GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,633
Erlang
34
GitHub Actions
25
Go
2,239
Maven
5,000+
npm
3,902
NuGet
701
pip
3,668
Pub
12
RubyGems
914
Rust
943
Swift
38
Unreviewed advisories
All unreviewed
5,000+
128,520 advisories
Filter by severity
A vulnerability was found in PbootCMS 3.2.5. It has been classified as problematic. Affected is...
Moderate
Unreviewed
CVE-2025-3787
was published
Apr 18, 2025
74cms <=3.33 is vulnerable to remote code execution (RCE) in the background interface apiadmin.
Moderate
Unreviewed
CVE-2024-46089
was published
Apr 18, 2025
A vulnerability was found in baseweb JSite 1.0. It has been rated as problematic. Affected by...
Moderate
Unreviewed
CVE-2025-3789
was published
Apr 18, 2025
IBM Sterling Connect:Direct Web Services 6.1.0, 6.2.0, and 6.3.0
does not invalidate session...
Moderate
Unreviewed
CVE-2024-45651
was published
Apr 18, 2025
IBM Sterling Connect:Direct Web Services 6.1.0, 6.2.0, and 6.3.0 could allow an authenticated...
Moderate
Unreviewed
CVE-2024-49808
was published
Apr 18, 2025
A vulnerability was found in baseweb JSite 1.0. It has been declared as problematic. Affected by...
Moderate
Unreviewed
CVE-2025-3788
was published
Apr 18, 2025
A vulnerability classified as critical has been found in baseweb JSite 1.0. This affects an...
Moderate
Unreviewed
CVE-2025-3790
was published
Apr 18, 2025
The LA-Studio Element Kit for Elementor plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2025-3106
was published
Apr 18, 2025
The Download Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG...
Moderate
Unreviewed
CVE-2025-3056
was published
Apr 18, 2025
The Coupon Affiliates – Affiliate Plugin for WooCommerce plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-3598
was published
Apr 18, 2025
A vulnerability classified as critical was found in SourceCodester Web-based Pharmacy Product...
Moderate
Unreviewed
CVE-2025-3783
was published
Apr 18, 2025
The MapPress Maps for WordPress plugin before 2.94.10 does not sanitise and escape some of its...
Moderate
Unreviewed
CVE-2025-2162
was published
Apr 18, 2025
The Login Manager – Design Login Page, View Login Activity, Limit Login Attempts plugin for...
Moderate
Unreviewed
CVE-2025-2613
was published
Apr 18, 2025
The Piotnet Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2024-13650
was published
Apr 18, 2025
A missing authorization vulnerability was identified in GitHub Enterprise Server that allowed a...
Moderate
Unreviewed
CVE-2025-3124
was published
Apr 18, 2025
A vulnerability, which was classified as critical, has been found in SourceCodester Web-based...
Moderate
Unreviewed
CVE-2025-3765
was published
Apr 17, 2025
A vulnerability was found in PCMan FTP Server 2.0.7. It has been rated as critical. Affected by...
Moderate
Unreviewed
CVE-2025-3762
was published
Apr 17, 2025
A vulnerability classified as critical was found in SourceCodester Web-based Pharmacy Product...
Moderate
Unreviewed
CVE-2025-3764
was published
Apr 17, 2025
A vulnerability classified as critical has been found in SourceCodester Phone Management System 1...
Moderate
Unreviewed
CVE-2025-3763
was published
Apr 17, 2025
In the Linux kernel, the following vulnerability has been resolved:
block: Fix potential...
Moderate
Unreviewed
CVE-2022-49406
was published
Apr 17, 2025
In the Linux kernel, the following vulnerability has been resolved:
serial: 8250_aspeed_vuart:...
Moderate
Unreviewed
CVE-2022-49392
was published
Apr 17, 2025
In the Linux kernel, the following vulnerability has been resolved:
md: Don't set mddev private...
Moderate
Unreviewed
CVE-2022-49400
was published
Apr 17, 2025
In the Linux kernel, the following vulnerability has been resolved:
ext4: fix memory leak in...
Moderate
Unreviewed
CVE-2022-49408
was published
Apr 17, 2025
In the Linux kernel, the following vulnerability has been resolved:
lib/string_helpers: fix not...
Moderate
Unreviewed
CVE-2022-49403
was published
Apr 17, 2025
In the Linux kernel, the following vulnerability has been resolved:
RDMA/hfi1: Fix potential...
Moderate
Unreviewed
CVE-2022-49404
was published
Apr 17, 2025
ProTip!
Advisories are also available from the
GraphQL API