GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,476
Erlang
33
GitHub Actions
24
Go
2,207
Maven
5,000+
npm
3,858
NuGet
696
pip
3,639
Pub
12
RubyGems
913
Rust
918
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
3,680 advisories
Filter by severity
The Checkout Mestres do WP for WooCommerce plugin for WordPress is vulnerable to unauthorized...
Critical
Unreviewed
CVE-2025-2266
was published
Mar 29, 2025
Italtel NetMatch-S CI 5.2.0-20211008 has incorrect Access Control under NMSCI-WebGui...
Critical
Unreviewed
CVE-2022-39811
was published
Jan 28, 2023
The School Management System – WPSchoolPress plugin for WordPress is vulnerable to Privilege...
High
Unreviewed
CVE-2025-1667
was published
Mar 15, 2025
A vulnerability in an API of Cisco ISE could allow an authenticated, remote attacker with valid...
Critical
Unreviewed
CVE-2025-20125
was published
Feb 5, 2025
Missing authorization in PostgreSQL built-in views pg_stats_ext and pg_stats_ext_exprs allows an...
Low
Unreviewed
CVE-2024-4317
was published
May 14, 2024
Missing Authorization vulnerability in webrangers Clear Sucuri Cache allows Exploiting...
Moderate
Unreviewed
CVE-2025-31469
was published
Mar 28, 2025
The Administrator Z plugin for WordPress is vulnerable to unauthorized modification of data that...
High
Unreviewed
CVE-2025-2815
was published
Mar 28, 2025
DESCOR INFOCAD 3.5.1 and before and fixed in v.3.5.2.0 has a broken authorization schema.
Moderate
Unreviewed
CVE-2025-26853
was published
Mar 20, 2025
Missing Authorization vulnerability in Shinetheme Traveler.This issue affects Traveler: from n/a...
High
Unreviewed
CVE-2025-26956
was published
Mar 28, 2025
Missing Authorization vulnerability in ThimPress LearnPress allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-22739
was published
Mar 28, 2025
Missing Authorization vulnerability in Automattic Sensei LMS allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-22740
was published
Mar 28, 2025
Missing Authorization vulnerability in Shinetheme Traveler.This issue affects Traveler: from n/a...
High
Unreviewed
CVE-2025-26733
was published
Mar 28, 2025
In the Linux kernel, the following vulnerability has been resolved:
media: rc: bpf attach/detach...
High
Unreviewed
CVE-2023-52642
was published
Apr 17, 2024
Missing Authorization vulnerability in Wholesale Team WholesaleX.This issue affects WholesaleX:...
Moderate
Unreviewed
CVE-2024-30234
was published
Mar 26, 2024
A Broken Object Level Authorization vulnerability in the component /households/permissions of hay...
Low
Unreviewed
CVE-2024-55070
was published
Mar 27, 2025
A Broken Object Level Authorization vulnerability in the component /api/users/{user-id} of hay...
Moderate
Unreviewed
CVE-2024-55072
was published
Mar 27, 2025
A Broken Object Level Authorization vulnerability in the component /api/users/{user-id} of hay...
High
Unreviewed
CVE-2024-55073
was published
Mar 27, 2025
Missing Authorization vulnerability in iNET iNET Webkit allows Accessing Functionality Not...
Moderate
Unreviewed
CVE-2025-22629
was published
Mar 27, 2025
The Error Log Viewer by BestWebSoft WordPress plugin before 1.1.3 contains a vulnerability that...
Moderate
Unreviewed
CVE-2023-6821
was published
Mar 18, 2024
Missing Authorization vulnerability in AwesomeTOGI Awesome Event Booking allows Exploiting...
Moderate
Unreviewed
CVE-2025-22668
was published
Mar 27, 2025
Missing Authorization vulnerability in e4jvikwp VikBooking Hotel Booking Engine & PMS allows...
Moderate
Unreviewed
CVE-2025-22670
was published
Mar 27, 2025
Missing Authorization vulnerability in smackcoders AIO Performance Profiler, Monitor, Optimize,...
Moderate
Unreviewed
CVE-2025-22647
was published
Mar 27, 2025
Missing Authorization vulnerability in Creative Werk Designs Export Order, Product, Customer &...
Moderate
Unreviewed
CVE-2025-22667
was published
Mar 27, 2025
Missing Authorization vulnerability in Leap13 Disable Elementor Editor Translation allows...
Moderate
Unreviewed
CVE-2025-22671
was published
Mar 27, 2025
Missing Authorization vulnerability in Shakeeb Sadikeen RapidLoad allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-22665
was published
Mar 27, 2025
ProTip!
Advisories are also available from the
GraphQL API