GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
21
Go
2,003
Maven
5,000+
npm
3,713
NuGet
661
pip
3,386
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
108,994 advisories
Filter by severity
A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If...
Moderate
Unreviewed
CVE-2024-32768
was published
Nov 22, 2024
A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If...
Moderate
Unreviewed
CVE-2024-32769
was published
Nov 22, 2024
Microsoft Edge (Chromium-based) Spoofing Vulnerability
Moderate
Unreviewed
CVE-2024-49054
was published
Nov 22, 2024
A path traversal vulnerability has been reported to affect several QNAP operating system versions...
Moderate
Unreviewed
CVE-2024-37043
was published
Nov 22, 2024
A buffer copy without checking size of input vulnerability has been reported to affect several...
Moderate
Unreviewed
CVE-2024-37041
was published
Nov 22, 2024
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating...
Moderate
Unreviewed
CVE-2024-37042
was published
Nov 22, 2024
A buffer copy without checking size of input vulnerability has been reported to affect several...
Moderate
Unreviewed
CVE-2024-37044
was published
Nov 22, 2024
Possible XSS in iManager URL for access Component has been discovered in
OpenText™ iManager 3.2.5...
Moderate
Unreviewed
CVE-2021-38134
was published
Nov 22, 2024
Possible improper input validation Vulnerability
in iManager has been discovered in
OpenText™...
Moderate
Unreviewed
CVE-2021-38118
was published
Nov 22, 2024
Possible Reflected Cross-Site Scripting (XSS) Vulnerability
in iManager has been discovered in...
Moderate
Unreviewed
CVE-2021-38119
was published
Nov 22, 2024
D-LINK DI-8003 v16.07.26A1 was discovered to contain a buffer overflow via the host_ip parameter...
Moderate
Unreviewed
CVE-2024-52755
was published
Nov 22, 2024
The F4 Improvements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG...
Moderate
Unreviewed
CVE-2024-9442
was published
Nov 22, 2024
A potential security vulnerability has been identified in the HPE NonStop DISK UTIL (T9208)...
Moderate
Unreviewed
CVE-2024-51766
was published
Nov 22, 2024
Certain unprivileged processes are able to perform IOCTL calls.
Moderate
Unreviewed
CVE-2017-9711
was published
Nov 22, 2024
Possible out of bound access in audio module due to lack of validation of user provided input.
Moderate
Unreviewed
CVE-2021-30299
was published
Nov 22, 2024
IBM PowerVM Platform KeyStore (IBM PowerVM Hypervisor FW950.00 through FW950.90, FW1030.00...
Moderate
Unreviewed
CVE-2024-41781
was published
Nov 22, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Moderate
Unreviewed
CVE-2024-7882
was published
Nov 22, 2024
The Easy Twitter Feed – Twitter feeds plugin for WP plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-10666
was published
Nov 22, 2024
The Control horas plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2024-11381
was published
Nov 22, 2024
The Ultimate YouTube Video & Shorts Player With Vimeo plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-11355
was published
Nov 22, 2024
The Premium Packages – Sell Digital Products Securely plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-11225
was published
Nov 22, 2024
The MailMunch – Grow your Email List plugin for WordPress is vulnerable to Reflected Cross-Site...
Moderate
Unreviewed
CVE-2024-8735
was published
Nov 22, 2024
The GEO my WP WordPress plugin before 4.5, gmw-premium-settings WordPress plugin before 3.1 does...
Moderate
Unreviewed
CVE-2024-9422
was published
Nov 22, 2024
The Gallery Blocks with Lightbox. Image Gallery, (HTML5 video , YouTube, Vimeo) Video Gallery and...
Moderate
Unreviewed
CVE-2024-10034
was published
Nov 22, 2024
Insufficiently protected credentials issue exists in AIPHONE IX SYSTEM and IXG SYSTEM. A network...
Moderate
Unreviewed
CVE-2024-39290
was published
Nov 22, 2024
ProTip!
Advisories are also available from the
GraphQL API