GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,324
Erlang
31
GitHub Actions
21
Go
2,087
Maven
5,000+
npm
3,751
NuGet
674
pip
3,437
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
121,967 advisories
Filter by severity
The JetElements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several...
Moderate
Unreviewed
CVE-2025-0371
was published
Jan 21, 2025
The 1003 Mortgage Application plugin for WordPress is vulnerable to Full Path Disclosure in all...
Moderate
Unreviewed
CVE-2024-13536
was published
Jan 21, 2025
IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.24, 7.1 through 7.1.2.10, and 7.2 through 7.2.3.13...
Moderate
Unreviewed
CVE-2024-45091
was published
Jan 21, 2025
IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0. 25 uses Cross-Origin...
Moderate
Unreviewed
CVE-2024-22348
was published
Jan 20, 2025
IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0. 25 uses weaker than...
Moderate
Unreviewed
CVE-2024-22347
was published
Jan 20, 2025
IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0. 25 allows web pages to be...
Moderate
Unreviewed
CVE-2024-22349
was published
Jan 20, 2025
IBM Security Verify Access 10.0.0 through 10.0.8 and IBM Security Verify Access Docker 10.0.0...
Moderate
Unreviewed
CVE-2024-45647
was published
Jan 20, 2025
A vulnerability was found in Shiprocket Module 3 on OpenCart. It has been rated as critical....
Moderate
Unreviewed
CVE-2025-0580
was published
Jan 20, 2025
The a+HRD from aEnrich Technology has a Server-side Request Forgery, allowing unauthenticated...
Moderate
Unreviewed
CVE-2025-0584
was published
Jan 20, 2025
A vulnerability classified as critical was found in itsourcecode Farm Management System up to 1.0...
Moderate
Unreviewed
CVE-2025-0582
was published
Jan 20, 2025
A vulnerability was found in Shiprocket Module 3/4 on OpenCart. It has been declared as critical....
Moderate
Unreviewed
CVE-2025-0579
was published
Jan 20, 2025
A vulnerability classified as problematic has been found in CampCodes School Management Software...
Moderate
Unreviewed
CVE-2025-0581
was published
Jan 20, 2025
The a+HRD from aEnrich Technology has a Reflected Cross-site Scripting vulnerability, allowing...
Moderate
Unreviewed
CVE-2025-0583
was published
Jan 20, 2025
A vulnerability was found in Facile Sistemas Cloud Apps up to 20250107. It has been classified as...
Moderate
Unreviewed
CVE-2025-0578
was published
Jan 20, 2025
A vulnerability was found in Mobotix M15 4.3.4.83 and classified as problematic. This issue...
Moderate
Unreviewed
CVE-2025-0576
was published
Jan 20, 2025
The Import any XML or CSV File to WordPress PRO plugin for WordPress is vulnerable to Stored...
Moderate
Unreviewed
CVE-2024-8722
was published
Jan 19, 2025
A vulnerability was found in ZZCMS 2023. It has been rated as critical. Affected by this issue is...
Moderate
Unreviewed
CVE-2025-0565
was published
Jan 19, 2025
A vulnerability was found in code-projects Fantasy-Cricket 1.0. It has been declared as critical....
Moderate
Unreviewed
CVE-2025-0564
was published
Jan 19, 2025
IBM Sterling Connect:Direct Web Services 6.0, 6.1, 6.2, and 6.3 could disclose sensitive IP...
Moderate
Unreviewed
CVE-2024-45653
was published
Jan 19, 2025
A vulnerability was found in code-projects Fantasy-Cricket 1.0. It has been classified as...
Moderate
Unreviewed
CVE-2025-0563
was published
Jan 19, 2025
IBM Maximo MXAPIASSET API 7.6.1.3 could allow a remote attacker to traverse directories on the...
Moderate
Unreviewed
CVE-2024-45652
was published
Jan 19, 2025
IBM Security ReaQta 3.12 could allow an authenticated user to perform unauthorized actions due to...
Moderate
Unreviewed
CVE-2024-45654
was published
Jan 19, 2025
A vulnerability was found in Codezips Gym Management System 1.0 and classified as critical. This...
Moderate
Unreviewed
CVE-2025-0562
was published
Jan 19, 2025
A vulnerability has been found in itsourcecode Farm Management System 1.0 and classified as...
Moderate
Unreviewed
CVE-2025-0561
was published
Jan 19, 2025
IBM Concert 1.0.0, 1.0.1, and 1.0.2 is vulnerable to sensitive information disclosure through...
Moderate
Unreviewed
CVE-2024-49354
was published
Jan 18, 2025
ProTip!
Advisories are also available from the
GraphQL API