was published
Jul 25, 2024
An issue was discovered in GitLab CE/EE affecting all versions starting from 15.6 prior to 17.0.5...
Moderate
Unreviewed
CVE-2024-7091
was published
Jul 25, 2024
An issue was discovered in GitLab EE affecting all versions starting from 16.11 prior to 17.0.5,...
Moderate
Unreviewed
CVE-2024-5067
was published
Jul 25, 2024
An authenticated command injection vulnerability exists in the HPE Aruba Networking EdgeConnect...
Moderate
Unreviewed
CVE-2024-41136
was published
Jul 24, 2024
A vulnerability was found in itsourcecode Tailoring Management System 1.0. It has been rated as...
Moderate
Unreviewed
CVE-2024-7081
was published
Jul 24, 2024
A vulnerability was found in SourceCodester Insurance Management System 1.0. It has been declared...
Moderate
Unreviewed
CVE-2024-7080
was published
Jul 24, 2024
A vulnerability, which was classified as critical, has been found in SourceCodester Employee and...
Moderate
Unreviewed
CVE-2024-7069
was published
Jul 24, 2024
A flaw was found in the Openshift console. The /API/helm/verify endpoint is tasked to fetch and...
Moderate
Unreviewed
CVE-2024-7079
was published
Jul 24, 2024
An issue in Huawei Technologies opengauss (openGauss 5.0.0 build) v.7.3.0 allows a local attacker...
Moderate
Unreviewed
CVE-2024-40575
was published
Jul 24, 2024
A vulnerability within the web-based management interface of EdgeConnect SD-WAN Orchestrator...
Moderate
Unreviewed
CVE-2024-22444
was published
Jul 24, 2024
Multiple stored cross-site scripting (XSS) vulnerabilities on AdTran NetVanta 3120 18.01.01.00.E...
Moderate
Unreviewed
CVE-2024-31971
was published
Jul 24, 2024
A vulnerability classified as problematic has been found in SourceCodester Insurance Management...
Moderate
Unreviewed
CVE-2024-7068
was published
Jul 24, 2024
A vulnerability was found in kirilkirkov Ecommerce-Laravel-Bootstrap up to...
Moderate
Unreviewed
CVE-2024-7067
was published
Jul 24, 2024
The Photo Gallery, Images, Slider in Rbs Image Gallery plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-3896
was published
Jul 24, 2024
The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored DOM-based...
Moderate
Unreviewed
CVE-2024-5818
was published
Jul 24, 2024
A vulnerability was found in F-logic DataCube3 1.0. It has been declared as critical. Affected by...
Moderate
Unreviewed
CVE-2024-7066
was published
Jul 24, 2024
The AMP for WP – Accelerated Mobile Pages plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2024-6896
was published
Jul 24, 2024
A vulnerability was found in Spina CMS up to 2.18.0. It has been classified as problematic....
Moderate
Unreviewed
CVE-2024-7065
was published
Jul 24, 2024
The WP Booking Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2024-6930
was published
Jul 24, 2024
Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds read vulnerability. A...
Moderate
Unreviewed
CVE-2023-32471
was published
Jul 24, 2024
An issue in the Certificate Authenticated Session Establishment (CASE) protocol for establishing...
Moderate
Unreviewed
CVE-2024-3297
was published
Jul 24, 2024
ProTip!
Advisories are also available from the
GraphQL API