GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
65 advisories
Filter by severity
A vulnerability was found in qwdigital LinkWechat 5.1.0. It has been classified as problematic....
Moderate
Unreviewed
CVE-2024-0882
was published
Jan 25, 2024
A vulnerability, which was classified as problematic, has been found in Sichuan Yougou Technology...
Moderate
Unreviewed
CVE-2024-0989
was published
Jan 29, 2024
A vulnerability classified as critical has been found in KylinSoft youker-assistant on KylinOS....
Moderate
Unreviewed
CVE-2023-3098
was published
Jun 5, 2023
A vulnerability has been found in PandaXGO PandaX up to 20240310 and classified as critical. This...
Moderate
Unreviewed
CVE-2024-2563
was published
Mar 17, 2024
A vulnerability was found in PandaXGO PandaX up to 20240310 and classified as critical. This...
Moderate
Unreviewed
CVE-2024-2564
was published
Mar 17, 2024
A vulnerability classified as critical has been found in lakernote EasyAdmin up to 20240315. This...
Moderate
Unreviewed
CVE-2024-2825
was published
Mar 22, 2024
A vulnerability classified as critical has been found in Shibang Communications IP Network...
Moderate
Unreviewed
CVE-2024-3218
was published
Apr 3, 2024
A vulnerability was found in Panwei eoffice OA up to 9.5. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2024-3227
was published
Apr 3, 2024
sjqzhang go-fastdfs vulnerable to path traversal
Critical
CVE-2023-1800
was published
for
github.com/sjqzhang/go-fastdfs
(Go)
Apr 2, 2023
An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before....
High
Unreviewed
CVE-2024-22079
was published
Mar 20, 2024
Nuxt Devtools has a Path Traversal: '../filedir'
High
CVE-2024-23657
was published
for
@nuxt/devtools
(npm)
Aug 5, 2024
A vulnerability classified as problematic was found in NaiboWang EasySpider 0.6.2 on Windows....
Moderate
Unreviewed
CVE-2024-6746
was published
Jul 15, 2024
A vulnerability classified as problematic has been found in ABCD ABCD2 up to 2.2.0-beta-1. This...
Moderate
Unreviewed
CVE-2024-8409
was published
Sep 4, 2024
The vulnerability allows an attacker to craft MQTT messages that include relative path traversal...
Moderate
Unreviewed
CVE-2024-6786
was published
Sep 21, 2024
A vulnerability classified as problematic was found in ESAFENET CDG 5. Affected by this...
Moderate
Unreviewed
CVE-2024-10379
was published
Oct 25, 2024
A vulnerability in the web-based management interface of Cisco PI and Cisco EPNM could...
Moderate
Unreviewed
CVE-2022-20656
was published
Nov 15, 2024
Undertow Path Traversal vulnerability
Moderate
CVE-2024-1459
was published
for
io.undertow:undertow-core
(Maven)
Feb 12, 2024
Ivanti Docs@Work for Android, before 2.26.0 is affected by the 'Dirty Stream' vulnerability. The...
Moderate
Unreviewed
CVE-2024-37403
was published
Aug 7, 2024
A directory traversal issue was discovered in OpenSlides before 4.2.5. Files can be uploaded to...
Low
Unreviewed
CVE-2025-30343
was published
Mar 21, 2025
A vulnerability classified as problematic has been found in DedeCMS 5.7.114. This affects an...
Moderate
Unreviewed
CVE-2024-4790
was published
May 14, 2024
A vulnerability has been found in DedeCMS 5.7.112-UTF8 and classified as problematic. Affected by...
Moderate
Unreviewed
CVE-2024-3686
was published
Apr 12, 2024
A path traversal vulnerability in FusionDirectory before 1.5 allows remote attackers to read...
Moderate
Unreviewed
CVE-2025-32807
was published
Apr 11, 2025
In Infodraw Media Relay Service (MRS) 7.1.0.0, the MRS web server (on port 12654) allows reading...
Moderate
Unreviewed
CVE-2025-43928
was published
Apr 20, 2025
An arbitrary file upload vulnerability via writefile.php of Serosoft Academia Student Information...
Moderate
Unreviewed
CVE-2024-53636
was published
Apr 26, 2025
In Artifex Ghostscript before 10.05.0, decode_utf8 in base/gp_utf8.c mishandles overlong UTF-8...
Moderate
Unreviewed
CVE-2025-46646
was published
Apr 26, 2025
ProTip!
Advisories are also available from the
GraphQL API