GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,238
Erlang
31
GitHub Actions
21
Go
2,005
Maven
5,000+
npm
3,716
NuGet
661
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
3,933 advisories
Filter by severity
TorchGeo Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-49048
was published
Nov 12, 2024
Improper input validation in the NPU driver could allow an attacker to supply a specially crafted...
High
Unreviewed
CVE-2024-21976
was published
Nov 12, 2024
PyMOL 2.5.0 contains a vulnerability in its "Run Script" function, which allows the execution of...
Critical
Unreviewed
CVE-2024-50636
was published
Nov 12, 2024
The com.superfast.video.downloader (aka Super Unlimited Video Downloader - All in One)...
High
Unreviewed
CVE-2024-46963
was published
Nov 11, 2024
The com.video.downloader.all (aka All Video Downloader) application through 11.28 for Android...
High
Unreviewed
CVE-2024-46964
was published
Nov 11, 2024
The SYQ com.downloader.video.fast (aka Master Video Downloader) application through 2.0 for...
Critical
Unreviewed
CVE-2024-46962
was published
Nov 11, 2024
The Ikhgur mn.ikhgur.khotoch (aka Video Downloader Pro & Browser) application through 1.0.42 for...
High
Unreviewed
CVE-2024-46966
was published
Nov 11, 2024
The DS allvideo.downloader.browser (aka Fast Video Downloader: Browser) application through 1.6...
Moderate
Unreviewed
CVE-2024-46965
was published
Nov 11, 2024
The The WP Photo Album Plus plugin for WordPress is vulnerable to arbitrary shortcode execution...
High
Unreviewed
CVE-2024-10958
was published
Nov 10, 2024
The The Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content...
High
Unreviewed
CVE-2024-10261
was published
Nov 9, 2024
The The FOX – Currency Switcher Professional for WooCommerce plugin for WordPress is vulnerable...
High
Unreviewed
CVE-2024-10640
was published
Nov 9, 2024
The Inshot com.downloader.privatebrowser (aka Video Downloader - XDownloader) application through...
High
Unreviewed
CVE-2024-46961
was published
Nov 8, 2024
The ASD com.rocks.video.downloader (aka HD Video Downloader All Format) application through 7.0...
High
Unreviewed
CVE-2024-46960
was published
Nov 8, 2024
Moodle Remote Code Execution vulnerability
High
CVE-2024-43425
was published
for
moodle/moodle
(Composer)
Nov 7, 2024
The Tickera – WordPress Event Ticketing plugin for WordPress is vulnerable to arbitrary shortcode...
High
Unreviewed
CVE-2024-10263
was published
Nov 5, 2024
Langflow vulnerable to remote code execution
Moderate
CVE-2024-48061
was published
for
langflow
(pip)
Nov 5, 2024
A Host header injection vulnerability in Agile-Board 1.0 allows attackers to obtain the password...
High
Unreviewed
CVE-2024-51329
was published
Nov 4, 2024
Improper Control of Generation of Code ('Code Injection') vulnerability in BG-TEK Informatics...
Critical
Unreviewed
CVE-2024-10035
was published
Nov 4, 2024
Qualitor v8.24 was discovered to contain a remote code execution (RCE) vulnerability via the...
Critical
Unreviewed
CVE-2024-48359
was published
Oct 31, 2024
lilconfig Code Injection vulnerability
High
CVE-2024-21537
was published
for
lilconfig
(npm)
Oct 31, 2024
An issue in Ethereum v.1.12.2 allows remote attacker to execute arbitrary code via the PepeGxng...
Critical
Unreviewed
CVE-2024-51427
was published
Oct 30, 2024
An issue in Ethereum v.1.12.2 allows remote attacker to execute arbitrary code via the Owned...
Critical
Unreviewed
CVE-2024-51424
was published
Oct 30, 2024
The eladmin v2.7 and before contains a remote code execution (RCE) vulnerability that can control...
High
Unreviewed
CVE-2024-51243
was published
Oct 30, 2024
The com.videodownload.browser.videodownloader (aka AppTool-Browser-Video All Video Downloader)...
High
Unreviewed
CVE-2024-42041
was published
Oct 30, 2024
ProTip!
Advisories are also available from the
GraphQL API