GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,239
Erlang
31
GitHub Actions
21
Go
2,007
Maven
5,000+
npm
3,716
NuGet
662
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
843 advisories
Filter by severity
A Server-Side Request Forgery (SSRF) in pictureproxy.php of ChatGPT commit f9f4bbc allows...
Moderate
Unreviewed
CVE-2024-27564
was published
Mar 5, 2024
A Server-Side Request Forgery (SSRF) in the installUpdateThemePluginAction function of WonderCMS...
Critical
Unreviewed
CVE-2024-27561
was published
Mar 5, 2024
A vulnerability was found in Harrison Chase LangChain 0.1.9. It has been classified as critical....
Moderate
Unreviewed
CVE-2024-2057
was published
Mar 1, 2024
Server-Side Request Forgery (SSRF) vulnerability in sirv.Com Image Optimizer, Resizer and CDN –...
Moderate
Unreviewed
CVE-2024-27949
was published
Mar 1, 2024
Recipes version 1.5.10 allows arbitrary HTTP requests to be made
through the server. This is...
Moderate
Unreviewed
CVE-2024-0403
was published
Mar 1, 2024
An issue was discovered in RWS WorldServer before 11.7.3. An authenticated, remote attacker can...
High
Unreviewed
CVE-2022-34269
was published
Feb 29, 2024
An issue in open-emr before v.7.0.2 allows a remote attacker to escalate privileges via a crafted...
Low
Unreviewed
CVE-2024-26476
was published
Feb 29, 2024
Server-Side Request Forgery vulnerability in Haivision's Aviwest Manager and Aviwest Steamhub....
Moderate
Unreviewed
CVE-2024-1965
was published
Feb 28, 2024
Should an instance of AnythingLLM be hosted on an internal network and the attacked be explicitly...
Critical
Unreviewed
CVE-2024-0759
was published
Feb 27, 2024
Tencent Blueking CMDB v3.2.x to v3.9.x was discovered to contain a Server-Side Request Forgery ...
High
Unreviewed
CVE-2024-22873
was published
Feb 26, 2024
The inclusion of the web scraper for AnythingLLM means that any user with the proper...
Critical
Unreviewed
CVE-2024-0455
was published
Feb 26, 2024
Attacker, with permission to submit a link or submits a link via POST to be collected that is...
Critical
Unreviewed
CVE-2024-0440
was published
Feb 26, 2024
Server-Side Request Forgery (SSRF) vulnerability in Raaj Trambadia Pexels: Free Stock Photos.This...
Moderate
Unreviewed
CVE-2024-25915
was published
Feb 23, 2024
Grafana is an open-source platform for monitoring and observability. The CSV datasource plugin is...
Moderate
Unreviewed
CVE-2023-5122
was published
Feb 14, 2024
Server Side Template Injection in Gambio 4.9.2.0 allows attackers to run arbitrary code via...
Critical
Unreviewed
CVE-2024-23761
was published
Feb 13, 2024
The WP RSS Aggregator plugin for WordPress is vulnerable to Server-Side Request Forgery in all...
Low
Unreviewed
CVE-2024-0628
was published
Feb 7, 2024
Suite CRM version 7.14.2 allows making arbitrary HTTP requests through
the vulnerable server....
Moderate
Unreviewed
CVE-2023-6388
was published
Feb 7, 2024
Server-side request forgery (SSRF) vulnerability that could allow a rogue server on the local...
Moderate
Unreviewed
CVE-2023-22817
was published
Feb 6, 2024
A server-side request forgery vulnerability in the SAML component of Ivanti Connect Secure (9.x,...
High
Unreviewed
CVE-2024-21893
was published
Jan 31, 2024
Pega Platform versions 8.2.1 to Infinity 23.1.0 are affected by an Generated PDF issue that could...
High
Unreviewed
CVE-2023-50165
was published
Jan 31, 2024
Appwrite <= v1.4.13 is affected by a Server-Side Request Forgery (SSRF) via the '/v1/avatars...
Moderate
Unreviewed
CVE-2024-1063
was published
Jan 30, 2024
A Blind SSRF vulnerability exists in the "Crawl Meta Data" functionality of SEO Panel version 4...
Moderate
Unreviewed
CVE-2024-22648
was published
Jan 30, 2024
A vulnerability, which was classified as critical, has been found in Rebuild up to 3.5.5....
Moderate
Unreviewed
CVE-2024-1021
was published
Jan 30, 2024
A vulnerability classified as critical was found in 60IndexPage up to 1.8.5. This vulnerability...
High
Unreviewed
CVE-2024-0946
was published
Jan 26, 2024
A vulnerability classified as critical has been found in 60IndexPage up to 1.8.5. This affects an...
High
Unreviewed
CVE-2024-0945
was published
Jan 26, 2024
ProTip!
Advisories are also available from the
GraphQL API