GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,360
Erlang
33
GitHub Actions
22
Go
2,127
Maven
5,000+
npm
3,793
NuGet
683
pip
3,471
Pub
12
RubyGems
894
Rust
894
Swift
38
Unreviewed advisories
All unreviewed
5,000+
123,754 advisories
Filter by severity
A vulnerability, which was classified as problematic, was found in PMWeb 7.2.0. This affects an...
Moderate
Unreviewed
CVE-2025-1341
was published
Feb 16, 2025
A vulnerability was found in NUUO Camera up to 20250203. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2025-1338
was published
Feb 16, 2025
A vulnerability was found in TOTOLINK X18 9.1.0cu.2024_B20220329. It has been rated as critical....
Moderate
Unreviewed
CVE-2025-1339
was published
Feb 16, 2025
A vulnerability was found in Eastnets PaymentSafe 2.5.26.0. It has been classified as problematic...
Moderate
Unreviewed
CVE-2025-1337
was published
Feb 16, 2025
A vulnerability has been found in CmsEasy 7.7.7.9 and classified as problematic. Affected by this...
Moderate
Unreviewed
CVE-2025-1336
was published
Feb 16, 2025
libarchive through 3.7.7 has a heap-based buffer over-read in header_gnu_longlink in...
Moderate
Unreviewed
CVE-2024-57970
was published
Feb 16, 2025
A vulnerability, which was classified as problematic, was found in CmsEasy 7.7.7.9. Affected is...
Moderate
Unreviewed
CVE-2025-1335
was published
Feb 16, 2025
A vulnerability has been found in FastCMS up to 0.1.5 and classified as problematic. This...
Moderate
Unreviewed
CVE-2025-1332
was published
Feb 16, 2025
Bit Assist plugin for WordPress is vulnerable to Path Traversal in all versions up to, and...
Moderate
Unreviewed
CVE-2025-0822
was published
Feb 15, 2025
The Responsive Plus – Starter Templates, Advanced Features and Customizer Settings for Responsive...
Moderate
Unreviewed
CVE-2024-13834
was published
Feb 15, 2025
The Team – Team Members Showcase Plugin plugin for WordPress is vulnerable to unauthorized access...
Moderate
Unreviewed
CVE-2024-13439
was published
Feb 15, 2025
The WP Project Manager – Task, team, and project management plugin featuring kanban board and...
Moderate
Unreviewed
CVE-2024-13752
was published
Feb 15, 2025
The DirectoryPress Frontend plugin for WordPress is vulnerable to Cross-Site Request Forgery in...
Moderate
Unreviewed
CVE-2024-10581
was published
Feb 15, 2025
The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2025-1005
was published
Feb 15, 2025
The WP Project Manager – Task, team, and project management plugin featuring kanban board and...
Moderate
Unreviewed
CVE-2024-13500
was published
Feb 15, 2025
The Media Library Folders plugin for WordPress is vulnerable to unauthorized plugin settings...
Moderate
Unreviewed
CVE-2025-0935
was published
Feb 15, 2025
The Front End Users plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2024-13563
was published
Feb 15, 2025
The Customer Email Verification for WooCommerce plugin for WordPress is vulnerable to Sensitive...
Moderate
Unreviewed
CVE-2024-13525
was published
Feb 15, 2025
Brocade SANnav before SANnav 2.3.1b
enables weak TLS ciphers on ports 443 and 18082. In case of...
Moderate
Unreviewed
CVE-2024-10405
was published
Feb 15, 2025
If Brocade Fabric OS before Fabric OS 9.2.0 configuration settings are not set to encrypt SNMP...
Moderate
Unreviewed
CVE-2024-5462
was published
Feb 15, 2025
Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2025-21401
was published
Feb 15, 2025
A SQL Injection vulnerability was found in /bpms/index.php in Source Code and Project Beauty...
Moderate
Unreviewed
CVE-2025-26157
was published
Feb 14, 2025
Certain HP LaserJet Pro, HP LaserJet Enterprise, and HP LaserJet Managed Printers may potentially...
Moderate
Unreviewed
CVE-2025-26507
was published
Feb 14, 2025
A Stored Cross-Site Scripting (XSS) vulnerability was discovered in the manage-employee.php page...
Moderate
Unreviewed
CVE-2025-26158
was published
Feb 14, 2025
SQL Injection vulnerability in hooskcms v.1.7.1 allows a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2025-25991
was published
Feb 14, 2025
ProTip!
Advisories are also available from the
GraphQL API