GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,300
Erlang
31
GitHub Actions
21
Go
2,069
Maven
5,000+
npm
3,744
NuGet
668
pip
3,429
Pub
12
RubyGems
892
Rust
877
Swift
36
Unreviewed advisories
All unreviewed
5,000+
2,415 advisories
Filter by severity
An issue has been discovered in GitLab CE/EE affecting all versions from 16.1 prior to 16.1.6, 16...
Critical
Unreviewed
CVE-2023-7028
was published
Jan 12, 2024
The postjournal service in Zimbra Collaboration (ZCS) before 8.8.15 Patch 46, 9 before 9.0.0...
Critical
Unreviewed
CVE-2024-45519
was published
Oct 3, 2024
The Maintenance & Coming Soon Redirect Animation plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-9503
was published
Dec 20, 2024
A vulnerability was found in the Ansible Automation Platform (AAP). This flaw allows attackers to...
Moderate
Unreviewed
CVE-2024-11483
was published
Nov 25, 2024
Apache HugeGraph-Server: Command execution in gremlin
Critical
CVE-2024-27348
was published
for
org.apache.hugegraph:hugegraph-api
(Maven)
Apr 22, 2024
Mattermost Android Mobile Apps versions <=2.21.0 fail to properly configure file providers which...
Moderate
Unreviewed
CVE-2024-11358
was published
Dec 16, 2024
A vulnerability was found in InvoicePlane up to 1.6.1. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2024-12478
was published
Dec 16, 2024
Mattermost Server Improper Access Control
Moderate
CVE-2024-29221
was published
for
github.com/mattermost/mattermost/server/v8
(Go)
Apr 5, 2024
Mattermost Server Improper Access Control
Low
CVE-2024-21848
was published
for
github.com/mattermost/mattermost/server/v8
(Go)
Apr 5, 2024
An issue has been discovered in GitLab EE affecting all versions starting from 12.5 before 17.1.6...
Moderate
Unreviewed
CVE-2024-3127
was published
Aug 22, 2024
Dell RecoverPoint for Virtual Machines 6.0.x contains an Improper access control vulnerability. A...
Moderate
Unreviewed
CVE-2024-24902
was published
Dec 13, 2024
Magento Open Source Improper Access Control vulnerability
Low
CVE-2024-45149
was published
for
magento/community-edition
(Composer)
Oct 10, 2024
Adobe Experience Manager versions 6.5.19 and earlier are affected by an Improper Access Control...
Moderate
Unreviewed
CVE-2024-26119
was published
Mar 18, 2024
Vulnerability of improper access control in the MTP module
Impact: Successful exploitation of...
Moderate
Unreviewed
CVE-2024-54096
was published
Dec 12, 2024
The Vayu Blocks – Gutenberg Blocks for WordPress & WooCommerce plugin for WordPress is vulnerable...
Critical
Unreviewed
CVE-2024-10124
was published
Dec 12, 2024
Remote Desktop Client Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-49105
was published
Dec 12, 2024
Microsoft SharePoint Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-49068
was published
Dec 12, 2024
Microsoft Office Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-43600
was published
Dec 12, 2024
System Center Operations Manager Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-43594
was published
Dec 12, 2024
The Last Viewed Posts by WPBeginner plugin for WordPress is vulnerable to Sensitive Information...
Moderate
Unreviewed
CVE-2024-12294
was published
Dec 11, 2024
A vulnerability was found in code-projects Online Notice Board up to 1.0 and classified as...
Moderate
Unreviewed
CVE-2024-12233
was published
Dec 5, 2024
Adobe Experience Manager versions 6.5.21 and earlier are affected by an Improper Access Control...
Moderate
Unreviewed
CVE-2024-43716
was published
Dec 11, 2024
Adobe Experience Manager versions 6.5.21 and earlier are affected by an Improper Access Control...
Moderate
Unreviewed
CVE-2024-43717
was published
Dec 11, 2024
A vulnerability classified as problematic has been found in DedeCMS 5.7.116. This affects an...
Moderate
Unreviewed
CVE-2024-11138
was published
Nov 12, 2024
Adobe Connect versions 12.6, 11.4.7 and earlier are affected by an Improper Access Control...
Moderate
Unreviewed
CVE-2024-54038
was published
Dec 10, 2024
ProTip!
Advisories are also available from the
GraphQL API