GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
20
Go
2,000
Maven
5,000+
npm
3,711
NuGet
661
pip
3,383
Pub
11
RubyGems
885
Rust
849
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,020 advisories
Filter by severity
The The Request a Quote for WooCommerce and Elementor – Get a Quote Button – Product Enquiry Form...
High
Unreviewed
CVE-2024-11034
was published
Nov 23, 2024
Possible Command injection Vulnerability
in iManager has been discovered in
OpenText™ iManager 3...
High
Unreviewed
CVE-2021-38117
was published
Nov 22, 2024
There exists a code execution vulnerability in the Car App Android Jetpack Library. In the...
High
Unreviewed
CVE-2024-10382
was published
Nov 20, 2024
The The WooCommerce Product Table Lite plugin for WordPress is vulnerable to arbitrary shortcode...
High
Unreviewed
CVE-2024-10899
was published
Nov 20, 2024
The The GamiPress – The #1 gamification plugin to reward points, achievements, badges & ranks in...
High
Unreviewed
CVE-2024-11036
was published
Nov 19, 2024
The The WPB Popup for Contact Form 7 – Showing The Contact Form 7 Popup on Button Click – CF7...
High
Unreviewed
CVE-2024-11038
was published
Nov 19, 2024
Insecure Permissions vulnerability in Micro-star International MSI Center Pro 2.1.37.0 allows a...
High
Unreviewed
CVE-2024-50804
was published
Nov 18, 2024
An issue was discovered in Veritas NetBackup before 10.5. This only applies to NetBackup...
High
Unreviewed
CVE-2024-52945
was published
Nov 18, 2024
The The Uix Slideshow plugin for WordPress is vulnerable to arbitrary shortcode execution in all...
High
Unreviewed
CVE-2024-9839
was published
Nov 16, 2024
A Remote Code Execution vulnerability has been discovered in Sonatype Nexus Repository 2.
This...
High
Unreviewed
CVE-2024-5082
was published
Nov 14, 2024
In DevmemIntChangeSparse2 of devicemem_server.c, there is a possible way to achieve arbitrary...
High
Unreviewed
CVE-2024-40671
was published
Nov 13, 2024
TorchGeo Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-49048
was published
Nov 12, 2024
Improper input validation in the NPU driver could allow an attacker to supply a specially crafted...
High
Unreviewed
CVE-2024-21976
was published
Nov 12, 2024
The com.superfast.video.downloader (aka Super Unlimited Video Downloader - All in One)...
High
Unreviewed
CVE-2024-46963
was published
Nov 11, 2024
The com.video.downloader.all (aka All Video Downloader) application through 11.28 for Android...
High
Unreviewed
CVE-2024-46964
was published
Nov 11, 2024
The Ikhgur mn.ikhgur.khotoch (aka Video Downloader Pro & Browser) application through 1.0.42 for...
High
Unreviewed
CVE-2024-46966
was published
Nov 11, 2024
The The WP Photo Album Plus plugin for WordPress is vulnerable to arbitrary shortcode execution...
High
Unreviewed
CVE-2024-10958
was published
Nov 10, 2024
The The Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content...
High
Unreviewed
CVE-2024-10261
was published
Nov 9, 2024
The The FOX – Currency Switcher Professional for WooCommerce plugin for WordPress is vulnerable...
High
Unreviewed
CVE-2024-10640
was published
Nov 9, 2024
The Inshot com.downloader.privatebrowser (aka Video Downloader - XDownloader) application through...
High
Unreviewed
CVE-2024-46961
was published
Nov 8, 2024
The ASD com.rocks.video.downloader (aka HD Video Downloader All Format) application through 7.0...
High
Unreviewed
CVE-2024-46960
was published
Nov 8, 2024
The Tickera – WordPress Event Ticketing plugin for WordPress is vulnerable to arbitrary shortcode...
High
Unreviewed
CVE-2024-10263
was published
Nov 5, 2024
A Host header injection vulnerability in Agile-Board 1.0 allows attackers to obtain the password...
High
Unreviewed
CVE-2024-51329
was published
Nov 4, 2024
The eladmin v2.7 and before contains a remote code execution (RCE) vulnerability that can control...
High
Unreviewed
CVE-2024-51243
was published
Oct 30, 2024
The com.videodownload.browser.videodownloader (aka AppTool-Browser-Video All Video Downloader)...
High
Unreviewed
CVE-2024-42041
was published
Oct 30, 2024
ProTip!
Advisories are also available from the
GraphQL API