GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,660
Maven
5,000+
npm
4,289
NuGet
760
pip
4,069
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
27,504 advisories
Filter by severity
SQL Injection vulnerability in audit/class.audit.php in osTicket osTicket-plugins before commit...
Critical
Unreviewed
CVE-2022-31890
was published
Apr 6, 2023
THe WCFM Membership plugin for WordPress is vulnerable to privilege escalation in versions up to,...
Critical
Unreviewed
CVE-2022-4939
was published
Apr 5, 2023
An arbitrary file upload vulnerability in readium-js v0.32.0 allows attackers to execute...
Critical
Unreviewed
CVE-2023-24720
was published
Apr 5, 2023
An issue was identified in GitLab CE/EE affecting all versions from 1.0 prior to 15.8.5, 15.9...
Critical
Unreviewed
CVE-2023-1708
was published
Apr 5, 2023
A vulnerability in the web-based management interface of Cisco RV340, RV340W, RV345, and RV345P...
Critical
Unreviewed
CVE-2023-20073
was published
Apr 5, 2023
MyBatis-Plus vulnerable to SQL injection via TenantPlugin
Critical
CVE-2023-25330
was published
for
com.baomidou:mybatis-plus
(Maven)
Apr 5, 2023
A vulnerability, which was classified as critical, was found in SourceCodester Online Payroll...
Critical
Unreviewed
CVE-2023-1845
was published
Apr 5, 2023
A vulnerability was found in SourceCodester Online Payroll System 1.0 and classified as critical....
Critical
Unreviewed
CVE-2023-1847
was published
Apr 5, 2023
A vulnerability has been found in SourceCodester Online Payroll System 1.0 and classified as...
Critical
Unreviewed
CVE-2023-1846
was published
Apr 5, 2023
A vulnerability was found in SourceCodester Online Payroll System 1.0. It has been classified as...
Critical
Unreviewed
CVE-2023-1848
was published
Apr 5, 2023
A vulnerability, which was classified as problematic, was found in SourceCodester Online Graduate...
Critical
Unreviewed
CVE-2023-1854
was published
Apr 5, 2023
A vulnerability has been found in SourceCodester Air Cargo Management System 1.0 and classified...
Critical
Unreviewed
CVE-2023-1856
was published
Apr 5, 2023
A vulnerability was found in SourceCodester Online Payroll System 1.0. It has been rated as...
Critical
Unreviewed
CVE-2023-1850
was published
Apr 5, 2023
A vulnerability was found in SourceCodester Online Payroll System 1.0. It has been declared as...
Critical
Unreviewed
CVE-2023-1849
was published
Apr 5, 2023
LangChain vulnerable to code injection
Critical
CVE-2023-29374
was published
for
langchain
(pip)
Apr 5, 2023
An issue was discovered in Samsung Exynos Mobile Processor and Baseband Modem Processor for...
Critical
Unreviewed
CVE-2023-28613
was published
Apr 4, 2023
The listed versions of Nexx Smart Home devices use hard-coded credentials. An attacker with...
Critical
Unreviewed
CVE-2023-1748
was published
Apr 4, 2023
Buffer Overflow vulnerabilty found in Nginx NJS v.0feca92 allows a remote attacker to execute...
Critical
Unreviewed
CVE-2020-19692
was published
Apr 4, 2023
An issue found in Espruino Espruino 6ea4c0a allows an attacker to execute arbitrrary code via...
Critical
Unreviewed
CVE-2020-19693
was published
Apr 4, 2023
Buffer Overflow found in Nginx NJS allows a remote attacker to execute arbitrary code via the...
Critical
Unreviewed
CVE-2020-19695
was published
Apr 4, 2023
Directory Traversal vulnerability found in B3log Wide allows a an attacker to escalate privileges...
Critical
Unreviewed
CVE-2020-19279
was published
Apr 4, 2023
GreenPacket OH736's WR-1200 Indoor Unit, OT-235 with firmware versions M-IDU-1.6.0.3_V1.1 and MH...
Critical
Unreviewed
CVE-2023-26866
was published
Apr 4, 2023
Cross Site Scripting vulnerability found in Netgate pfSense 2.4.4 and ACME package v.0.6.3 allows...
Critical
Unreviewed
CVE-2020-21487
was published
Apr 4, 2023
An issue found in Zend Framework v.3.1.3 and before allow a remote attacker to execute arbitrary...
Critical
Unreviewed
CVE-2020-29312
was published
Apr 4, 2023
Ming-Soft MCMS vulnerable to SQL injection
Critical
CVE-2020-20913
was published
for
net.mingsoft:ms-mcms
(Maven)
Apr 4, 2023
ProTip!
Advisories are also available from the
GraphQL API