GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
111,587 advisories
Filter by severity
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-56069
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-56033
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-56035
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-56034
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-56038
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-56037
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-56060
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-56028
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-56032
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-56027
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-56029
was published
Jan 2, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-56030
was published
Jan 2, 2025
An unintended entry point vulnerability has been identified in certain router models, which may...
High
Unreviewed
CVE-2024-13062
was published
Jan 2, 2025
An improper input insertion vulnerability in AiCloud on certain router models may lead to...
High
Unreviewed
CVE-2024-12912
was published
Jan 2, 2025
A LogServer link following vulnerability in Trend Micro Apex One could allow a local attacker to...
High
Unreviewed
CVE-2024-52049
was published
Dec 31, 2024
A LogServer arbitrary file creation vulnerability in Trend Micro Apex One could allow a local...
High
Unreviewed
CVE-2024-52050
was published
Dec 31, 2024
A LogServer link following vulnerability in Trend Micro Apex One could allow a local attacker to...
High
Unreviewed
CVE-2024-52048
was published
Dec 31, 2024
A security agent link following vulnerability in Trend Micro Apex One could allow a local...
High
Unreviewed
CVE-2024-55632
was published
Dec 31, 2024
An origin validation error vulnerability in Trend Micro Apex One could allow a local attacker to...
High
Unreviewed
CVE-2024-55917
was published
Dec 31, 2024
An engine link following vulnerability in Trend Micro Apex One could allow a local attacker to...
High
Unreviewed
CVE-2024-55631
was published
Dec 31, 2024
A widget local file inclusion vulnerability in Trend Micro Apex One could allow a remote attacker...
High
Unreviewed
CVE-2024-52047
was published
Dec 31, 2024
OpenShift Hive RCE through AWS/Kubernetes client configuration leads to privilege escalation
High
CVE-2024-25133
was published
for
github.com/openshift/hive
(Go)
Dec 31, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Amarjeet Amar allows Authentication Bypass...
High
Unreviewed
CVE-2024-56206
was published
Dec 31, 2024
Cross-Site Request Forgery (CSRF) vulnerability in EditionGuard Dev Team EditionGuard for...
High
Unreviewed
CVE-2024-56207
was published
Dec 31, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Yonatan Reinberg of Social Ink Sinking...
High
Unreviewed
CVE-2024-56204
was published
Dec 31, 2024
ProTip!
Advisories are also available from the
GraphQL API