GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,652
Erlang
34
GitHub Actions
26
Go
2,257
Maven
5,000+
npm
3,909
NuGet
704
pip
3,680
Pub
12
RubyGems
915
Rust
943
Swift
38
Unreviewed advisories
All unreviewed
5,000+
4,372 advisories
Filter by severity
Missing Authorization vulnerability in Michael Revellin-Clerc Media Library Downloader allows...
Moderate
Unreviewed
CVE-2025-46519
was published
Apr 24, 2025
Missing Authorization vulnerability in vinodvaswani9 Bulk Assign Linked Products For WooCommerce...
Moderate
Unreviewed
CVE-2025-46489
was published
Apr 24, 2025
Missing Authorization vulnerability in Carlo La Pera WP Customize Login Page allows Accessing...
Moderate
Unreviewed
CVE-2025-46485
was published
Apr 24, 2025
Missing Authorization vulnerability in Peter Raschendorfer Smart Hashtags [#hashtagger] allows...
Moderate
Unreviewed
CVE-2025-46470
was published
Apr 24, 2025
Missing Authorization vulnerability in magepeopleteam Booking and Rental Manager allows Accessing...
Moderate
Unreviewed
CVE-2025-39390
was published
Apr 24, 2025
Missing Authorization vulnerability in VW Themes Sirat allows Exploiting Incorrectly Configured...
Moderate
Unreviewed
CVE-2025-39385
was published
Apr 24, 2025
Due to missing authorization an unauthenticated remote attacker can cause a DoS attack by...
High
Unreviewed
CVE-2021-47662
was published
Apr 24, 2025
The Flynax Bridge plugin for WordPress is vulnerable to privilege escalation via account takeover...
Critical
Unreviewed
CVE-2025-3604
was published
Apr 24, 2025
The Xelion Webchat plugin for WordPress is vulnerable to unauthorized modification of data that...
High
Unreviewed
CVE-2025-3058
was published
Apr 24, 2025
The Reales WP - Real Estate WordPress Theme theme for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2024-13307
was published
Apr 24, 2025
An issue has been discovered in access controls could allow users to view certain restricted...
Moderate
Unreviewed
CVE-2024-12244
was published
Apr 24, 2025
Missing authorization vulnerability in synocopy in Synology DiskStation Manager (DSM) before 7.1...
High
Unreviewed
CVE-2025-1021
was published
Apr 23, 2025
A security vulnerability has been identified in HPE Cray Data Virtualization Service (DVS)....
High
Unreviewed
CVE-2025-37088
was published
Apr 23, 2025
A vulnerability in the cmdb service of the HPE Performance Cluster Manager (HPCM) could allow an...
Critical
Unreviewed
CVE-2025-37087
was published
Apr 22, 2025
Missing Authorization vulnerability in alttextai Download Alt Text AI allows Exploiting...
Moderate
Unreviewed
CVE-2025-46232
was published
Apr 22, 2025
Missing Authorization vulnerability in codepeople Appointment Booking Calendar allows Accessing...
Moderate
Unreviewed
CVE-2025-46247
was published
Apr 22, 2025
Missing Authorization vulnerability in Dotstore Advanced Linked Variations for Woocommerce allows...
Moderate
Unreviewed
CVE-2025-46244
was published
Apr 22, 2025
An improper authorization vulnerability in Dremio Software allows authenticated users to delete...
High
Unreviewed
CVE-2025-2298
was published
Apr 21, 2025
An issue in the login page of Seclore v3.27.5.0 allows attackers to bypass authentication via a...
Critical
Unreviewed
CVE-2024-53591
was published
Apr 18, 2025
A missing authorization vulnerability was identified in GitHub Enterprise Server that allowed a...
Moderate
Unreviewed
CVE-2025-3124
was published
Apr 18, 2025
Missing Authorization vulnerability in Starfish Reviews Starfish Review Generation & Marketing...
High
Unreviewed
CVE-2025-39533
was published
Apr 17, 2025
Missing Authorization vulnerability in Elliot Sowersby / RelyWP AI Text to Speech allows...
Moderate
Unreviewed
CVE-2025-39554
was published
Apr 17, 2025
Missing Authorization vulnerability in Eivin Landa Bring Fraktguiden for WooCommerce allows...
Moderate
Unreviewed
CVE-2025-39559
was published
Apr 17, 2025
Missing Authorization vulnerability in jidaikobo Dashi allows Accessing Functionality Not...
Moderate
Unreviewed
CVE-2025-39580
was published
Apr 17, 2025
Missing Authorization vulnerability in berthaai BERTHA AI allows Exploiting Incorrectly...
High
Unreviewed
CVE-2025-39583
was published
Apr 17, 2025
ProTip!
Advisories are also available from the
GraphQL API