GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,463
Erlang
33
GitHub Actions
22
Go
2,159
Maven
5,000+
npm
3,821
NuGet
696
pip
3,502
Pub
12
RubyGems
904
Rust
904
Swift
38
Unreviewed advisories
All unreviewed
5,000+
221 advisories
Filter by severity
A vulnerability has been found in LoveCards LoveCardsV2 up to 2.3.2 and classified as critical....
Moderate
Unreviewed
CVE-2025-2218
was published
Mar 12, 2025
A vulnerability classified as critical has been found in Thinkware Car Dashcam F800 Pro up to...
Moderate
Unreviewed
CVE-2025-2121
was published
Mar 9, 2025
A vulnerability, which was classified as problematic, has been found in Shenzhen Sixun Software...
Moderate
Unreviewed
CVE-2025-2114
was published
Mar 9, 2025
A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0 and classified as...
Moderate
Unreviewed
CVE-2025-2090
was published
Mar 7, 2025
A vulnerability has been found in StarSea99 starsea-mall 1.0/2.X and classified as critical....
Moderate
Unreviewed
CVE-2025-2089
was published
Mar 7, 2025
GMOD Apollo does not have sufficient logical or access checks when updating a user's information....
High
Unreviewed
CVE-2025-21092
was published
Mar 5, 2025
A vulnerability was found in i-Drive i11 and i12 up to 20250227. It has been declared as...
Moderate
Unreviewed
CVE-2025-1881
was published
Mar 3, 2025
/api/user/users in the web GUI for the Cubro EXA48200 network packet broker (build 20231025055018...
Moderate
Unreviewed
CVE-2024-55570
was published
Mar 3, 2025
A vulnerability was found in zj1983 zz up to 2024-8. It has been rated as critical. This issue...
Moderate
Unreviewed
CVE-2025-1847
was published
Mar 3, 2025
A vulnerability, which was classified as critical, was found in pbrong hrms up to 1.0.1. This...
Moderate
Unreviewed
CVE-2025-1815
was published
Mar 2, 2025
A vulnerability, which was classified as problematic, has been found in Eastnets PaymentSafe 2.5...
Moderate
Unreviewed
CVE-2025-1806
was published
Mar 2, 2025
DaVinci Resolve on MacOS was found to be installed with incorrect file permissions (rwxrwxrwx)....
Critical
Unreviewed
CVE-2025-1413
was published
Feb 28, 2025
The DHVC Form plugin for WordPress is vulnerable to privilege escalation in all versions up to,...
Critical
Unreviewed
CVE-2024-8420
was published
Feb 28, 2025
A vertical privilege escalation vulnerability in the component /controller/UserController.java of...
Moderate
Unreviewed
CVE-2025-25767
was published
Feb 21, 2025
Incorrect Privilege Assignment vulnerability in NotFound K Elements allows Privilege Escalation....
Critical
Unreviewed
CVE-2024-56000
was published
Feb 18, 2025
This vulnerability exists in RupeeWeb trading platform due to insufficient authorization controls...
High
Unreviewed
CVE-2025-26523
was published
Feb 14, 2025
A vulnerability was found in ywoa up to 2024.07.03. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2025-1226
was published
Feb 12, 2025
The WP Job Board Pro plugin for WordPress is vulnerable to privilege escalation in all versions...
Critical
Unreviewed
CVE-2024-12213
was published
Feb 12, 2025
The Real Estate 7 WordPress theme for WordPress is vulnerable to Privilege Escalation in all...
Critical
Unreviewed
CVE-2024-13421
was published
Feb 12, 2025
An incorrect privilege assignment vulnerability [CWE-266] in Fortinet FortiOS version 7.6.0, 7.4...
High
Unreviewed
CVE-2024-40591
was published
Feb 11, 2025
A vulnerability has been found in AppHouseKitchen AlDente Charge Limiter up to 1.29 on macOS and...
Moderate
Unreviewed
CVE-2025-1078
was published
Feb 6, 2025
IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20...
Moderate
Unreviewed
CVE-2024-49348
was published
Feb 5, 2025
Incorrect Privilege Assignment vulnerability in wpase.com Admin and Site Enhancements (ASE)...
High
Unreviewed
CVE-2025-24648
was published
Feb 4, 2025
PVWA (Password Vault Web Access) in CyberArk Privileged Access Manager Self-Hosted before 14.4...
Moderate
Unreviewed
CVE-2024-57967
was published
Feb 3, 2025
Incorrect Privilege Assignment vulnerability in NotFound Admin and Site Enhancements (ASE) Pro...
High
Unreviewed
CVE-2024-43333
was published
Feb 3, 2025
ProTip!
Advisories are also available from the
GraphQL API