GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,239
Erlang
31
GitHub Actions
21
Go
2,007
Maven
5,000+
npm
3,716
NuGet
662
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
5,529 advisories
Filter by severity
The ProfilePress plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
Moderate
Unreviewed
CVE-2024-11083
was published
Nov 27, 2024
The web console in Cisco Firepower Management Center 6.0.1 allows remote authenticated users to...
Moderate
Unreviewed
CVE-2016-6435
was published
May 17, 2022
A vulnerability in the management console of Cisco Firepower System Software could allow an...
Moderate
Unreviewed
CVE-2018-0278
was published
May 13, 2022
The Jeg Elementor Kit plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
Moderate
Unreviewed
CVE-2024-8899
was published
Nov 26, 2024
The Increase Maximum Upload File Size | Increase Execution Time plugin for WordPress is...
Moderate
Unreviewed
CVE-2024-11265
was published
Nov 23, 2024
The CTT Expresso para WooCommerce plugin for WordPress is vulnerable to sensitive information...
Moderate
Unreviewed
CVE-2024-6687
was published
Aug 1, 2024
The Sky Addons for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure...
Moderate
Unreviewed
CVE-2024-9542
was published
Nov 22, 2024
A flaw was found in GnuTLS. The Minerva attack is a cryptographic vulnerability that exploits...
Moderate
Unreviewed
CVE-2024-28834
was published
Mar 21, 2024
The The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu,...
Moderate
Unreviewed
CVE-2024-10365
was published
Nov 20, 2024
A vulnerability in the Admin portal of Cisco Identity Services Engine (ISE) could allow an...
Moderate
Unreviewed
CVE-2020-3525
was published
Nov 18, 2024
A vulnerability in a debug function for Cisco RCM for Cisco StarOS Software could allow...
Moderate
Unreviewed
CVE-2022-20648
was published
Nov 15, 2024
An information disclosure vulnerability was identified in GitHub Enterprise Server via attacker...
Moderate
Unreviewed
CVE-2024-9539
was published
Oct 11, 2024
The Essential Addons for Elementor – Best Elementor Addon, Templates, Widgets, Kits & WooCommerce...
Moderate
Unreviewed
CVE-2024-8978
was published
Nov 15, 2024
Vulnerability of foreground service restrictions being bypassed in the NMS module.Successful...
Moderate
Unreviewed
CVE-2023-52097
was published
Feb 18, 2024
A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected...
Moderate
Unreviewed
CVE-2024-46894
was published
Nov 12, 2024
A vulnerability was found in vhost_new_msg in drivers/vhost/vhost.c in the Linux kernel, which...
Moderate
Unreviewed
CVE-2024-0340
was published
Jan 9, 2024
Mattermost versions 10.0.x <= 10.0.0 and 9.11.x <= 9.11.2 fail to properly query ElasticSearch...
Moderate
Unreviewed
CVE-2024-52032
was published
Nov 9, 2024
The Magical Addons For Elementor plugin for WordPress is vulnerable to Sensitive Information...
Moderate
Unreviewed
CVE-2024-10352
was published
Nov 9, 2024
The Quform - WordPress Form Builder plugin for WordPress is vulnerable to Sensitive Information...
Moderate
Unreviewed
CVE-2024-8756
was published
Nov 9, 2024
A vulnerability classified as problematic was found in emqx neuron up to 2.10.0. Affected by this...
Moderate
Unreviewed
CVE-2024-10965
was published
Nov 7, 2024
A vulnerability in the web UI of Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 and 8800...
Moderate
Unreviewed
CVE-2024-20445
was published
Nov 6, 2024
A vulnerability in the logging subsystem of Cisco Meeting Management could allow an authenticated...
Moderate
Unreviewed
CVE-2024-20507
was published
Nov 6, 2024
A vulnerability in the logging component of Cisco Unified Communications Manager IM &...
Moderate
Unreviewed
CVE-2024-20457
was published
Nov 6, 2024
A vulnerability classified as problematic has been found in D-Link DNS-320, DNS-320LW, DNS-325...
Moderate
Unreviewed
CVE-2024-10916
was published
Nov 6, 2024
A vulnerability was found in Foreman's loader macros introduced with report templates. These...
Moderate
Unreviewed
CVE-2024-8553
was published
Oct 31, 2024
ProTip!
Advisories are also available from the
GraphQL API