GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,239
Erlang
31
GitHub Actions
21
Go
2,007
Maven
5,000+
npm
3,716
NuGet
662
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
52 advisories
Filter by severity
Path Traversal: '.../...//' vulnerability in Softpulse Infotech SP Blog Designer allows PHP Local...
High
Unreviewed
CVE-2024-52498
was published
Nov 28, 2024
The Product Input Fields for WooCommerce plugin for WordPress is vulnerable to Directory...
Moderate
Unreviewed
CVE-2024-10857
was published
Nov 26, 2024
Agnai vulnerable to Relative Path Traversal in Image Upload
Low
CVE-2024-47171
was published
for
agnai
(npm)
Sep 26, 2024
Agnai File Disclosure Vulnerability: JSON via Path Traversal
Low
CVE-2024-47170
was published
for
agnai
(npm)
Sep 26, 2024
Agnai vulnerable to Remote Code Execution via JS Upload using Directory Traversal
Critical
CVE-2024-47169
was published
for
agnai
(npm)
Sep 26, 2024
The back-end does not sufficiently verify the user-controlled filename parameter which makes it...
High
Unreviewed
CVE-2024-50054
was published
Nov 23, 2024
Path Traversal: '.../...//' vulnerability in Corporate Zen Contact Page With Google Map allows...
High
Unreviewed
CVE-2024-52447
was published
Nov 20, 2024
: Path Traversal: '.../...//' vulnerability in CYAN Backup allows Path Traversal.This issue...
Moderate
Unreviewed
CVE-2024-52390
was published
Nov 19, 2024
A vulnerability in the API subsystem and in the web-management interface of Cisco Network...
Moderate
Unreviewed
CVE-2021-1132
was published
Nov 18, 2024
A vulnerability in the application data endpoints of Cisco SD-WAN vManage Software could...
High
Unreviewed
CVE-2020-26073
was published
Nov 18, 2024
A low privileged remote attacker can specify an arbitrary file on the filesystem which may lead...
High
Unreviewed
CVE-2024-41973
was published
Nov 18, 2024
A low privileged remote attacker can overwrite an arbitrary file on the filesystem which may lead...
Moderate
Unreviewed
CVE-2024-41972
was published
Nov 18, 2024
The default TCL Camera application exposes a provider vulnerable to path traversal vulnerability....
High
Unreviewed
CVE-2024-11136
was published
Nov 14, 2024
Sandro Poppi, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API irissetup...
High
Unreviewed
CVE-2023-21418
was published
Nov 21, 2023
Sandro Poppi, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API overlay_del...
High
Unreviewed
CVE-2023-21415
was published
Oct 16, 2023
Sandro Poppi, member of the AXIS OS Bug Bounty Program,
has found that the VAPIX API...
High
Unreviewed
CVE-2023-21417
was published
Nov 21, 2023
Vintage,
member of the AXIS OS Bug Bounty Program, has found that the VAPIX API create_overlay...
Moderate
Unreviewed
CVE-2023-5800
was published
Feb 5, 2024
Sandro Poppi, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API...
High
Unreviewed
CVE-2023-21416
was published
Nov 21, 2023
Marinus Pfund, member of the AXIS OS Bug Bounty Program,
has found the VAPIX API ledlimit.cgi...
Moderate
Unreviewed
CVE-2024-0067
was published
Sep 10, 2024
Path Traversal: '.../...//' vulnerability in ThimPress WP Hotel Booking allows PHP Local File...
High
Unreviewed
CVE-2024-51582
was published
Nov 4, 2024
Path traversal in oak allows transfer of hidden files within the served root directory
High
CVE-2024-49770
was published
for
@oakserver/oak
(npm)
Nov 1, 2024
Path Traversal: '.../...//' vulnerability in Limb WordPress Gallery Plugin – Limb Image Gallery...
Moderate
Unreviewed
CVE-2024-49258
was published
Oct 16, 2024
Multi-DNC – CWE-35: Path Traversal: '.../...//'
High
Unreviewed
CVE-2024-45248
was published
Oct 6, 2024
NVIDIA Mellanox OS, ONYX, Skyway, and MetroX-3 XCC contain a vulnerability in the web support,...
High
Unreviewed
CVE-2024-0113
was published
Aug 12, 2024
htmly v2.9.6 was discovered to contain an arbitrary file deletion vulnerability via the...
Moderate
Unreviewed
CVE-2024-34191
was published
May 14, 2024
ProTip!
Advisories are also available from the
GraphQL API