GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,412
Erlang
33
GitHub Actions
22
Go
2,148
Maven
5,000+
npm
3,814
NuGet
689
pip
3,487
Pub
12
RubyGems
901
Rust
900
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
246,508 advisories
Filter by severity
There is a Hard-coded Cryptographic Key in Docusnap 13.0.1440.24261, and earlier and later versions.
Moderate
Unreviewed
CVE-2025-26849
was published
Mar 4, 2025
The Wallet System for WooCommerce – Wallet, Wallet Cashback, Refunds, Partial Payment, Wallet...
Moderate
Unreviewed
CVE-2024-13682
was published
Mar 4, 2025
The Structured Content (JSON-LD) #wpsc plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2025-0512
was published
Mar 4, 2025
The Master Addons – Elementor Addons with White Label, Free Widgets, Hover Effects, Conditions, &...
Moderate
Unreviewed
CVE-2024-9618
was published
Mar 4, 2025
Vulnerability of improper access permission in the HDC module
Impact: Successful exploitation of...
Moderate
Unreviewed
CVE-2024-58050
was published
Mar 4, 2025
Vulnerability of improper access permission in the process management module
Impact: Successful...
Moderate
Unreviewed
CVE-2025-27521
was published
Mar 4, 2025
The Wallet System for WooCommerce – Wallet, Wallet Cashback, Refunds, Partial Payment, Wallet...
Moderate
Unreviewed
CVE-2024-13724
was published
Mar 4, 2025
The Master Addons – Elementor Addons with White Label, Free Widgets, Hover Effects, Conditions, &...
Moderate
Unreviewed
CVE-2025-0433
was published
Mar 4, 2025
Permission management vulnerability in the lock screen module
Impact: Successful exploitation of...
Moderate
Unreviewed
CVE-2024-58046
was published
Mar 4, 2025
Permission bypass vulnerability in the window module
Impact: Successful exploitation of this...
High
Unreviewed
CVE-2024-58043
was published
Mar 4, 2025
NAKIVO Backup & Replication before 11.0.0.88174 allows absolute path traversal for reading files...
High
Unreviewed
CVE-2024-48248
was published
Mar 4, 2025
Permission verification bypass vulnerability in the notification module
Impact: Successful...
High
Unreviewed
CVE-2024-58044
was published
Mar 4, 2025
Multi-concurrency vulnerability in the media digital copyright protection module
Impact:...
High
Unreviewed
CVE-2024-58045
was published
Mar 4, 2025
Permission verification vulnerability in the media library module
Impact: Successful exploitation...
Moderate
Unreviewed
CVE-2024-58049
was published
Mar 4, 2025
Multi-thread problem vulnerability in the package management module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-58048
was published
Mar 4, 2025
Permission verification vulnerability in the media library module
Impact: Successful exploitation...
Moderate
Unreviewed
CVE-2024-58047
was published
Mar 4, 2025
in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds...
Low
Unreviewed
CVE-2025-22847
was published
Mar 4, 2025
in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds...
Low
Unreviewed
CVE-2025-22841
was published
Mar 4, 2025
in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre...
Low
Unreviewed
CVE-2025-23420
was published
Mar 4, 2025
in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre...
Low
Unreviewed
CVE-2025-23414
was published
Mar 4, 2025
in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre...
Low
Unreviewed
CVE-2025-23240
was published
Mar 4, 2025
in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through buffer overflow.
Low
Unreviewed
CVE-2025-22897
was published
Mar 4, 2025
in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre...
Low
Unreviewed
CVE-2025-24301
was published
Mar 4, 2025
The Newscrunch theme for WordPress is vulnerable to Cross-Site Request Forgery in all versions up...
High
Unreviewed
CVE-2025-1306
was published
Mar 4, 2025
in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through buffer overflow.
Low
Unreviewed
CVE-2025-23234
was published
Mar 4, 2025
ProTip!
Advisories are also available from the
GraphQL API