GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,296
Erlang
31
GitHub Actions
21
Go
2,063
Maven
5,000+
npm
3,744
NuGet
668
pip
3,424
Pub
12
RubyGems
892
Rust
875
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
5,570 advisories
Filter by severity
A vulnerability, which was classified as problematic, was found in Tsinghua Unigroup Electronic...
Moderate
Unreviewed
CVE-2025-0227
was published
Jan 5, 2025
A vulnerability, which was classified as problematic, has been found in Tsinghua Unigroup...
Moderate
Unreviewed
CVE-2025-0226
was published
Jan 5, 2025
A vulnerability was found in Provision-ISR SH-4050A-2, SH-4100A-2L(MM), SH-8100A-2L(MM), SH...
Moderate
Unreviewed
CVE-2025-0224
was published
Jan 5, 2025
A vulnerability classified as problematic has been found in Dahua IPC-HFW1200S, IPC-HFW2300R-Z,...
Moderate
Unreviewed
CVE-2024-13131
was published
Jan 5, 2025
A vulnerability classified as problematic has been found in Beijing Yunfan Internet Technology...
Moderate
Unreviewed
CVE-2024-13110
was published
Jan 2, 2025
A vulnerability was found in Tsinghua Unigroup Electronic Archives Management System 3.2.210802...
Moderate
Unreviewed
CVE-2024-13042
was published
Dec 30, 2024
Mashov – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
Moderate
Unreviewed
CVE-2024-47923
was published
Dec 30, 2024
A vulnerability classified as problematic has been found in Amcrest IP2M-841B, IP2M-841W, IPC...
Moderate
Unreviewed
CVE-2024-12984
was published
Dec 27, 2024
A vulnerability was found in Intelbras VIP S3020 G2, VIP S4020 G2, VIP S4020 G3 and VIP S4320 G2...
Moderate
Unreviewed
CVE-2024-12896
was published
Dec 23, 2024
An AirVantage online Warranty Checker tool vulnerability could allow an attacker to
perform bulk...
Moderate
Unreviewed
CVE-2023-31280
was published
Dec 21, 2024
The Page Restriction WordPress (WP) – Protect WP Pages/Post plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-11297
was published
Dec 20, 2024
Remote authentication bypass vulnerability in HPE Alletra Storage MP B10000 in versions prior to...
Moderate
Unreviewed
CVE-2024-54009
was published
Dec 20, 2024
The Button Block – Get fully customizable & multi-functional buttons plugin for WordPress is...
Moderate
Unreviewed
CVE-2024-12560
was published
Dec 19, 2024
The WP Project Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in...
Moderate
Unreviewed
CVE-2024-10548
was published
Dec 19, 2024
The Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content...
Moderate
Unreviewed
CVE-2024-11291
was published
Dec 18, 2024
The Animation Addons for Elementor plugin for WordPress is vulnerable to Sensitive Information...
Moderate
Unreviewed
CVE-2024-12340
was published
Dec 18, 2024
The Simple Page Access Restriction plugin for WordPress is vulnerable to Sensitive Information...
Moderate
Unreviewed
CVE-2024-11295
was published
Dec 18, 2024
The Accept Authorize.NET Payments Using Contact Form 7 plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-12250
was published
Dec 18, 2024
The ElementsReady Addons for Elementor plugin for WordPress is vulnerable to Sensitive...
Moderate
Unreviewed
CVE-2024-10356
was published
Dec 17, 2024
The PPWP – Password Protect Pages plugin for WordPress is vulnerable to Sensitive Information...
Moderate
Unreviewed
CVE-2024-11280
was published
Dec 17, 2024
The Memberful plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
Moderate
Unreviewed
CVE-2024-11294
was published
Dec 17, 2024
Some parameters of the alarm clock module are improperly stored, leaking some sensitive information.
Moderate
Unreviewed
CVE-2021-26281
was published
Dec 17, 2024
Some parameters of the weather module are improperly stored, leaking some sensitive information.
Moderate
Unreviewed
CVE-2021-26279
was published
Dec 17, 2024
The Tickera – WordPress Event Ticketing plugin for WordPress is vulnerable to Information...
Moderate
Unreviewed
CVE-2024-12578
was published
Dec 14, 2024
An information-disclosure vulnerability exists in Fortra's GoAnywhere MFT application prior to...
Moderate
Unreviewed
CVE-2024-9945
was published
Dec 13, 2024
ProTip!
Advisories are also available from the
GraphQL API