GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
7,176 advisories
Filter by severity
Directory traversal vulnerability in the Connection Server in VMware Horizon View 5.x before 5.3...
Moderate
Unreviewed
CVE-2016-7087
was published
May 17, 2022
Geneko GWR routers allow directory traversal sequences starting with a /../ substring, as...
High
Unreviewed
CVE-2017-11456
was published
May 17, 2022
A vulnerability in the web interface of Cisco Prime Collaboration Provisioning Software (prior to...
Moderate
Unreviewed
CVE-2017-6636
was published
May 17, 2022
In Anti-Web through 3.8.7, as used on NetBiter FGW200 devices through 3.21.2, WS100 devices...
Critical
Unreviewed
CVE-2017-9097
was published
May 17, 2022
Path traversal in Concrete CMS
Critical
CVE-2022-30117
was published
for
concrete5/core
(Composer)
Jun 25, 2022
OFFIS DCMTK's (All versions prior to 3.6.7) service class provider (SCP) is vulnerable to path...
Critical
Unreviewed
CVE-2022-2119
was published
Jun 25, 2022
kittoframework kitto 0.5.1 is vulnerable to directory traversal in the router resulting in remote...
High
Unreviewed
CVE-2017-1000062
was published
May 17, 2022
An issue in the jmpath variable in /modules/mindmap/index.php of GUnet Open eClass Platform (aka...
Moderate
Unreviewed
CVE-2022-33116
was published
Jun 28, 2022
A vulnerability was found in Simplessus 3.7.7. It has been rated as critical. This issue affects...
High
Unreviewed
CVE-2017-20105
was published
Jun 29, 2022
Directory traversal vulnerability in node/utils/Minify.js in Etherpad 1.1.1 through 1.5.2 allows...
High
Unreviewed
CVE-2015-3297
was published
May 17, 2022
The AFDudley/equanimity repository through 2014-04-23 on GitHub allows absolute path traversal...
Critical
Unreviewed
CVE-2022-31511
was published
Jul 12, 2022
The BolunHan/Krypton repository through 2021-06-03 on GitHub allows absolute path traversal...
Critical
Unreviewed
CVE-2022-31513
was published
Jul 12, 2022
The idayrus/evoting repository before 2022-05-08 on GitHub allows absolute path traversal because...
Critical
Unreviewed
CVE-2022-31508
was published
Jul 12, 2022
An issue in /admin/index.php?lfj=mysql&action=del of Qibosoft v7 allows attackers to arbitrarily...
Critical
Unreviewed
CVE-2020-20944
was published
Dec 28, 2021
In OpenCart 1.4.7 to 1.5.5.1, implemented anti-traversal code in filemanager.php is ineffective...
Moderate
Unreviewed
CVE-2013-1891
was published
Jun 25, 2022
Dell WMS 3.6.1 and below contains a Path Traversal vulnerability in Device API. A remote attacker...
Moderate
Unreviewed
CVE-2022-29097
was published
Jun 25, 2022
LRM contains a directory traversal vulnerability that can allow a malicious actor to upload...
Critical
Unreviewed
CVE-2022-1518
was published
Jun 25, 2022
The Product Configurator for WooCommerce WordPress plugin before 1.2.32 suffers from an arbitrary...
Critical
Unreviewed
CVE-2022-1953
was published
Jun 28, 2022
Directory traversal vulnerability in Buffalo WNC01WH devices with firmware version 1.0.0.8 and...
Moderate
Unreviewed
CVE-2016-7825
was published
May 17, 2022
Algo Communication Products Ltd. 8373 IP Zone Paging Adapter Firmware 1.7.6 allows attackers to...
High
Unreviewed
CVE-2022-31395
was published
Jun 24, 2022
The kumardeepak/hin-eng-preprocessing repository through 2019-07-16 on GitHub allows absolute...
Critical
Unreviewed
CVE-2022-31540
was published
Jul 12, 2022
The jmcginty15/Solar-system-simulator repository through 2021-07-26 on GitHub allows absolute...
Critical
Unreviewed
CVE-2022-31537
was published
Jul 12, 2022
The ThundeRatz/ThunderDocs repository through 2020-05-01 on GitHub allows absolute path traversal...
Critical
Unreviewed
CVE-2022-31526
was published
Jul 12, 2022
The olmax99/pyathenastack repository through 2019-11-08 on GitHub allows absolute path traversal...
Critical
Unreviewed
CVE-2022-31550
was published
Jul 12, 2022
The romain20100/nursequest repository through 2018-02-22 on GitHub allows absolute path traversal...
Critical
Unreviewed
CVE-2022-31555
was published
Jul 12, 2022
ProTip!
Advisories are also available from the
GraphQL API