GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,239
Erlang
31
GitHub Actions
21
Go
2,007
Maven
5,000+
npm
3,716
NuGet
662
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
235,938 advisories
Filter by severity
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-53788
was published
Nov 30, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-53783
was published
Nov 30, 2024
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in IDE...
Moderate
Unreviewed
CVE-2024-53768
was published
Nov 30, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-53787
was published
Nov 30, 2024
Server-Side Request Forgery (SSRF) vulnerability in Gabe Livan Asset CleanUp: Page Speed Booster...
Moderate
Unreviewed
CVE-2024-53738
was published
Nov 30, 2024
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2024-53739
was published
Nov 30, 2024
A vulnerability classified as problematic has been found in code-projects Wazifa System 1.0....
Moderate
Unreviewed
CVE-2024-12001
was published
Nov 30, 2024
Qualys discovered that needrestart, before version 3.8, allows local attackers to execute...
High
Unreviewed
CVE-2024-48991
was published
Nov 19, 2024
A vulnerability classified as problematic was found in Tenda FH451, FH1201, FH1202 and FH1206 up...
Moderate
Unreviewed
CVE-2024-12002
was published
Nov 30, 2024
xfpt versions prior to 1.01 fails to handle appropriately some parameters inside the input data,...
High
Unreviewed
CVE-2024-43700
was published
Aug 29, 2024
A vulnerability was found in code-projects Farmacia 1.0. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2024-11998
was published
Nov 30, 2024
A vulnerability was found in code-projects Blood Bank System 1.0. It has been rated as...
Moderate
Unreviewed
CVE-2024-12000
was published
Nov 30, 2024
tgt (aka Linux target framework) before 1.0.93 attempts to achieve entropy by calling rand...
Moderate
Unreviewed
CVE-2024-45751
was published
Sep 6, 2024
A vulnerability was found in code-projects Farmacia 1.0 and classified as problematic. Affected...
Moderate
Unreviewed
CVE-2024-11996
was published
Nov 30, 2024
A vulnerability was found in code-projects Farmacia 1.0. It has been classified as problematic....
Moderate
Unreviewed
CVE-2024-11997
was published
Nov 30, 2024
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: Fix use-after...
Unknown
Unreviewed
CVE-2024-27398
was published
May 14, 2024
The Social Sharing Plugin – Sassy Social Share plugin for WordPress is vulnerable to Reflected...
Moderate
Unreviewed
CVE-2024-11252
was published
Nov 30, 2024
Software installed and run as a non-privileged user may conduct improper GPU system calls to...
Unknown
Unreviewed
CVE-2024-43702
was published
Nov 30, 2024
Software installed and run as a non-privileged user may conduct improper GPU system calls to...
Unknown
Unreviewed
CVE-2024-43703
was published
Nov 30, 2024
In checkPermissions of RecognitionService.java, there is a possible permissions bypass due to a...
High
Unreviewed
CVE-2017-13316
was published
Nov 27, 2024
In ih264d_assign_pic_num of ih264d_utils.c there is a possible out of bound read due to missing...
Moderate
Unreviewed
CVE-2018-9350
was published
Nov 28, 2024
In ihevcd_parse_slice_data of ihevcd_parse_slice.c there is a possible heap buffer out of bound...
Moderate
Unreviewed
CVE-2018-9353
was published
Nov 28, 2024
An arbitrary file upload vulnerability in the component /admin/friendlink_edit of DedeBIZ v6.3.0...
High
Unreviewed
CVE-2024-52769
was published
Nov 20, 2024
An issue in Clementine v.1.3.1 allows a local attacker to execute arbitrary code via a crafted...
High
Unreviewed
CVE-2024-50986
was published
Nov 15, 2024
In BnAudioPolicyService::onTransact of IAudioPolicyService.cpp, there is a possible information...
Moderate
Unreviewed
CVE-2018-9377
was published
Nov 28, 2024
ProTip!
Advisories are also available from the
GraphQL API