GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,476
Erlang
33
GitHub Actions
24
Go
2,207
Maven
5,000+
npm
3,858
NuGet
696
pip
3,639
Pub
12
RubyGems
913
Rust
918
Swift
38
Unreviewed advisories
All unreviewed
5,000+
95 advisories
Filter by severity
HTTP Response Manipulation in SCRIPT CASE v.1.0.002 Build7 allows a remote attacker to escalate...
Critical
Unreviewed
CVE-2025-25535
was published
Mar 26, 2025
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923...
Critical
Unreviewed
CVE-2025-27677
was published
Mar 5, 2025
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 1.0.735 Application 20.0.1330...
Critical
Unreviewed
CVE-2025-27682
was published
Mar 5, 2025
In Public Knowledge Project (PKP) OJS, OMP, and OPS before 3.3.0.21 and 3.4.x before 3.4.0.8, an...
Critical
Unreviewed
CVE-2024-56525
was published
Feb 25, 2025
MaysWind ezBookkeeping has Improper Privilege Management
Critical
CVE-2024-57604
was published
for
github.com/mayswind/ezbookkeeping
(Go)
Feb 13, 2025
An issue in trojan v.2.0.0 through v.2.15.3 allows a remote attacker to escalate privileges via...
Critical
Unreviewed
CVE-2024-55215
was published
Feb 8, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.3, macOS...
Critical
Unreviewed
CVE-2025-24174
was published
Jan 28, 2025
CMSimple 5.16 allows the user to edit log.php file via print page.
Critical
Unreviewed
CVE-2024-57548
was published
Jan 28, 2025
This issue was addressed with improved message validation. This issue is fixed in macOS Sequoia...
Critical
Unreviewed
CVE-2025-24135
was published
Jan 28, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-24093
was published
Jan 28, 2025
A vulnerability in the REST API of Cisco Meeting Management could allow a remote, authenticated...
Critical
Unreviewed
CVE-2025-20156
was published
Jan 22, 2025
Northern.tech Mender Client 4.x before 4.0.5 has Insecure Permissions.
Critical
Unreviewed
CVE-2024-55959
was published
Jan 21, 2025
WeGIA < 3.2.0 is vulnerable to Incorrect Access Control in controle/control.php. The application...
Critical
Unreviewed
CVE-2024-57032
was published
Jan 17, 2025
An access control issue in the component formDMZ.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210...
Critical
Unreviewed
CVE-2024-57684
was published
Jan 16, 2025
Infoblox BloxOne v2.4 was discovered to contain a business logic flaw due to thick client...
Critical
Unreviewed
CVE-2024-46505
was published
Jan 9, 2025
An issue was discovered in EyesOfNetwork (EON) through 5.3.11. Privilege escalation can be...
Critical
Unreviewed
CVE-2022-41572
was published
Jan 7, 2025
In Cleo Harmony before 5.8.0.24, VLTrader before 5.8.0.24, and LexiCom before 5.8.0.24, an...
Critical
Unreviewed
CVE-2024-55956
was published
Dec 13, 2024
An issue was discovered in MSA Safety FieldServer Gateways and Embedded Modules with build...
Critical
Unreviewed
CVE-2024-45494
was published
Dec 10, 2024
COMFAST CF-WR630AX v2.7.0.2 was discovered to contain a hardcoded password vulnerability in /etc...
Critical
Unreviewed
CVE-2024-54751
was published
Dec 10, 2024
WAVLINK WN531P3 202383 was discovered to contain a hardcoded password vulnerability in /etc...
Critical
Unreviewed
CVE-2024-54747
was published
Dec 6, 2024
WAVLINK WN701AE M01AE_V240305 was discovered to contain a hardcoded password vulnerability in ...
Critical
Unreviewed
CVE-2024-54745
was published
Dec 6, 2024
Ever Traduora 0.20.0 and below is vulnerable to Privilege Escalation due to the use of a hard...
Critical
Unreviewed
CVE-2024-53484
was published
Dec 2, 2024
OpenVidReview 1.0 is vulnerable to Incorrect Access Control. The /upload route is accessible...
Critical
Unreviewed
CVE-2024-46054
was published
Nov 27, 2024
On Android, Firefox may have inadvertently allowed viewing saved passwords without the required...
Critical
Unreviewed
CVE-2024-11703
was published
Nov 26, 2024
An issue in Audimex EE v.15.1.20 and before allows a remote attacker to escalate privileges.
Critical
Unreviewed
CVE-2024-51162
was published
Nov 20, 2024
ProTip!
Advisories are also available from the
GraphQL API