GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
7,176 advisories
Filter by severity
Directory traversal vulnerability in the media server in Orb Networks Orb before 2.01.0022 allows...
High
Unreviewed
CVE-2008-5645
was published
May 17, 2022
SLiMS 8 Akasia through 8.3.1 has an arbitrary file reading issue because of directory traversal...
Moderate
Unreviewed
CVE-2017-12586
was published
May 17, 2022
Directory traversal vulnerability in AssetView for MacOS Ver.9.2.0 and earlier versions allows...
Moderate
Unreviewed
CVE-2017-2240
was published
May 17, 2022
Directory traversal vulnerability in Trend Micro Control Manager 6.0 allows remote code execution...
Critical
Unreviewed
CVE-2017-11389
was published
May 17, 2022
User account escalation in Apache Hadoop
High
CVE-2021-33036
was published
for
org.apache.hadoop:hadoop-yarn-server-common
(Maven)
Jun 16, 2022
mySCADA myDESIGNER Versions 8.20.0 and prior fails to properly validate contents of an imported...
High
Unreviewed
CVE-2021-43555
was published
May 24, 2022
In the WP Rocket plugin 2.9.3 for WordPress, the Local File Inclusion mitigation technique is to...
High
Unreviewed
CVE-2017-11658
was published
May 17, 2022
dapur\apps\app_config\controller\backuper.php in Fiyo CMS 2.0.7 allows remote attackers to delete...
High
Unreviewed
CVE-2017-11630
was published
May 17, 2022
Multiple directory traversal vulnerabilities in NavBoard 16 (2.6.0) allow remote attackers to...
High
Unreviewed
CVE-2008-5943
was published
May 17, 2022
Absolute Path Traversal vulnerability in FileStreaming in QSAN Storage Manager allows remote...
Moderate
Unreviewed
CVE-2021-32508
was published
May 24, 2022
Vulnerable versions of the Jupiter (<= 6.10.1) and JupiterX (<= 2.0.6) Themes allow logged-in...
High
Unreviewed
CVE-2022-1657
was published
Jun 14, 2022
Directory traversal vulnerability in scgi-bin/platform.cgi on NETGEAR FVS336Gv3, FVS318N,...
Moderate
Unreviewed
CVE-2016-10106
was published
May 17, 2022
A vulnerability was found in soerennb eXtplorer up to 2.1.12. It has been classified as critical....
Critical
Unreviewed
CVE-2019-25098
was published
Jan 5, 2023
Wiris Mathtype v7.28.0 was discovered to contain a path traversal vulnerability in the...
High
Unreviewed
CVE-2022-31372
was published
Jun 17, 2022
Directory traversal vulnerability in CGI RESCUE KanniBBS2000 (aka KanniBBS2000i, MiniBBS2000, and...
Moderate
Unreviewed
CVE-2008-5723
was published
May 17, 2022
Directory traversal vulnerability in the ManageSieve implementation in Dovecot 1.0.15, 1.1, and 1...
Moderate
Unreviewed
CVE-2008-5301
was published
May 17, 2022
Multiple directory traversal vulnerabilities in the (a) "Unzip archive" and (b) "Upload files and...
High
Unreviewed
CVE-2008-5275
was published
May 17, 2022
Directory traversal vulnerability in Arihiro Kurata Kantan WEB Server 1.8 and earlier allows...
Moderate
Unreviewed
CVE-2008-4797
was published
May 17, 2022
ATutor versions 2.2.1 and earlier are vulnerable to a directory traversal and file extension...
Critical
Unreviewed
CVE-2017-1000002
was published
May 17, 2022
Directory Traversal exists in ATutor before 2.2.2 via the icon parameter to /mods/_core/courses...
High
Unreviewed
CVE-2016-10400
was published
May 17, 2022
Directory traversal vulnerability in RCCMD 4.26 and earlier allows a remote authenticated...
Moderate
Unreviewed
CVE-2022-26041
was published
Jun 14, 2022
get2post.php in IDERA Uptime Monitor 7.8 has directory traversal in the file_name parameter.
High
Unreviewed
CVE-2017-11469
was published
May 17, 2022
A path traversal issue in entry attachments in Devolutions Remote Desktop Manager before 2022.2...
High
Unreviewed
CVE-2022-33995
was published
Jun 22, 2022
A vulnerability in the ImageID parameter of Cisco Unity Connection 10.5(2) could allow an...
Moderate
Unreviewed
CVE-2017-6629
was published
May 17, 2022
iSpyConnect iSpy v7.2.2.0 is vulnerable to path traversal.
Critical
Unreviewed
CVE-2022-29774
was published
Jun 22, 2022
ProTip!
Advisories are also available from the
GraphQL API