GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,266
Erlang
31
GitHub Actions
21
Go
2,041
Maven
5,000+
npm
3,733
NuGet
662
pip
3,414
Pub
12
RubyGems
891
Rust
866
Swift
36
Unreviewed advisories
All unreviewed
5,000+
119,753 advisories
Filter by severity
A vulnerability has been found in itsourcecode Event Calendar 1.0 and classified as critical....
Moderate
Unreviewed
CVE-2024-6009
was published
Jun 15, 2024
A vulnerability was found in itsourcecode Online Book Store 1.0. It has been rated as critical....
Moderate
Unreviewed
CVE-2024-6013
was published
Jun 15, 2024
A vulnerability classified as critical has been found in itsourcecode Document Management System...
Moderate
Unreviewed
CVE-2024-6014
was published
Jun 15, 2024
A vulnerability classified as critical was found in itsourcecode Online House Rental System 1.0....
Moderate
Unreviewed
CVE-2024-6015
was published
Jun 15, 2024
A vulnerability, which was classified as critical, was found in itsourcecode Online Book Store up...
Moderate
Unreviewed
CVE-2024-6008
was published
Jun 15, 2024
A vulnerability classified as critical has been found in Netentsec NS-ASG Application Security...
Moderate
Unreviewed
CVE-2024-6007
was published
Jun 15, 2024
The Stratum – Elementor Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2024-5611
was published
Jun 15, 2024
A vulnerability was found in ZKTeco ZKBio CVSecurity V5000 4.1.0. It has been declared as...
Moderate
Unreviewed
CVE-2024-6005
was published
Jun 15, 2024
A vulnerability was found in ZKTeco ZKBio CVSecurity V5000 4.1.0. It has been rated as...
Moderate
Unreviewed
CVE-2024-6006
was published
Jun 15, 2024
The Collapse-O-Matic plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2024-4095
was published
Jun 15, 2024
The Video Gallery – YouTube Playlist, Channel Gallery by YotuWP plugin for WordPress is...
Moderate
Unreviewed
CVE-2024-4551
was published
Jun 15, 2024
The Shariff Wrapper plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2024-2695
was published
Jun 15, 2024
The AI Infographic Maker plugin for WordPress is vulnerable to unauthorized modification of data...
Moderate
Unreviewed
CVE-2024-5858
was published
Jun 15, 2024
The Restaurant Menu – Food Ordering System – Table Reservation plugin for WordPress is vulnerable...
Moderate
Unreviewed
CVE-2024-1399
was published
Jun 15, 2024
The WooCommerce - Social Login plugin for WordPress is vulnerable to Email Verification in all...
Moderate
Unreviewed
CVE-2024-5868
was published
Jun 15, 2024
The ElementsKit Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2024-5263
was published
Jun 15, 2024
The tagDiv Composer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2024-3814
was published
Jun 15, 2024
The Newspaper theme for WordPress is vulnerable to Stored Cross-Site Scripting via attachment...
Moderate
Unreviewed
CVE-2024-3815
was published
Jun 15, 2024
The Jeg Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2024-4479
was published
Jun 15, 2024
StorageGRID (formerly StorageGRID Webscale) versions prior to
11.7.0.9 and 11.8.0.5 are...
Moderate
Unreviewed
CVE-2024-21988
was published
Jun 15, 2024
A cross-site scripting (XSS) vulnerability in Aegon Life v1.0 allows attackers to execute...
Moderate
Unreviewed
CVE-2024-36599
was published
Jun 14, 2024
An issue in the LB-LINK BL-W1210M v2.0 router allows attackers to bypass password complexity...
Moderate
Unreviewed
CVE-2024-33373
was published
Jun 14, 2024
An open redirect issue was discovered in Kibana that could lead to a user being redirected to an...
Moderate
Unreviewed
CVE-2024-23442
was published
Jun 14, 2024
In MintHCM 4.0.3, a registered user can execute arbitrary JavaScript code and achieve a reflected...
Moderate
Unreviewed
CVE-2024-36656
was published
Jun 14, 2024
A vulnerability in the IPS Manager, Central Manager, and Local Manager communication workflow...
Moderate
Unreviewed
CVE-2024-5731
was published
Jun 14, 2024
ProTip!
Advisories are also available from the
GraphQL API