GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,726
Maven
5,000+
npm
4,331
NuGet
763
pip
4,107
Pub
12
RubyGems
960
Rust
1,068
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,236 advisories
Filter by severity
Traefik has a possible vulnerability with its path matchers
High
CVE-2025-32431
was published
for
github.com/traefik/traefik
(Go)
Apr 21, 2025
UnForm Server versions < 10.1.15 contain an unauthenticated arbitrary file read and SMB coercion...
High
Unreviewed
CVE-2025-34350
was published
Nov 25, 2025
A path traversal vulnerability has been identified in WebDAV, which may allow unauthenticated...
High
Unreviewed
CVE-2025-12003
was published
Nov 25, 2025
An issue in the size query parameter (/views/file.py) of Austrian Archaeological Institute...
High
Unreviewed
CVE-2025-60915
was published
Nov 24, 2025
A low privileged remote attacker can upload a new or overwrite an existing python script by using...
High
Unreviewed
CVE-2025-41736
was published
Nov 18, 2025
A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled...
High
Unreviewed
CVE-2025-8941
was published
Aug 13, 2025
Milos Paripovic OneCommander 3.102.0.0 is vulnerable to Directory Traversal. The vulnerability...
High
Unreviewed
CVE-2025-63371
was published
Nov 19, 2025
7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2025-11001
was published
Nov 20, 2025
A path traversal vulnerability exists in the web management interface of D-Link DSL-2730U, DSL...
High
Unreviewed
CVE-2025-34048
was published
Jun 26, 2025
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2025-60242
was published
Nov 6, 2025
Malicious URL drafting attack against iodines static file server may allow path traversal
High
CVE-2024-22050
was published
for
iodine
(RubyGems)
Oct 7, 2019
Nero BackItUp in the Nero Productline is vulnerable to a path parsing/UI rendering flaw (CWE-22)...
High
Unreviewed
CVE-2025-63680
was published
Nov 14, 2025
IBM AIX 7.2, and 7.3 and IBM VIOS 3.1, and 4.1 NIM server (formerly known as NIM master) service ...
High
Unreviewed
CVE-2025-36236
was published
Nov 14, 2025
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2025-60227
was published
Oct 22, 2025
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2025-58959
was published
Oct 22, 2025
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2025-59566
was published
Oct 22, 2025
podman kube play symlink traversal vulnerability
High
CVE-2025-9566
was published
for
github.com/containers/podman/v4
(Go)
Sep 4, 2025
JVC VN-T IP-camera models firmware versions up to 2016-08-22 (confirmed on the VN-T216VPRU model)...
High
Unreviewed
CVE-2016-15055
was published
Nov 13, 2025
Longjing Technology BEMS API versions up to and including 1.21 contains an unauthenticated...
High
Unreviewed
CVE-2021-4463
was published
Nov 13, 2025
Ozeki SMS Gateway versions up to and including 10.3.208 contain a path traversal vulnerability....
High
Unreviewed
CVE-2023-7327
was published
Nov 13, 2025
DBLTek GoIP-1 firmware versions up to and including GHSFVT-1.1-67-5 contain a local file...
High
Unreviewed
CVE-2022-4982
was published
Nov 13, 2025
CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')...
High
Unreviewed
CVE-2025-11565
was published
Nov 12, 2025
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2025-12382
was published
Nov 12, 2025
A local server-side request forgery (SSRF) security issue exists within Studio 5000® Simulation...
High
Unreviewed
CVE-2025-11696
was published
Nov 11, 2025
PacsOne Server version 6.6.2 (prior versions are likely affected) contains a directory traversal...
High
Unreviewed
CVE-2018-25124
was published
Nov 11, 2025
ProTip!
Advisories are also available from the
GraphQL API