GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,454
Erlang
33
GitHub Actions
22
Go
2,152
Maven
5,000+
npm
3,816
NuGet
692
pip
3,492
Pub
12
RubyGems
902
Rust
900
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
3,544 advisories
Filter by severity
The School Management System for Wordpress plugin for WordPress is vulnerable to Reflected Cross...
Moderate
Unreviewed
CVE-2024-12611
was published
Mar 7, 2025
The Golo - City Travel Guide WordPress Theme theme for WordPress is vulnerable to privilege...
Critical
Unreviewed
CVE-2024-12876
was published
Mar 7, 2025
The School Management System for Wordpress plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2024-12610
was published
Mar 7, 2025
The UiPress lite | Effortless custom dashboards, admin themes and pages plugin for WordPress is...
High
Unreviewed
CVE-2025-1309
was published
Mar 7, 2025
The Flex Mag - Responsive WordPress News Theme theme for WordPress is vulnerable to unauthorized...
High
Unreviewed
CVE-2024-13655
was published
Mar 7, 2025
The EventPrime – Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-13526
was published
Mar 7, 2025
The Cookie banner plugin for WordPress – Cookiebot CMP by Usercentrics plugin for WordPress is...
Moderate
Unreviewed
CVE-2025-1666
was published
Mar 6, 2025
The Sparkling theme for WordPress is vulnerable to unauthorized plugin activation/deactivation...
Moderate
Unreviewed
CVE-2024-13423
was published
Mar 5, 2025
The WP Online Contract plugin for WordPress is vulnerable to unauthorized access due to a missing...
Moderate
Unreviewed
CVE-2025-0954
was published
Mar 5, 2025
The Lafka - Multi Store Burger - Pizza & Food Delivery WooCommerce Theme theme for WordPress is...
Moderate
Unreviewed
CVE-2024-13811
was published
Mar 5, 2025
The Zass - WooCommerce Theme for Handmade Artists and Artisans theme for WordPress is vulnerable...
Moderate
Unreviewed
CVE-2024-13810
was published
Mar 5, 2025
The WordPress Awesome Import & Export Plugin - Import & Export WordPress Data plugin for...
High
Unreviewed
CVE-2024-13232
was published
Mar 5, 2025
The Hero Mega Menu - Responsive WordPress Menu Plugin plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-13780
was published
Mar 5, 2025
The WooMail - WooCommerce Email Customizer plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2024-13747
was published
Mar 5, 2025
The JNews - WordPress Newspaper Magazine Blog AMP Theme theme for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-8682
was published
Mar 5, 2025
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923...
Critical
Unreviewed
CVE-2025-27666
was published
Mar 5, 2025
The Newscrunch theme for WordPress is vulnerable to arbitrary file uploads due to a missing...
Critical
Unreviewed
CVE-2025-1307
was published
Mar 4, 2025
The Animation Addons for Elementor Pro plugin for WordPress is vulnerable to unauthorized...
High
Unreviewed
CVE-2025-1639
was published
Mar 4, 2025
The VW Storefront theme for WordPress is vulnerable to unauthorized modification of data due to a...
Moderate
Unreviewed
CVE-2024-13686
was published
Mar 4, 2025
Missing Authorization vulnerability in NotFound Residential Address Detection allows Privilege...
Critical
Unreviewed
CVE-2025-27270
was published
Mar 3, 2025
Missing Authorization vulnerability in Alex Volkov WAH Forms allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-23763
was published
Mar 3, 2025
Missing Authorization vulnerability in NotFound WP Journal allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-23613
was published
Mar 3, 2025
Missing Authorization vulnerability in NotFound Interactive Page Hierarchy allows Exploiting...
Moderate
Unreviewed
CVE-2025-23615
was published
Mar 3, 2025
Missing Authorization vulnerability in tsecher ts-tree allows Exploiting Incorrectly Configured...
Moderate
Unreviewed
CVE-2025-23515
was published
Mar 3, 2025
Missing Authorization vulnerability in radicaldesigns radSLIDE allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-23440
was published
Mar 3, 2025
ProTip!
Advisories are also available from the
GraphQL API