GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,894
Erlang
38
GitHub Actions
38
Go
2,556
Maven
5,000+
npm
4,228
NuGet
747
pip
4,000
Pub
12
RubyGems
953
Rust
1,041
Swift
45
Unreviewed advisories
All unreviewed
5,000+
360 advisories
Filter by severity
jfinal CMS 5.1.0 has an arbitrary file read vulnerability.
High
Unreviewed
CVE-2023-34645
was published
Jun 16, 2023
An issue was discovered in Digi ConnectPort LTS before 1.4.12. A Privilege Escalation...
High
Unreviewed
CVE-2024-50627
was published
Dec 10, 2024
An access issue was addressed with improved access restrictions. This issue is fixed in macOS...
Low
Unreviewed
CVE-2022-42834
was published
Jun 23, 2023
laravel-s vulnerable to Local File Inclusion
Critical
CVE-2023-29931
was published
for
hhxsv5/laravel-s
(Composer)
Jun 22, 2023
Configuration Download vulnerabilities allow access to dependency configuration information. ...
High
Unreviewed
CVE-2024-51542
was published
Dec 5, 2024
Unauthorized file access in WEB Server in ABB ASPECT - Enterprise v <=3.08.01; NEXUS Series
v <...
Critical
Unreviewed
CVE-2024-6209
was published
Jul 5, 2024
Artifex Ghostscript through 10.01.2 mishandles permission validation for pipe devices (with the ...
High
Unreviewed
CVE-2023-36664
was published
Jun 26, 2023
A Directory Browsing vulnerability in MCL-Net version 4.3.5.8788 webserver running on default...
Moderate
Unreviewed
CVE-2023-34834
was published
Jun 29, 2023
TCPDF Local File Inclusion vulnerability
Moderate
CVE-2024-51058
was published
for
tecnickcom/tcpdf
(Composer)
Nov 26, 2024
BlueCMS 1.6 suffers from Arbitrary File Deletion via the file_name parameter in an /admin...
Moderate
Unreviewed
CVE-2024-45894
was published
Oct 7, 2024
Improper access control vulnerability in Apaczka plugin for PrestaShop allows information...
High
Unreviewed
CVE-2024-2759
was published
Apr 4, 2024
Local File Inclusion vulnerability in M-Files Server in versions before 24.11 (excluding 24.8 SR1...
Moderate
Unreviewed
CVE-2024-10126
was published
Nov 20, 2024
A vulnerability in Cisco IND could allow an authenticated, local attacker to read application...
Moderate
Unreviewed
CVE-2023-20039
was published
Nov 15, 2024
Authenticated user can access unintended user capabilities in NetScaler ADC and NetScaler Gateway...
Moderate
Unreviewed
CVE-2024-8535
was published
Nov 12, 2024
Craft CMS Arbitrary System File Read
High
CVE-2024-52292
was published
for
craftcms/cms
(Composer)
Nov 13, 2024
Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) a...
Low
Unreviewed
CVE-2024-48838
was published
Nov 12, 2024
Rapid7 Velociraptor MSI Installer versions below 0.73.3 suffer from a vulnerability whereby it...
High
Unreviewed
CVE-2024-10526
was published
Nov 7, 2024
A file disclosure vulnerability exists in Sage 1000 v7.0.0. This vulnerability allows remote...
High
Unreviewed
CVE-2024-48647
was published
Oct 30, 2024
OpenStack Cinder, Glance, and Nova vulnerable to arbitrary file access
High
CVE-2024-32498
was published
for
cinder
(pip)
Jul 5, 2024
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.5, watchOS...
Moderate
Unreviewed
CVE-2024-23282
was published
Jun 10, 2024
OpenStack Nova vulnerable to unauthorized access to potentially sensitive data
Moderate
CVE-2024-40767
was published
for
Nova
(pip)
Jul 24, 2024
A Local File Inclusion vulnerability has been found in Axiell Iguana CMS. Due to insufficient...
Moderate
Unreviewed
CVE-2022-45052
was published
Jan 4, 2023
A directory listing issue in the baserCMS plugin in D-ZERO CO., LTD. BurgerEditor and...
Moderate
Unreviewed
CVE-2024-44807
was published
Oct 11, 2024
Files or Directories Accessible to External Parties vulnerability in National Keep Cyber Security...
Moderate
Unreviewed
CVE-2024-7107
was published
Sep 26, 2024
In dotCMS dashboard, the Tools and Log Files tabs under System → Maintenance Portlet, which is...
Moderate
Unreviewed
CVE-2024-3164
was published
Apr 2, 2024
ProTip!
Advisories are also available from the
GraphQL API