GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
21
Go
2,003
Maven
5,000+
npm
3,714
NuGet
661
pip
3,387
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
109,017 advisories
Filter by severity
In bta_hd_set_report_act of bta_hd_act.cc, there is a possible out-of-bounds read due to an...
Moderate
Unreviewed
CVE-2018-9481
was published
Nov 20, 2024
In bta_dm_remove_sec_dev_entry of bta_dm_act.cc, there is a possible out of bounds read due to a...
Moderate
Unreviewed
CVE-2018-9483
was published
Nov 20, 2024
In intr_data_copy_cb of btif_hd.cc, there is a possible out of bounds read due to an integer...
Moderate
Unreviewed
CVE-2018-9482
was published
Nov 20, 2024
In hidh_l2cif_data_ind of hidh_conn.cc, there is a possible out of bounds read due to a missing...
Moderate
Unreviewed
CVE-2018-9486
was published
Nov 20, 2024
In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to a missing...
Moderate
Unreviewed
CVE-2018-9485
was published
Nov 20, 2024
A vulnerability classified as critical was found in Code4Berry Decoration Management System 1.0....
Moderate
Unreviewed
CVE-2024-11484
was published
Nov 20, 2024
A vulnerability has been found in Code4Berry Decoration Management System 1.0 and classified as...
Moderate
Unreviewed
CVE-2024-11487
was published
Nov 20, 2024
A vulnerability, which was classified as critical, has been found in Code4Berry Decoration...
Moderate
Unreviewed
CVE-2024-11485
was published
Nov 20, 2024
The PublishPress Revisions: Duplicate Posts, Submit, Approve and Schedule Content Changes plugin...
Moderate
Unreviewed
CVE-2024-11154
was published
Nov 20, 2024
The MStore API – Create Native Android & iOS Apps On The Cloud plugin for WordPress is vulnerable...
Moderate
Unreviewed
CVE-2024-11179
was published
Nov 20, 2024
The WP Project Manager plugin for WordPress is vulnerable to unauthorized modification of data...
Moderate
Unreviewed
CVE-2024-10520
was published
Nov 20, 2024
The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2024-10872
was published
Nov 20, 2024
The Yaad Sarig Payment Gateway For WC plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2024-10665
was published
Nov 20, 2024
The Save as PDF Plugin by Pdfcrowd plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2024-10891
was published
Nov 20, 2024
Improper access control vulnerability in M-Files Aino in versions before 24.10 allowed an...
Moderate
Unreviewed
CVE-2024-11176
was published
Nov 20, 2024
The Booster for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting...
Moderate
Unreviewed
CVE-2024-9239
was published
Nov 20, 2024
The 404 Solution plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via URLs in...
Moderate
Unreviewed
CVE-2024-11277
was published
Nov 20, 2024
The MailChimp Forms by MailMunch plugin for WordPress is vulnerable to Reflected Cross-Site...
Moderate
Unreviewed
CVE-2024-8726
was published
Nov 20, 2024
Local File Inclusion vulnerability in M-Files Server in versions before 24.11 (excluding 24.8 SR1...
Moderate
Unreviewed
CVE-2024-10126
was published
Nov 20, 2024
The The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu,...
Moderate
Unreviewed
CVE-2024-10365
was published
Nov 20, 2024
The ProfileGrid – User Profiles, Groups and Communities plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-10900
was published
Nov 20, 2024
Exposure of sensitive system information to an unauthorized control sphere issue exists in...
Moderate
Unreviewed
CVE-2024-52033
was published
Nov 20, 2024
Missing authentication for critical function vulnerability exists in Rakuten Turbo 5G firmware...
Moderate
Unreviewed
CVE-2024-47865
was published
Nov 20, 2024
The GD bbPress Attachments plugin for WordPress is vulnerable to Reflected Cross-Site Scripting...
Moderate
Unreviewed
CVE-2024-11278
was published
Nov 20, 2024
Use of hard-coded cryptographic key issue exists in "Kura Sushi Official App Produced by EPARK"...
Moderate
Unreviewed
CVE-2024-52614
was published
Nov 20, 2024
ProTip!
Advisories are also available from the
GraphQL API