GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,350
Erlang
31
GitHub Actions
22
Go
2,119
Maven
5,000+
npm
3,778
NuGet
680
pip
3,459
Pub
12
RubyGems
892
Rust
888
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
8,043 advisories
Filter by severity
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Easy Digital...
Moderate
Unreviewed
CVE-2024-32100
was published
May 14, 2024
An information disclosure vulnerability exists in the Vault API functionality of ClearML...
High
Unreviewed
CVE-2024-43779
was published
Feb 6, 2025
front/icon.send.php in the CMDB plugin before 3.0.3 for GLPI allows attackers to gain read access...
Moderate
Unreviewed
CVE-2022-34125
was published
Apr 16, 2023
Brocade SANnav before Brocade SANnav v2.3.1 lacks protection mechanisms on port 2377/TCP and 7946...
High
Unreviewed
CVE-2024-4159
was published
Apr 25, 2024
A vulnerability in Brocade SANnav ova versions before Brocade SANnav v2.3.1 and v2.3.0a exposes...
Critical
Unreviewed
CVE-2024-4173
was published
Apr 25, 2024
A vulnerability in the web-based management interface of Cisco Small Business RV320 and RV325...
High
Unreviewed
CVE-2019-1653
was published
May 13, 2022
Arbitrary write vulnerability in the Gallery module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2024-57955
was published
Feb 6, 2025
Permission verification vulnerability in the media library module
Impact: Successful exploitation...
Moderate
Unreviewed
CVE-2024-57954
was published
Feb 6, 2025
A vulnerability in Simple Network Management Protocol (SNMP) polling for Cisco Secure Email and...
Moderate
Unreviewed
CVE-2025-20207
was published
Feb 5, 2025
The WordPress form builder plugin for contact forms, surveys and quizzes – Tripetto plugin for...
Moderate
Unreviewed
CVE-2024-13829
was published
Feb 5, 2025
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation...
Low
Unreviewed
CVE-2025-23073
was published
Jan 14, 2025
The sensitive information exposure vulnerability in the CGI “Export_Log” and the binary “zcmd” in...
High
Unreviewed
CVE-2023-28770
was published
Jul 6, 2023
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation...
Low
Unreviewed
CVE-2025-23074
was published
Jan 14, 2025
The Order Export for WooCommerce plugin for WordPress is vulnerable to Sensitive Information...
Moderate
Unreviewed
CVE-2024-13623
was published
Jan 31, 2025
The Download Manager WordPress plugin before 6.3.0 leaks master key information without the need...
High
Unreviewed
CVE-2023-1809
was published
May 2, 2023
The Elementor Website Builder Pro plugin for WordPress is vulnerable to Sensitive Information...
Moderate
Unreviewed
CVE-2024-8494
was published
Jan 30, 2025
Milesight NCR/camera version 71.8.0.6-r5 discloses sensitive information through an unspecified...
High
Unreviewed
CVE-2023-24505
was published
May 8, 2023
A path
traversal vulnerability exists in the Rockwell Automation DataEdge Platform DataMosaix...
High
Unreviewed
CVE-2025-0659
was published
Jan 28, 2025
A vulnerability has been identified in Rocket.Chat, where the ACL checks in the Slash Command ...
Moderate
Unreviewed
CVE-2023-28357
was published
May 12, 2023
The Membership Plugin – Restrict Content plugin for WordPress is vulnerable to Sensitive...
Moderate
Unreviewed
CVE-2024-11090
was published
Jan 26, 2025
The Import WP – Export and Import CSV and XML files to WordPress plugin for WordPress is...
High
Unreviewed
CVE-2024-13562
was published
Jan 25, 2025
IBM Spectrum Virtualize 8.5, under certain circumstances, could disclose sensitive credential...
High
Unreviewed
CVE-2023-27870
was published
May 11, 2023
An issue was identified in Fleet Server where Fleet policies that could contain sensitive...
Critical
Unreviewed
CVE-2024-52975
was published
Jan 23, 2025
An issue was identified in Kibana where a user without access to Fleet can view Elastic Agent...
High
Unreviewed
CVE-2024-43707
was published
Jan 23, 2025
An issue was discovered on NETGEAR R8500, R8300, R7000, R6400, R7300, R7100LG, R6300v2,...
High
Unreviewed
CVE-2017-5521
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API