GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,335
Erlang
31
GitHub Actions
22
Go
2,096
Maven
5,000+
npm
3,762
NuGet
678
pip
3,448
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
138 advisories
Filter by severity
MRCMS 3.0 contains an Arbitrary File Read vulnerability in /admin/file/edit.do as the incoming...
High
Unreviewed
CVE-2024-24161
was published
Feb 2, 2024
Improper Input Validation, Files or Directories Accessible to External Parties vulnerability in...
High
Unreviewed
CVE-2023-4550
was published
Jan 29, 2024
The Backup Migration plugin for WordPress is vulnerable to unauthorized access of data due to...
High
Unreviewed
CVE-2023-6266
was published
Jan 11, 2024
The Duplicator WordPress plugin before 1.5.7.1, Duplicator Pro WordPress plugin before 4.5.14.2...
High
Unreviewed
CVE-2023-6114
was published
Dec 26, 2023
CLUSTERPRO X Ver5.1 and earlier and EXPRESSCLUSTER X 5.1 and earlier, CLUSTERPRO X...
High
Unreviewed
CVE-2023-39545
was published
Nov 17, 2023
NVIDIA GPU Display Driver for Windows contains a vulnerability where an attacker may be able to...
High
Unreviewed
CVE-2023-31017
was published
Nov 2, 2023
The HTML filter and csv-file search plugin for WordPress is vulnerable to Local File Inclusion in...
High
Unreviewed
CVE-2023-5099
was published
Oct 31, 2023
The PHP to Page plugin for WordPress is vulnerable Local File Inclusion to Remote Code Execution...
High
Unreviewed
CVE-2023-5199
was published
Oct 30, 2023
carRental 1.0 is vulnerable to Incorrect Access Control (Arbitrary File Read on the Back-end...
High
Unreviewed
CVE-2023-33517
was published
Oct 24, 2023
The WordPress Gallery Plugin WordPress plugin before 3.39 is vulnerable to Arbitrary File Read...
High
Unreviewed
CVE-2023-3155
was published
Oct 16, 2023
In the affected version of the 1E Client, an ordinary user could subvert downloaded instruction...
High
Unreviewed
CVE-2023-45160
was published
Oct 5, 2023
A vulnerability in the on-device application development workflow feature for the Cisco IOx...
High
Unreviewed
CVE-2023-20235
was published
Oct 4, 2023
Dreamer CMS v4.1.3 was discovered to contain an arbitrary file read vulnerability via the...
High
Unreviewed
CVE-2023-43856
was published
Sep 27, 2023
Files or Directories Accessible to External Parties vulnerability in Honeywell PM43 on 32 bit,...
High
Unreviewed
CVE-2023-3712
was published
Sep 12, 2023
Insecure access control in ZKTeco BioTime v8.5.5 allows unauthenticated attackers to read...
High
Unreviewed
CVE-2023-38952
was published
Aug 4, 2023
An arbitrary file download vulnerability in the /c/PluginsController.php component of jizhi CMS 1...
High
Unreviewed
CVE-2023-38948
was published
Aug 3, 2023
JavaScript pre-processing can be used by the attacker to gain access to the file system (read...
High
Unreviewed
CVE-2023-29450
was published
Jul 13, 2023
?An attacker could bypass the latest Delta Electronics InfraSuite Device Master (versions prior...
High
Unreviewed
CVE-2023-34316
was published
Jul 10, 2023
Apache InLong has Files or Directories Accessible to External Parties
High
CVE-2023-31064
was published
for
org.apache.inlong:manager-workflow
(Maven)
Jul 6, 2023
Artifex Ghostscript through 10.01.2 mishandles permission validation for pipe devices (with the ...
High
Unreviewed
CVE-2023-36664
was published
Jun 26, 2023
jfinal CMS 5.1.0 has an arbitrary file read vulnerability.
High
Unreviewed
CVE-2023-34645
was published
Jun 16, 2023
Dolibarr vulnerable to unauthenticated database access
High
CVE-2023-33568
was published
for
dolibarr/dolibarr
(Composer)
Jun 13, 2023
The KIWIZ Invoices Certification & PDF System WordPress plugin through 2.1.3 does not validate...
High
Unreviewed
CVE-2023-2180
was published
May 15, 2023
Osprey Pump Controller version 1.01 is vulnerable to an unauthenticated file disclosure. Using a...
High
Unreviewed
CVE-2023-28375
was published
Mar 28, 2023
amano Xparc parking solutions 7.1.3879 was discovered to be vulnerable to local file inclusion.
High
Unreviewed
CVE-2023-23330
was published
Mar 28, 2023
ProTip!
Advisories are also available from the
GraphQL API