GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,360
Erlang
33
GitHub Actions
22
Go
2,127
Maven
5,000+
npm
3,793
NuGet
683
pip
3,471
Pub
12
RubyGems
894
Rust
894
Swift
38
Unreviewed advisories
All unreviewed
5,000+
70 advisories
Filter by severity
Windows Hyper-V Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-30010
was published
May 14, 2024
mintplex-labs/anything-llm is vulnerable to a relative path traversal attack, allowing...
High
Unreviewed
CVE-2024-0549
was published
Apr 16, 2024
NiceGUI allows potential access to local file system
High
CVE-2024-32005
was published
for
nicegui
(pip)
Apr 12, 2024
Mautic vulnerable to Relative Path Traversal / Arbitrary File Deletion due to GrapesJS builder
High
CVE-2021-27916
was published
for
mautic/core
(Composer)
Apr 12, 2024
ABB has internally identified a vulnerability in the ABB VPNI feature of the S+ Control API...
High
Unreviewed
CVE-2024-0335
was published
Apr 3, 2024
The Artica Proxy administrative web application will deserialize arbitrary PHP objects supplied...
High
Unreviewed
CVE-2024-2053
was published
Mar 21, 2024
Unitronics Unistream Unilogic – Versions prior to 1.35.227 -
CWE-23: Relative Path Traversal
High
Unreviewed
CVE-2024-27770
was published
Mar 18, 2024
In JetBrains TeamCity before 2023.11.4 path traversal allowing to perform limited admin actions ...
High
Unreviewed
CVE-2024-27199
was published
Mar 4, 2024
A relative path traversal in Fortinet FortiManager version 7.4.0 and 7.2.0 through 7.2.3 and 7.0...
High
Unreviewed
CVE-2023-42791
was published
Feb 20, 2024
Unsecured endpoints in the jupyter-lsp server extension
High
CVE-2024-22415
was published
for
jupyter-lsp
(pip)
Jan 18, 2024
NVIDIA Triton Inference Server for Linux and Windows contains a vulnerability where, when it is...
High
Unreviewed
CVE-2023-31036
was published
Jan 12, 2024
A path traversal vulnerability has been detected in Repox, which allows an attacker to read...
High
Unreviewed
CVE-2023-6722
was published
Dec 13, 2023
A relative path traversal in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5.0 through 8.5...
High
Unreviewed
CVE-2023-42783
was published
Nov 14, 2023
Parse Server may crash when uploading file without extension
High
CVE-2023-46119
was published
for
parse-server
(npm)
Oct 24, 2023
Relative path traversal vulnerability in Setelsa Security's ConacWin CB, in its 3.8.2.2 version...
High
Unreviewed
CVE-2023-3512
was published
Oct 4, 2023
Aqua Drive, in its 2.4 version, is vulnerable to a relative path traversal vulnerability. By...
High
Unreviewed
CVE-2023-3701
was published
Oct 4, 2023
Cecil Path Traversal vulnerability
High
CVE-2023-4914
was published
for
cecil/cecil
(Composer)
Sep 12, 2023
Relative Path Traversal in GitHub repository mintplex-labs/anything-llm prior to 0.0.1.
High
Unreviewed
CVE-2023-4897
was published
Sep 11, 2023
In Keysight Geolocation Server v2.4.2 and prior, an attacker could upload a specially...
High
Unreviewed
CVE-2023-34394
was published
Jul 20, 2023
SmartBPM.NET has a vulnerability of using hard-coded authentication key. An unauthenticated...
High
Unreviewed
CVE-2023-37288
was published
Jul 10, 2023
A relative path traversal [CWE-23] in Fortinet FortiADC version 7.2.0 and before 7.1.1 allows a...
High
Unreviewed
CVE-2023-27993
was published
May 4, 2023
Dmidecode before 3.5 allows -dump-bin to overwrite a local file. This has security relevance...
High
Unreviewed
CVE-2023-30630
was published
Apr 13, 2023
A relative path traversal vulnerability in Fortinet FortiClient (Windows) 7.0.0 - 7.0.7, 6.4.0 -...
High
Unreviewed
CVE-2022-42470
was published
Apr 11, 2023
A vulnerability was found in MuYuCMS 2.2. It has been declared as problematic. Affected by this...
High
Unreviewed
CVE-2023-1044
was published
Feb 26, 2023
ProTip!
Advisories are also available from the
GraphQL API