GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,814
Erlang
36
GitHub Actions
32
Go
2,399
Maven
5,000+
npm
4,040
NuGet
722
pip
3,829
Pub
12
RubyGems
932
Rust
1,002
Swift
38
Unreviewed advisories
All unreviewed
5,000+
3,075 advisories
Filter by severity
ICEcoder vulnerable to Path Traversal
High
CVE-2022-34026
was published
for
icecoder/icecoder
(Composer)
Sep 23, 2022
Directory traversal in /connectors/index.php in MODX Revolution before 2.5.2-pl allows remote...
High
Unreviewed
CVE-2016-10038
was published
May 17, 2022
lite-dev-server vulnerable to Directory Traversal
High
CVE-2022-25895
was published
for
lite-dev-server
(npm)
Dec 21, 2022
easy-static-server vulnerable to Directory Traversal
High
CVE-2022-25931
was published
for
easy-static-server
(npm)
Dec 20, 2022
A relative path traversal vulnerability [CWE-23] in FortiClient for Windows versions 7.0.2 and...
High
Unreviewed
CVE-2021-41031
was published
Jul 19, 2022
All editions of Rapid7 Metasploit prior to version 4.13.0-2017020701 contain a directory...
High
Unreviewed
CVE-2017-5228
was published
May 17, 2022
Easy File Sharing FTP Server version 3.6 is vulnerable to a directory traversal vulnerability...
High
Unreviewed
CVE-2017-6510
was published
May 17, 2022
Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2022-27611
was published
Jul 29, 2022
Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2022-22685
was published
Jul 29, 2022
Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2022-27615
was published
Jul 29, 2022
A directory traversal vulnerability in the web application in McAfee (now Intel Security) SaaS...
High
Unreviewed
CVE-2013-7462
was published
May 17, 2022
HTTP Exploit in eMLi Portal in AuroMeera Technometrix Pvt. Ltd. eMLi allows an Attacker to View...
High
Unreviewed
CVE-2017-7258
was published
May 17, 2022
EMC Isilon OneFS is affected by a path traversal vulnerability that may potentially be exploited...
High
Unreviewed
CVE-2017-4980
was published
May 17, 2022
An issue was discovered in Fidelix FX-20 series controllers, versions prior to 11.50.19....
High
Unreviewed
CVE-2016-9364
was published
May 17, 2022
Directory traversal vulnerability in inc/files/files.ctrl.php in b2evolution through 6.8.3 allows...
High
Unreviewed
CVE-2017-5480
was published
May 17, 2022
OMICARD EDM’s mail image relay function has a path traversal vulnerability. An unauthenticated...
High
Unreviewed
CVE-2022-35216
was published
Aug 5, 2022
Goldshell ASIC Miners v2.2.1 and below was discovered to contain a path traversal vulnerability...
High
Unreviewed
CVE-2022-24659
was published
Jul 21, 2022
pyenv 1.2.24 through 2.3.2 allows local users to gain privileges via a .python-version file in...
High
Unreviewed
CVE-2022-35861
was published
Jul 18, 2022
static-dev-server vulnerable to path traversal
High
CVE-2022-25848
was published
for
static-dev-server
(npm)
Nov 29, 2022
Directory traversal vulnerability in magick/module.c in ImageMagick 6.9.4-7 allows remote...
High
Unreviewed
CVE-2016-10048
was published
May 17, 2022
An issue was discovered in CA Unified Infrastructure Management Version 8.47 and earlier. The...
High
Unreviewed
CVE-2016-5803
was published
May 17, 2022
Remote file download vulnerability in candidate-application-form v1.0 wordpress plugin
High
Unreviewed
CVE-2015-1000005
was published
May 17, 2022
Pandora FMS v7.0NG.760 and below allows a relative path traversal in File Manager where a...
High
Unreviewed
CVE-2022-1648
was published
Jul 27, 2022
In Opsview Monitor Pro (Prior to 5.1.0.162300841, prior to 5.0.2.27475, prior to 4.6.4.162391051,...
High
Unreviewed
CVE-2016-10367
was published
May 17, 2022
A vulnerability in the Cisco Unified Reporting upload tool accessed via the Cisco Unified...
High
Unreviewed
CVE-2016-9210
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API