GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
283 advisories
Filter by severity
Path Traversal in LemMinX
Moderate
CVE-2022-0673
was published
for
org.eclipse.lemminx:lemminx-parent
(Maven)
Feb 19, 2022
Path traversal in MCMS
High
CVE-2021-46037
was published
for
net.mingsoft:ms-mcms
(Maven)
Feb 19, 2022
MCMS Arbitrary File Deletion vulnerability
High
CVE-2021-46062
was published
for
net.mingsoft:ms-basic
(Maven)
Feb 19, 2022
Improper Limitation of a Pathname to a Restricted Directory in Jenkins Pipeline: Shared Groovy Libraries Plugin
Moderate
CVE-2022-25178
was published
for
org.jenkins-ci.plugins.workflow:workflow-cps-global-lib
(Maven)
Feb 16, 2022
Path traversal vulnerability in Jenkins Fortify Plugin
Moderate
CVE-2022-25188
was published
for
org.jenkins-ci.plugins:fortify
(Maven)
Feb 16, 2022
Path Traversal in Eclipse Vert
Critical
CVE-2019-17640
was published
for
io.vertx:vertx-web
(Maven)
Feb 10, 2022
Path Traversal in Crafter CMS Crafter Studio
High
CVE-2017-15684
was published
for
org.craftercms:crafter-studio
(Maven)
Feb 9, 2022
Path Traversal in Crafter CMS Crafter Studio
Critical
CVE-2017-15681
was published
for
org.craftercms:crafter-studio
(Maven)
Feb 9, 2022
Upload of file to arbitrary path in Apache Flink
High
CVE-2020-17518
was published
for
org.apache.flink:flink-runtime
(Maven)
Feb 9, 2022
Path traversal in xwiki-platform-skin-skinx
Moderate
CVE-2022-23620
was published
for
org.xwiki.platform:xwiki-platform-skin-skinx
(Maven)
Feb 9, 2022
Path Traversal
High
CVE-2020-14366
was published
for
org.keycloak:keycloak-parent
(Maven)
Feb 9, 2022
Path Traversal in Apache James Server
Moderate
CVE-2022-22931
was published
for
org.apache.james:james-server
(Maven)
Feb 8, 2022
Neo4j Graph Database vulnerable to Path Traversal
Critical
CVE-2021-42767
was published
for
org.neo4j.procedure:apoc
(Maven)
Feb 1, 2022
Path traversal in Apache Karaf
Moderate
CVE-2022-22932
was published
for
org.apache.karaf:apache-karaf
(Maven)
Jan 28, 2022
Path Traversal in Jenkins Warnings Next Generation Plugin
High
CVE-2022-23107
was published
for
io.jenkins.plugins:warnings-ng
(Maven)
Jan 21, 2022
Path traversal in Apache James
Critical
CVE-2021-40525
was published
for
org.apache.james:james-server
(Maven)
Jan 21, 2022
Path traversal vulnerability in Jenkins Publish Over SSH Plugin
Moderate
CVE-2022-23113
was published
for
org.jenkins-ci.plugins:publish-over-ssh
(Maven)
Jan 13, 2022
Apache Solr Improper Input Validation and Path Traversal
Critical
CVE-2021-44548
was published
for
org.apache.solr:solr-parent
(Maven)
Jan 6, 2022
Path Traversal in com.linecorp.armeria:armeria
High
CVE-2021-43795
was published
for
com.linecorp.armeria:armeria
(Maven)
Dec 2, 2021
Remote code execution in UReport
Critical
CVE-2020-21125
was published
for
com.bstek.ureport:ureport2-core
(Maven)
Sep 20, 2021
Directory traversal in Eclipse Mojarra
High
CVE-2020-6950
was published
for
org.glassfish:mojarra-parent
(Maven)
Sep 1, 2021
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in micronaut-core
High
CVE-2021-32769
was published
for
io.micronaut:micronaut-http-server-netty
(Maven)
Jul 26, 2021
StaticFile.fromUrl can leak presence of a directory
Moderate
CVE-2021-32643
was published
for
org.http4s:http4s-core
(Maven)
May 28, 2021
Path Traversal and Improper Input Validation in Apache Commons IO
Moderate
CVE-2021-29425
was published
for
com.cosium.vet:vet
(Maven)
Apr 26, 2021
Directory traversal in development mode handler in Vaadin 14 and 15-17
Moderate
CVE-2020-36321
was published
for
com.vaadin:flow-server
(Maven)
Apr 19, 2021
ProTip!
Advisories are also available from the
GraphQL API