GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
231 advisories
Filter by severity
The AGG Software Web Server version 4.0.40.1014 and prior is vulnerable to a path traversal...
Moderate
Unreviewed
CVE-2021-32964
was published
May 25, 2022
mySCADA myDESIGNER Versions 8.20.0 and prior fails to properly validate contents of an imported...
High
Unreviewed
CVE-2021-43555
was published
May 24, 2022
An issue was discovered in Aviatrix Controller 6.x before 6.5-1804.1922. Unrestricted upload of a...
Critical
Unreviewed
CVE-2021-40870
was published
May 24, 2022
Advantech WebAccess/SCADA Versions 9.0.1 and prior is vulnerable to a directory traversal, which...
Moderate
Unreviewed
CVE-2021-32954
was published
May 24, 2022
ArcGIS GeoEvent Server versions 10.8.1 and below has a read-only directory path traversal...
High
Unreviewed
CVE-2021-29101
was published
May 24, 2022
A vulnerability has been identified in XHQ (All Versions < 6.1). The web interface could allow...
Moderate
Unreviewed
CVE-2019-19287
was published
May 24, 2022
A relative path traversal attack in the B. Braun OnlineSuite Version AP 3.0 and earlier allows...
Critical
Unreviewed
CVE-2020-25172
was published
May 24, 2022
The Metasploit Framework module "post/osx/gather/enum_osx module" is affected by a relative path...
Critical
Unreviewed
CVE-2020-7376
was published
May 24, 2022
The Metasploit Framework module "auxiliary/admin/http/telpho10_credential_dump" module is...
High
Unreviewed
CVE-2020-7377
was published
May 24, 2022
A vulnerability has been identified in SiNVR 3 Central Control Server (CCS) (all versions), SiNVR...
High
Unreviewed
CVE-2019-18338
was published
May 24, 2022
A relative path traversal vulnerability found in Advan VD-1 firmware versions up to 230. It...
High
Unreviewed
CVE-2019-13408
was published
May 24, 2022
Directory traversal vulnerability in the web server in SpecView 2.5 build 853 and earlier allows...
Moderate
Unreviewed
CVE-2012-5972
was published
May 17, 2022
Directory traversal vulnerability in the Runtime Toolkit in CODESYS Runtime System 2.3.x and 2.4...
High
Unreviewed
CVE-2012-6069
was published
May 17, 2022
A Relative Path Traversal issue was discovered in LOYTEC LVIS-3ME versions prior to 6.2.0. The...
High
Unreviewed
CVE-2017-13996
was published
May 13, 2022
All versions of the Medtronic 2090 Carelink Programmer are affected by a directory traversal...
Moderate
Unreviewed
CVE-2018-5448
was published
May 13, 2022
A zip slip vulnerability in XINJE XD/E Series PLC Program Tool up to version v3.5.1 can provide...
High
Unreviewed
CVE-2021-34605
was published
May 12, 2022
A relative path traversal attack in the B. Braun Melsungen AG SpaceCom Version L81/U61 and...
High
Unreviewed
CVE-2020-25150
was published
Apr 15, 2022
** UNSUPPORTED WHEN ASSIGNED ** A post-authentication arbitrary file read vulnerability impacting...
Moderate
Unreviewed
CVE-2022-22279
was published
Apr 14, 2022
Path Traversal in Eclipse Vert
Critical
CVE-2019-17640
was published
for
io.vertx:vertx-web
(Maven)
Feb 10, 2022
Upload of file to arbitrary path in Apache Flink
High
CVE-2020-17518
was published
for
org.apache.flink:flink-runtime
(Maven)
Feb 9, 2022
Maliciously Crafted Model Archive Can Lead To Arbitrary File Write
High
CVE-2021-41127
was published
for
rasa
(pip)
Oct 22, 2021
Relative Path Traversal in git-delta
High
CVE-2021-36376
was published
for
git-delta
(Rust)
Aug 25, 2021
Arbitrary File Creation/Overwrite via insufficient symlink protection due to directory cache poisoning
High
CVE-2021-32803
was published
for
tar
(npm)
Aug 3, 2021
ProTip!
Advisories are also available from the
GraphQL API