GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,454
Erlang
33
GitHub Actions
22
Go
2,153
Maven
5,000+
npm
3,818
NuGet
693
pip
3,492
Pub
12
RubyGems
902
Rust
903
Swift
38
Unreviewed advisories
All unreviewed
5,000+
880 advisories
Filter by severity
An issue has been discovered in GitLab CE/EE affecting all versions from 8.12 before 17.4.5, 17.5...
High
Unreviewed
CVE-2024-8114
was published
Nov 26, 2024
The com.uaudio.bsd.helper service, responsible for handling privileged operations, fails to...
High
Unreviewed
CVE-2024-8272
was published
Nov 25, 2024
The WPGYM - Wordpress Gym Management System plugin for WordPress is vulnerable to privilege...
High
Unreviewed
CVE-2024-9941
was published
Nov 23, 2024
NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an...
High
Unreviewed
CVE-2024-0122
was published
Nov 23, 2024
The Sky Addons for Elementor (Free Templates Library, Live Copy, Animations, Post Grid, Post...
High
Unreviewed
CVE-2024-11601
was published
Nov 22, 2024
The Sky Addons for Elementor (Free Templates Library, Live Copy, Animations, Post Grid, Post...
High
Unreviewed
CVE-2024-11104
was published
Nov 22, 2024
In multiple functions of ShortcutService.java, there is a possible creation of a spoofed shortcut...
High
Unreviewed
CVE-2018-9469
was published
Nov 20, 2024
In the development options section of the Settings app, there is a possible authentication bypass...
High
Unreviewed
CVE-2018-9477
was published
Nov 20, 2024
The Classified Listing – Classified ads & Business Directory Plugin plugin for WordPress is...
High
Unreviewed
CVE-2024-11194
was published
Nov 19, 2024
The Post Grid Gutenberg Blocks and WordPress Blog Plugin – PostX plugin for WordPress is...
High
Unreviewed
CVE-2024-10728
was published
Nov 16, 2024
In setAllowOnlyVpnForUids of NetworkManagementService.java, there is a possible security settings...
High
Unreviewed
CVE-2017-13314
was published
Nov 16, 2024
Missing Authorization vulnerability in KCT Ai Auto Tool Content Writing Assistant (Gemini Writer,...
High
Unreviewed
CVE-2024-52383
was published
Nov 14, 2024
Script security bypass vulnerability in Jenkins Shared Library Version Override Plugin
High
CVE-2024-52554
was published
for
io.jenkins.plugins:shared-library-version-override
(Maven)
Nov 13, 2024
In multiple functions in AppInfoBase.java, there is a possible way to manipulate app permission...
High
Unreviewed
CVE-2024-43088
was published
Nov 13, 2024
In updateInternal of MediaProvider.java , there is a possible access of another app's files due...
High
Unreviewed
CVE-2024-43089
was published
Nov 13, 2024
In getInstalledAccessibilityPreferences of AccessibilitySettings.java, there is a possible way to...
High
Unreviewed
CVE-2024-43087
was published
Nov 13, 2024
In multiple locations, there is a possible permissions bypass due to a missing null check. This...
High
Unreviewed
CVE-2024-34719
was published
Nov 13, 2024
In mayAdminGrantPermission of AdminRestrictedPermissionsUtils.java, there is a possible way to...
High
Unreviewed
CVE-2024-40661
was published
Nov 13, 2024
In DevmemIntChangeSparse2 of devicemem_server.c, there is a possible way to achieve arbitrary...
High
Unreviewed
CVE-2024-40671
was published
Nov 13, 2024
The WordPress User Extra Fields plugin for WordPress is vulnerable to privilege escalation due to...
High
Unreviewed
CVE-2024-10800
was published
Nov 13, 2024
The GPX Viewer plugin for WordPress is vulnerable to arbitrary file creation due to a missing...
High
Unreviewed
CVE-2024-10629
was published
Nov 13, 2024
The Th Shop Mania theme for WordPress is vulnerable to unauthorized arbitrary plugin installation...
High
Unreviewed
CVE-2024-10674
was published
Nov 9, 2024
The Top Store theme for WordPress is vulnerable to unauthorized arbitrary plugin installation due...
High
Unreviewed
CVE-2024-10673
was published
Nov 9, 2024
Missing Authorization vulnerability in Geek Code Lab Login As Users allows Exploiting Incorrectly...
High
Unreviewed
CVE-2024-43982
was published
Nov 1, 2024
Missing Authorization vulnerability in WP Sunshine Sunshine Photo Cart allows Exploiting...
High
Unreviewed
CVE-2024-47314
was published
Nov 1, 2024
ProTip!
Advisories are also available from the
GraphQL API