GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,652
Erlang
34
GitHub Actions
26
Go
2,257
Maven
5,000+
npm
3,909
NuGet
704
pip
3,680
Pub
12
RubyGems
915
Rust
943
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
118,977 advisories
Filter by severity
An information disclosure vulnerability exists in the backup configuration process where the SAS...
Moderate
Unreviewed
CVE-2024-11165
was published
Nov 13, 2024
A vulnerability was found in VIWIS LMS 9.11. It has been classified as critical. Affected is an...
Moderate
Unreviewed
CVE-2024-8001
was published
Nov 13, 2024
The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2024-9059
was published
Nov 13, 2024
The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2024-9668
was published
Nov 13, 2024
The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2024-9682
was published
Nov 13, 2024
The AFI – The Easiest Integration Plugin plugin for WordPress is vulnerable to Reflected Cross...
Moderate
Unreviewed
CVE-2024-10877
was published
Nov 13, 2024
Cross-site scripting vulnerability exists in VK All in One Expansion Unit versions prior to 9.100...
Moderate
Unreviewed
CVE-2024-52268
was published
Nov 13, 2024
The Boostify Header Footer Builder for Elementor plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-10794
was published
Nov 13, 2024
The Hash Elements plugin for WordPress is vulnerable to unauthorized access of data due to a...
Moderate
Unreviewed
CVE-2024-10802
was published
Nov 13, 2024
The Social Proof (Testimonial) Slider plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2024-8985
was published
Nov 13, 2024
The Aqua SVG Sprite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG...
Moderate
Unreviewed
CVE-2024-9426
was published
Nov 13, 2024
The Hide Links plugin for WordPress is vulnerable to unauthorized shortcode execution due to...
Moderate
Unreviewed
CVE-2024-9578
was published
Nov 13, 2024
The Constant Contact Forms by MailMunch plugin for WordPress is vulnerable to Reflected Cross...
Moderate
Unreviewed
CVE-2024-9614
was published
Nov 13, 2024
The AJAX Login and Registration modal popup + inline form plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-8874
was published
Nov 13, 2024
The Kognetiks Chatbot for WordPress plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2024-10529
was published
Nov 13, 2024
The Kognetiks Chatbot for WordPress plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2024-10530
was published
Nov 13, 2024
The Product Delivery Date for WooCommerce – Lite plugin for WordPress is vulnerable to Reflected...
Moderate
Unreviewed
CVE-2024-10882
was published
Nov 13, 2024
The Kognetiks Chatbot for WordPress plugin for WordPress is vulnerable to Cross-Site Request...
Moderate
Unreviewed
CVE-2024-11143
was published
Nov 13, 2024
The WPForms – Easy Form Builder for WordPress – Contact Forms, Payment Forms, Surveys, & More...
Moderate
Unreviewed
CVE-2024-10593
was published
Nov 13, 2024
The Kognetiks Chatbot for WordPress plugin for WordPress is vulnerable to Reflected Cross-Site...
Moderate
Unreviewed
CVE-2024-10684
was published
Nov 13, 2024
The Kognetiks Chatbot for WordPress plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2024-10531
was published
Nov 13, 2024
Improper bounds checking in Ivanti Secure Access Client before version 22.7R3 allows a local...
Moderate
Unreviewed
CVE-2024-38654
was published
Nov 13, 2024
The Buy one click WooCommerce plugin for WordPress is vulnerable to unauthorized modification of...
Moderate
Unreviewed
CVE-2024-10854
was published
Nov 13, 2024
The NiceJob plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several of the...
Moderate
Unreviewed
CVE-2024-10887
was published
Nov 13, 2024
The Buy one click WooCommerce plugin for WordPress is vulnerable to unauthorized modification of...
Moderate
Unreviewed
CVE-2024-10853
was published
Nov 13, 2024
ProTip!
Advisories are also available from the
GraphQL API