GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,350
Erlang
31
GitHub Actions
22
Go
2,119
Maven
5,000+
npm
3,778
NuGet
680
pip
3,459
Pub
12
RubyGems
892
Rust
888
Swift
38
Unreviewed advisories
All unreviewed
5,000+
2,695 advisories
Filter by severity
In multiple functions of RunningTasks.java, there is a possible privilege escalation due to a...
Moderate
Unreviewed
CVE-2023-20909
was published
Apr 19, 2023
An issue has been discovered in GitLab CE/EE affecting all versions starting from 14.0 prior to...
Moderate
Unreviewed
CVE-2024-3976
was published
Feb 5, 2025
The Easy Appointments plugin for WordPress is vulnerable to unauthorized modification of data due...
Moderate
Unreviewed
CVE-2024-2844
was published
Mar 29, 2024
Digiever DS-2105 Pro 3.1.0.71-11 devices allow time_tzsetup.cgi Command Injection. NOTE: This...
Moderate
Unreviewed
CVE-2023-52163
was published
Feb 3, 2025
The Permalink Manager Lite plugin for WordPress is vulnerable to unauthorized modification of...
Moderate
Unreviewed
CVE-2024-2538
was published
Mar 20, 2024
This issue was addressed through improved state management. This issue is fixed in macOS Sequoia...
Moderate
Unreviewed
CVE-2025-24096
was published
Jan 28, 2025
The Permalink Manager Lite plugin for WordPress is vulnerable to unauthorized access of data due...
Moderate
Unreviewed
CVE-2024-2543
was published
Apr 9, 2024
The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized email...
Moderate
Unreviewed
CVE-2024-3243
was published
Apr 16, 2024
The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2024-1044
was published
Feb 29, 2024
Missing Authorization vulnerability in CusRev Customer Reviews for WooCommerce.This issue affects...
Moderate
Unreviewed
CVE-2023-51692
was published
Feb 28, 2024
The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for...
Moderate
Unreviewed
CVE-2024-11712
was published
Dec 14, 2024
The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized access of...
Moderate
Unreviewed
CVE-2024-3869
was published
Apr 16, 2024
The TeraWallet – Best WooCommerce Wallet System With Cashback Rewards, Partial Payment, Wallet...
Moderate
Unreviewed
CVE-2024-1690
was published
Mar 13, 2024
An issue has been discovered in GitLab EE affecting all versions starting from 15.2 prior to 16.9...
Moderate
Unreviewed
CVE-2024-1539
was published
Feb 5, 2025
The issue was addressed with improved access restrictions to the file system. This issue is fixed...
Moderate
Unreviewed
CVE-2025-24143
was published
Jan 28, 2025
An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2025-24116
was published
Jan 28, 2025
The /rest/rights/ REST API endpoint in Becon DATAGerry through 2.2.0 contains an Incorrect Access...
Moderate
Unreviewed
CVE-2024-50967
was published
Jan 17, 2025
The Relevanssi – A Better Search plugin for WordPress is vulnerable to unauthorized modification...
Moderate
Unreviewed
CVE-2024-3213
was published
Apr 9, 2024
Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component:...
Moderate
Unreviewed
CVE-2025-21527
was published
Jan 21, 2025
The PropertyHive plugin for WordPress is vulnerable to unauthorized loss of data due to a missing...
Moderate
Unreviewed
CVE-2024-3607
was published
May 2, 2024
A vulnerability has been identified in Polarion ALM (All versions < V2404.0). The Apache Lucene...
Moderate
Unreviewed
CVE-2024-33647
was published
May 14, 2024
Missing Authorization vulnerability in BdThemes Prime Slider – Addons For Elementor.This issue...
Moderate
Unreviewed
CVE-2024-32681
was published
Apr 22, 2024
Missing Authorization vulnerability in Ksher Ksher allows Exploiting Incorrectly Configured...
Moderate
Unreviewed
CVE-2025-22730
was published
Feb 4, 2025
Missing Authorization vulnerability in FameThemes OnePress allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-22643
was published
Feb 4, 2025
An issue in Geovision GV-ASWeb with version 6.1.0.0 or less allows unauthorized attackers with...
Moderate
Unreviewed
CVE-2024-56902
was published
Feb 3, 2025
ProTip!
Advisories are also available from the
GraphQL API