GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,785
Erlang
36
GitHub Actions
29
Go
2,358
Maven
5,000+
npm
3,979
NuGet
720
pip
3,777
Pub
12
RubyGems
924
Rust
981
Swift
38
Unreviewed advisories
All unreviewed
5,000+
384 advisories
Filter by severity
A vulnerability was found in MicroWorld eScan Antivirus 7.0.32 on Linux. It has been declared as...
Moderate
Unreviewed
CVE-2025-0797
was published
Jan 29, 2025
A vulnerability classified as critical was found in SourceCodester Best Employee Management...
Moderate
Unreviewed
CVE-2025-0802
was published
Jan 29, 2025
A vulnerability classified as critical has been found in CampCodes School Management Software 1.0...
Moderate
Unreviewed
CVE-2025-0849
was published
Jan 30, 2025
Software installed and run as a non-privileged user may conduct improper read/write operations on...
High
Unreviewed
CVE-2024-46974
was published
Jan 31, 2025
Incorrect Privilege Assignment vulnerability in NotFound Admin and Site Enhancements (ASE) Pro...
High
Unreviewed
CVE-2024-43333
was published
Feb 3, 2025
PVWA (Password Vault Web Access) in CyberArk Privileged Access Manager Self-Hosted before 14.4...
Moderate
Unreviewed
CVE-2024-57967
was published
Feb 3, 2025
Incorrect Privilege Assignment vulnerability in wpase.com Admin and Site Enhancements (ASE)...
High
Unreviewed
CVE-2025-24648
was published
Feb 4, 2025
IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20...
Moderate
Unreviewed
CVE-2024-49348
was published
Feb 5, 2025
A vulnerability has been found in AppHouseKitchen AlDente Charge Limiter up to 1.29 on macOS and...
Moderate
Unreviewed
CVE-2025-1078
was published
Feb 6, 2025
An incorrect privilege assignment vulnerability [CWE-266] in Fortinet FortiOS version 7.6.0, 7.4...
High
Unreviewed
CVE-2024-40591
was published
Feb 11, 2025
The Real Estate 7 WordPress theme for WordPress is vulnerable to Privilege Escalation in all...
Critical
Unreviewed
CVE-2024-13421
was published
Feb 12, 2025
The WP Job Board Pro plugin for WordPress is vulnerable to privilege escalation in all versions...
Critical
Unreviewed
CVE-2024-12213
was published
Feb 12, 2025
A vulnerability was found in ywoa up to 2024.07.03. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2025-1226
was published
Feb 12, 2025
This vulnerability exists in RupeeWeb trading platform due to insufficient authorization controls...
High
Unreviewed
CVE-2025-26523
was published
Feb 14, 2025
Incorrect Privilege Assignment vulnerability in NotFound K Elements allows Privilege Escalation....
Critical
Unreviewed
CVE-2024-56000
was published
Feb 18, 2025
A vertical privilege escalation vulnerability in the component /controller/UserController.java of...
Moderate
Unreviewed
CVE-2025-25767
was published
Feb 21, 2025
The DHVC Form plugin for WordPress is vulnerable to privilege escalation in all versions up to,...
Critical
Unreviewed
CVE-2024-8420
was published
Feb 28, 2025
DaVinci Resolve on MacOS was found to be installed with incorrect file permissions (rwxrwxrwx)....
Critical
Unreviewed
CVE-2025-1413
was published
Feb 28, 2025
A vulnerability, which was classified as problematic, has been found in Eastnets PaymentSafe 2.5...
Moderate
Unreviewed
CVE-2025-1806
was published
Mar 2, 2025
A vulnerability, which was classified as critical, was found in pbrong hrms up to 1.0.1. This...
Moderate
Unreviewed
CVE-2025-1815
was published
Mar 2, 2025
A vulnerability was found in zj1983 zz up to 2024-8. It has been rated as critical. This issue...
Moderate
Unreviewed
CVE-2025-1847
was published
Mar 3, 2025
/api/user/users in the web GUI for the Cubro EXA48200 network packet broker (build 20231025055018...
Moderate
Unreviewed
CVE-2024-55570
was published
Mar 3, 2025
A vulnerability was found in i-Drive i11 and i12 up to 20250227. It has been declared as...
Moderate
Unreviewed
CVE-2025-1881
was published
Mar 3, 2025
GMOD Apollo does not have sufficient logical or access checks when updating a user's information....
High
Unreviewed
CVE-2025-21092
was published
Mar 5, 2025
A vulnerability has been found in StarSea99 starsea-mall 1.0/2.X and classified as critical....
Moderate
Unreviewed
CVE-2025-2089
was published
Mar 7, 2025
ProTip!
Advisories are also available from the
GraphQL API