GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,652
Erlang
34
GitHub Actions
26
Go
2,257
Maven
5,000+
npm
3,909
NuGet
704
pip
3,680
Pub
12
RubyGems
915
Rust
943
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
98,900 advisories
Filter by severity
Resolver caches and authoritative zone databases that hold significant numbers of RRs for the...
High
Unreviewed
CVE-2024-1737
was published
Jul 23, 2024
If a server hosts a zone containing a "KEY" Resource Record, or a resolver DNSSEC-validates a ...
High
Unreviewed
CVE-2024-1975
was published
Jul 23, 2024
A stack-based buffer overflow vulnerability due to a missing bounds check in the NI I/O Trace...
High
Unreviewed
CVE-2024-5602
was published
Jul 23, 2024
A memory corruption issue due to an improper length check in NI LabVIEW may disclose information...
High
Unreviewed
CVE-2024-4081
was published
Jul 23, 2024
An out of bounds read due to a missing bounds check in LabVIEW may disclose information or result...
High
Unreviewed
CVE-2024-4079
was published
Jul 23, 2024
A memory corruption issue due to an improper length check in LabVIEW tdcore.dll may disclose...
High
Unreviewed
CVE-2024-4080
was published
Jul 23, 2024
go-chart v2.1.1 was discovered to contain an infinite loop via the drawCanvas() function.
High
Unreviewed
CVE-2024-40060
was published
Jul 23, 2024
EvilVideo vulnerability allows sending malicious apps disguised as videos in Telegram for Android...
High
Unreviewed
CVE-2024-7014
was published
Jul 23, 2024
The Hide My WP Ghost WordPress plugin before 5.2.02 does not prevent redirects to the login page...
High
Unreviewed
CVE-2024-6420
was published
Jul 23, 2024
The Redux Framework plugin for WordPress is vulnerable to unauthenticated JSON file uploads due...
High
Unreviewed
CVE-2024-6828
was published
Jul 23, 2024
The MaxiBlocks: 2200+ Patterns, 190 Pages, 14.2K Icons & 100 Styles plugin for WordPress is...
High
Unreviewed
CVE-2024-6885
was published
Jul 23, 2024
HashiCorp Nomad and Nomad Enterprise 1.6.12 up to 1.7.9, and 1.8.1 archive unpacking during...
High
Unreviewed
CVE-2024-6717
was published
Jul 23, 2024
A deserialization of untrusted data vulnerability exists in NI VeriStand that may result in...
High
Unreviewed
CVE-2024-6675
was published
Jul 22, 2024
An out-of-date version of Redis shipped with NI SystemLink Server is susceptible to multiple...
High
Unreviewed
CVE-2024-6121
was published
Jul 22, 2024
Insecure permissions in Entrust Datacard XPS Card Printer Driver 8.4 and earlier allows...
High
Unreviewed
CVE-2024-34329
was published
Jul 22, 2024
Files on the Windows system are accessible without authentication to external parties due to a...
High
Unreviewed
CVE-2024-6911
was published
Jul 22, 2024
A directory path traversal vulnerability exists when loading a vsmodel file in NI VeriStand that...
High
Unreviewed
CVE-2024-6791
was published
Jul 22, 2024
The NI VeriStand Gateway is missing authorization checks when an actor attempts to access File...
High
Unreviewed
CVE-2024-6805
was published
Jul 22, 2024
Directory Traversal vulnerability in Punkbuster pbsv.d64 2.351, allows remote attackers to...
High
Unreviewed
CVE-2020-24102
was published
Jul 22, 2024
IP Guard v4.81.0307.0 was discovered to contain an arbitrary file read vulnerability via the file...
High
Unreviewed
CVE-2024-40051
was published
Jul 22, 2024
In JetBrains TeamCity before 2024.07 access tokens could continue working after deletion or...
High
Unreviewed
CVE-2024-41827
was published
Jul 22, 2024
An reflected XSS vulnerability exists in the handling of invalid paths in the Flask server in...
High
Unreviewed
CVE-2024-32484
was published
Jul 22, 2024
TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability...
High
Unreviewed
CVE-2024-41320
was published
Jul 22, 2024
A vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V5...
High
Unreviewed
CVE-2024-39601
was published
Jul 22, 2024
TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability...
High
Unreviewed
CVE-2024-41317
was published
Jul 22, 2024
ProTip!
Advisories are also available from the
GraphQL API