GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,464
Erlang
33
GitHub Actions
22
Go
2,163
Maven
5,000+
npm
3,821
NuGet
696
pip
3,502
Pub
12
RubyGems
909
Rust
904
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
247,576 advisories
Filter by severity
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-54317
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-54316
was published
Dec 13, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Hive Support Hive Support – WordPress Help...
Moderate
Unreviewed
CVE-2024-54321
was published
Dec 13, 2024
Dell RecoverPoint for Virtual Machines 6.0.x contains an Improper access control vulnerability. A...
Moderate
Unreviewed
CVE-2024-24902
was published
Dec 13, 2024
Dell RecoverPoint for Virtual Machines 6.0.x contains Denial of Service vulnerability. A User...
Moderate
Unreviewed
CVE-2024-47984
was published
Dec 13, 2024
Dell RecoverPoint for VMs, version(s) 6.0.x contain(s) a Use of a Broken or Risky Cryptographic...
Moderate
Unreviewed
CVE-2024-28980
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-54231
was published
Dec 13, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-54258
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-54287
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-54288
was published
Dec 13, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-54261
was published
Dec 13, 2024
Unrestricted Upload of File with Dangerous Type vulnerability in Siddharth Nagar Import Export...
Critical
Unreviewed
CVE-2024-54262
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-54272
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-54233
was published
Dec 13, 2024
Missing Authorization vulnerability in Appsbd Elite Notification – Sales Popup, Social Proof,...
Moderate
Unreviewed
CVE-2024-54241
was published
Dec 13, 2024
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
Moderate
Unreviewed
CVE-2024-54259
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-54265
was published
Dec 13, 2024
Missing Authorization vulnerability in Seerox Easy Blocks pro allows Accessing Functionality Not...
High
Unreviewed
CVE-2024-54256
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-54286
was published
Dec 13, 2024
Deserialization of Untrusted Data vulnerability in Themeum WP Mega Menu allows Object Injection...
High
Unreviewed
CVE-2024-54282
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-54274
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-54276
was published
Dec 13, 2024
Missing Authorization vulnerability in dugudlabs Eyewear prescription form allows Privilege...
Critical
Unreviewed
CVE-2024-54239
was published
Dec 13, 2024
Missing Authorization vulnerability in CreativeMindsSolutions CM Answers allows Exploiting...
Moderate
Unreviewed
CVE-2024-54267
was published
Dec 13, 2024
Deserialization of Untrusted Data vulnerability in PickPlugins Mail Picker allows Object...
Critical
Unreviewed
CVE-2024-54273
was published
Dec 13, 2024
ProTip!
Advisories are also available from the
GraphQL API