GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,343
Erlang
31
GitHub Actions
22
Go
2,107
Maven
5,000+
npm
3,764
NuGet
679
pip
3,452
Pub
12
RubyGems
892
Rust
886
Swift
37
Unreviewed advisories
All unreviewed
5,000+
122,876 advisories
Filter by severity
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
Moderate
Unreviewed
CVE-2024-43472
was published
Aug 16, 2024
A reflected cross-site scripting (XSS) vulnerability in the component dl_liuyan_save.php of ZZCMS...
Moderate
Unreviewed
CVE-2024-43005
was published
Aug 16, 2024
A reflected cross-site scripting (XSS) vulnerability exists in user/login.php at line 24 in ZZCMS...
Moderate
Unreviewed
CVE-2024-43009
was published
Aug 16, 2024
An arbitrary file deletion vulnerability exists in the admin/del.php file at line 62 in ZZCMS...
Moderate
Unreviewed
CVE-2024-43011
was published
Aug 16, 2024
A stored cross-site scripting (XSS) vulnerability exists in ZZCMS2023 in the ask/show.php file at...
Moderate
Unreviewed
CVE-2024-43006
was published
Aug 16, 2024
IBM QRadar Suite Software 1.10.12.0 through 1.10.22.0 and IBM Cloud Pak for Security 1.10.0.0...
Moderate
Unreviewed
CVE-2023-47728
was published
Aug 16, 2024
Cilium leaks information via incorrect ReferenceGrant update logic in Gateway API
Moderate
CVE-2024-42486
was published
for
github.com/cilium/cilium
(Go)
Aug 16, 2024
A Cross-site Scripting (XSS) vulnerability exists in version v2024-01-05 of the indexmenu plugin...
Moderate
Unreviewed
CVE-2024-42758
was published
Aug 16, 2024
A stored cross-site scripting (XSS) vulnerability in October CMS Bloghub Plugin v1.3.8 and lower...
Moderate
Unreviewed
CVE-2024-25837
was published
Aug 16, 2024
When performing an online tag generation to devices which communicate
using the ControlLogix...
Moderate
Unreviewed
CVE-2024-6098
was published
Aug 16, 2024
A denial-of-service vulnerability was reported in some Lenovo printers that could allow an...
Moderate
Unreviewed
CVE-2024-5210
was published
Aug 16, 2024
A denial-of-service vulnerability was reported in some Lenovo printers that could allow an...
Moderate
Unreviewed
CVE-2024-5209
was published
Aug 16, 2024
A denial-of-service vulnerability was reported in some Lenovo printers that could allow an...
Moderate
Unreviewed
CVE-2024-4782
was published
Aug 16, 2024
A denial-of-service vulnerability was reported in some Lenovo printers that could allow an...
Moderate
Unreviewed
CVE-2024-4781
was published
Aug 16, 2024
A denial-of-service vulnerability was reported in some Lenovo printers that could allow an...
Moderate
Unreviewed
CVE-2024-6004
was published
Aug 16, 2024
In JetBrains TeamCity before 2024.07.1 multiple stored XSS was possible on Clouds page
Moderate
Unreviewed
CVE-2024-43807
was published
Aug 16, 2024
In JetBrains TeamCity before 2024.07.1 reflected XSS was possible in the AWS Core plugin
Moderate
Unreviewed
CVE-2024-43810
was published
Aug 16, 2024
The JetElements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'id'...
Moderate
Unreviewed
CVE-2024-7144
was published
Aug 16, 2024
The JetBlocks for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Moderate
Unreviewed
CVE-2024-7147
was published
Aug 16, 2024
Ericsson RAN Compute and Site Controller 6610 contains a vulnerability in the Control System...
Moderate
Unreviewed
CVE-2024-25008
was published
Aug 16, 2024
The JetSearch plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘id’...
Moderate
Unreviewed
CVE-2024-7136
was published
Aug 16, 2024
The Download Plugins and Themes in ZIP from Dashboard plugin for WordPress is vulnerable to Cross...
Moderate
Unreviewed
CVE-2024-7501
was published
Aug 16, 2024
The Theme My Login plugin for WordPress is vulnerable to Cross-Site Request Forgery in all...
Moderate
Unreviewed
CVE-2024-7422
was published
Aug 16, 2024
A vulnerability was found in SourceCodester Online Graduate Tracer System 1.0 and classified as...
Moderate
Unreviewed
CVE-2024-7845
was published
Aug 16, 2024
The Custom Field For WP Job Manager plugin for WordPress is vulnerable to Insecure Direct Object...
Moderate
Unreviewed
CVE-2023-7049
was published
Aug 16, 2024
ProTip!
Advisories are also available from the
GraphQL API