GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
22
Go
2,095
Maven
5,000+
npm
3,760
NuGet
678
pip
3,446
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
11,341 advisories
Filter by severity
Mattermost fails to limit the size of a request path
Low
CVE-2024-22091
was published
for
github.com/mattermost/mattermost-server
(Go)
Apr 26, 2024
The BackUpWordPress plugin for WordPress is vulnerable to Directory Traversal in all versions up...
Low
Unreviewed
CVE-2024-3034
was published
Apr 27, 2024
A vulnerability was found in Techkshetra Info Solutions Savsoft Quiz 6.0 and classified as...
Low
Unreviewed
CVE-2024-4256
was published
Apr 27, 2024
Undici's fetch with integrity option is too lax when algorithm is specified but hash value is in incorrect
Low
CVE-2024-30261
was published
for
undici
(npm)
Apr 4, 2024
A vulnerability was found in Juanpao JPShop up to 1.5.02. It has been declared as problematic....
Low
Unreviewed
CVE-2024-1258
was published
Feb 6, 2024
In the Linux kernel, the following vulnerability has been resolved:
drm/buddy: Fix alloc_range()...
Low
Unreviewed
CVE-2024-26911
was published
Apr 17, 2024
A flaw was found in the mod_proxy_cluster in the Apache server. This issue may allow a malicious...
Low
Unreviewed
CVE-2023-6710
was published
Dec 13, 2023
IBM Aspera Faspex 5.0.0 through 5.0.7 could allow a local user to obtain or modify sensitive...
Low
Unreviewed
CVE-2023-37397
was published
Apr 19, 2024
XMLUnit for Java has Insecure Defaults when Processing XSLT Stylesheets
Low
CVE-2024-31573
was published
for
org.xmlunit:xmlunit-core
(Maven)
May 1, 2024
Undici proxy-authorization header not cleared on cross-origin redirect in fetch
Low
CVE-2024-24758
was published
for
undici
(npm)
Feb 16, 2024
An Improper Validation of Integrity Check Value vulnerability in Zscaler Client Connector on...
Low
Unreviewed
CVE-2024-23462
was published
May 2, 2024
Wagtail has permission check bypass when editing a model with per-field restrictions through `wagtail.contrib.settings` or `ModelViewSet`
Low
CVE-2024-32882
was published
for
wagtail
(pip)
May 1, 2024
Kofax Power PDF JPG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This...
Low
Unreviewed
CVE-2023-37353
was published
May 3, 2024
Kofax Power PDF JPG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This...
Low
Unreviewed
CVE-2023-37352
was published
May 3, 2024
Kofax Power PDF U3D File Parsing Use-After-Free Information Disclosure Vulnerability. This...
Low
Unreviewed
CVE-2023-38078
was published
May 3, 2024
Foxit PDF Reader AcroForm Doc Object Out-Of-Bounds Read Information Disclosure Vulnerability....
Low
Unreviewed
CVE-2023-38110
was published
May 3, 2024
PDF-XChange Editor PDF File Parsing Uninitialized Variable Information Disclosure Vulnerability....
Low
Unreviewed
CVE-2023-39484
was published
May 3, 2024
Sante DICOM Viewer Pro DCM File Parsing Use-After-Free Information Disclosure Vulnerability. This...
Low
Unreviewed
CVE-2023-34294
was published
May 3, 2024
PDF-XChange Editor OXPS File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability....
Low
Unreviewed
CVE-2023-39503
was published
May 3, 2024
Sante DICOM Viewer Pro DCM File Parsing Use-After-Free Information Disclosure Vulnerability. This...
Low
Unreviewed
CVE-2023-35734
was published
May 3, 2024
Kofax Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This...
Low
Unreviewed
CVE-2023-37351
was published
May 3, 2024
Kofax Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This...
Low
Unreviewed
CVE-2023-38086
was published
May 3, 2024
Sante DICOM Viewer Pro DCM File Parsing Use-After-Free Information Disclosure Vulnerability. This...
Low
Unreviewed
CVE-2023-32135
was published
May 3, 2024
PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This...
Low
Unreviewed
CVE-2023-40469
was published
May 3, 2024
PDF-XChange Editor OXPS File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability....
Low
Unreviewed
CVE-2023-39504
was published
May 3, 2024
ProTip!
Advisories are also available from the
GraphQL API