GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,454
Erlang
33
GitHub Actions
22
Go
2,153
Maven
5,000+
npm
3,818
NuGet
693
pip
3,492
Pub
12
RubyGems
902
Rust
903
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
255 advisories
Filter by severity
A files or directories accessible to external parties vulnerability has been reported to affect...
Moderate
Unreviewed
CVE-2024-48864
was published
Mar 7, 2025
SeaCMS 13.3 was discovered to contain an arbitrary file read vulnerability in the...
Moderate
Unreviewed
CVE-2025-25799
was published
Mar 6, 2025
Files or Directories Accessible to External Parties vulnerability in Agito Computer Health4All...
High
Unreviewed
CVE-2024-12917
was published
Feb 24, 2025
An attacker could obtain firmware files and reverse engineer their
intended use leading to loss...
Moderate
Unreviewed
CVE-2025-23421
was published
Feb 14, 2025
In Progress® Telerik® Document Processing Libraries, versions prior to 2025 Q1 (2025.1.205),...
High
Unreviewed
CVE-2024-11629
was published
Feb 12, 2025
An insecure direct object reference vulnerability in GitLab EE affecting all versions from 15.7...
Moderate
Unreviewed
CVE-2025-1042
was published
Feb 12, 2025
Local File Inclusion vulnerability in dhtmlxFileExplorer v.8.4.6 allows a remote attacker to...
High
Unreviewed
CVE-2024-55214
was published
Feb 7, 2025
Directory Traversal vulnerability in dhtmlxFileExplorer v.8.4.6 allows a remote attacker to...
High
Unreviewed
CVE-2024-55213
was published
Feb 7, 2025
Brocade Fabric OS versions before
8.2.3e2, versions 9.0.0 through 9.2.0c, and 9.2.1 through 9.2...
Moderate
Unreviewed
CVE-2024-10403
was published
Feb 4, 2025
ChestnutCMS <=1.5.0 has an arbitrary file deletion vulnerability in contentcore.controller...
High
Unreviewed
CVE-2024-57452
was published
Feb 3, 2025
Potential privilege escalation vulnerability in Revenera InstallShield versions 2022 R2 and 2021...
High
Unreviewed
CVE-2023-29080
was published
Jan 30, 2025
IBM Jazz for Service Management 1.1.3 through 1.1.3.22 could allow a remote attacker to obtain...
Moderate
Unreviewed
CVE-2024-47106
was published
Jan 18, 2025
A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V9.80), SIPROTEC...
High
Unreviewed
CVE-2024-53649
was published
Jan 14, 2025
Specially constructed queries targeting ETM could discover active remote access sessions
Moderate
Unreviewed
CVE-2024-47518
was published
Jan 11, 2025
The CGI script <redacted>.sh can be used to download any file on the filesystem.
This issue...
High
Unreviewed
CVE-2024-43660
was published
Jan 9, 2025
A widget local file inclusion vulnerability in Trend Micro Apex One could allow a remote attacker...
High
Unreviewed
CVE-2024-52047
was published
Dec 31, 2024
An issue was discovered in Digi ConnectPort LTS before 1.4.12. A Privilege Escalation...
High
Unreviewed
CVE-2024-50627
was published
Dec 10, 2024
Configuration Download vulnerabilities allow access to dependency configuration information. ...
High
Unreviewed
CVE-2024-51542
was published
Dec 5, 2024
A directory traversal vulnerability in Hewlett Packard Enterprise Insight Remote Support may...
Critical
Unreviewed
CVE-2024-53676
was published
Nov 27, 2024
Local File Inclusion vulnerability in M-Files Server in versions before 24.11 (excluding 24.8 SR1...
Moderate
Unreviewed
CVE-2024-10126
was published
Nov 20, 2024
A vulnerability in Cisco IND could allow an authenticated, local attacker to read application...
Moderate
Unreviewed
CVE-2023-20039
was published
Nov 15, 2024
Authenticated user can access unintended user capabilities in NetScaler ADC and NetScaler Gateway...
Moderate
Unreviewed
CVE-2024-8535
was published
Nov 12, 2024
Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) a...
Low
Unreviewed
CVE-2024-48838
was published
Nov 12, 2024
Rapid7 Velociraptor MSI Installer versions below 0.73.3 suffer from a vulnerability whereby it...
High
Unreviewed
CVE-2024-10526
was published
Nov 7, 2024
A file disclosure vulnerability exists in Sage 1000 v7.0.0. This vulnerability allows remote...
High
Unreviewed
CVE-2024-48647
was published
Oct 30, 2024
ProTip!
Advisories are also available from the
GraphQL API