GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,791
Erlang
36
GitHub Actions
29
Go
2,370
Maven
5,000+
npm
3,995
NuGet
720
pip
3,789
Pub
12
RubyGems
927
Rust
984
Swift
38
Unreviewed advisories
All unreviewed
5,000+
6,958 advisories
Filter by severity
Boa web server - CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path...
High
Unreviewed
CVE-2024-47916
was published
Nov 14, 2024
A command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated...
Moderate
Unreviewed
CVE-2024-2552
was published
Nov 14, 2024
A Directory listing issue was found in PHPGurukul User Registration & Login and User Management...
Moderate
Unreviewed
CVE-2024-50843
was published
Nov 14, 2024
A vulnerability was found in EyouCMS 1.51. It has been rated as critical. This issue affects the...
Moderate
Unreviewed
CVE-2024-11210
was published
Nov 14, 2024
Absolute path traversal (incorrect restriction of a path to a restricted directory) vulnerability...
Moderate
Unreviewed
CVE-2024-11215
was published
Nov 14, 2024
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2024-52371
was published
Nov 14, 2024
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2024-52378
was published
Nov 14, 2024
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
Moderate
Unreviewed
CVE-2024-52396
was published
Nov 14, 2024
FitNesse Path Traversal
Moderate
CVE-2024-42499
was published
for
org.fitnesse:fitnesse
(Maven)
Nov 15, 2024
A vulnerability, which was classified as critical, was found in Landray EKP up to 16.0. This...
Moderate
Unreviewed
CVE-2024-11238
was published
Nov 15, 2024
A vulnerability has been found in Landray EKP up to 16.0 and classified as critical. This...
Moderate
Unreviewed
CVE-2024-11239
was published
Nov 15, 2024
IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, and 6.1.0.0 could allow a remote...
High
Unreviewed
CVE-2024-41784
was published
Nov 15, 2024
yshopmall V1.0 has an arbitrary file upload vulnerability, which can enable RCE or even take over...
Critical
Unreviewed
CVE-2024-50648
was published
Nov 15, 2024
The user avatar upload function in python_book V1.0 has an arbitrary file upload vulnerability.
Critical
Unreviewed
CVE-2024-50649
was published
Nov 15, 2024
Unpatched Remote Code Execution in Gogs
High
CVE-2024-44625
was published
for
gogs.io/gogs
(Go)
Nov 15, 2024
The PDF Generator Addon for Elementor Page Builder plugin for WordPress is vulnerable to Path...
High
Unreviewed
CVE-2024-9935
was published
Nov 16, 2024
The DVC from TRCore has a Path Traversal vulnerability, allowing unauthenticated remote attackers...
High
Unreviewed
CVE-2024-11309
was published
Nov 18, 2024
The DVC from TRCore has a Path Traversal vulnerability, allowing unauthenticated remote attackers...
High
Unreviewed
CVE-2024-11310
was published
Nov 18, 2024
The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of...
Critical
Unreviewed
CVE-2024-11312
was published
Nov 18, 2024
The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of...
Critical
Unreviewed
CVE-2024-11315
was published
Nov 18, 2024
The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of...
Critical
Unreviewed
CVE-2024-11311
was published
Nov 18, 2024
The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of...
Critical
Unreviewed
CVE-2024-11313
was published
Nov 18, 2024
The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of...
Critical
Unreviewed
CVE-2024-11314
was published
Nov 18, 2024
A low privileged remote attacker can specify an arbitrary file on the filesystem which may lead...
High
Unreviewed
CVE-2024-41973
was published
Nov 18, 2024
A low privileged remote attacker can overwrite an arbitrary file on the filesystem leading to a...
High
Unreviewed
CVE-2024-41971
was published
Nov 18, 2024
ProTip!
Advisories are also available from the
GraphQL API