GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,354
Erlang
31
GitHub Actions
22
Go
2,120
Maven
5,000+
npm
3,779
NuGet
681
pip
3,460
Pub
12
RubyGems
892
Rust
888
Swift
38
Unreviewed advisories
All unreviewed
5,000+
265,127 advisories
Filter by severity
Server-Side Request Forgery (SSRF) vulnerability in Hep Hep Hurra (HHH) Hurrakify allows Server...
High
Unreviewed
CVE-2024-54330
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-54333
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-54347
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-54345
was published
Dec 13, 2024
Missing Authorization vulnerability in Awesome Support Team Awesome Support allows Exploiting...
Moderate
Unreviewed
CVE-2024-54289
was published
Dec 13, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-54261
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-54288
was published
Dec 13, 2024
Incorrect Privilege Assignment vulnerability in CE21 CE21 Suite allows Privilege Escalation.This...
Critical
Unreviewed
CVE-2024-54293
was published
Dec 13, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Neuralabz LTD. AutoWP allows Cross Site...
Moderate
Unreviewed
CVE-2024-54300
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-54302
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-54314
was published
Dec 13, 2024
Insertion of Sensitive Information Into Sent Data vulnerability in wpdebuglog PostBox allows...
Moderate
Unreviewed
CVE-2024-54309
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-54320
was published
Dec 13, 2024
Missing Authorization vulnerability in WPExpertsio New User Approve allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2024-54323
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-54334
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-54316
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-54312
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-54344
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-54349
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-54346
was published
Dec 13, 2024
Missing Authorization vulnerability in Appsbd Elite Notification – Sales Popup, Social Proof,...
Moderate
Unreviewed
CVE-2024-54241
was published
Dec 13, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-54258
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-54303
was published
Dec 13, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-54305
was published
Dec 13, 2024
Missing Authorization vulnerability in Eyal Fitoussi GEO my WordPress allows Exploiting...
Moderate
Unreviewed
CVE-2024-54326
was published
Dec 13, 2024
ProTip!
Advisories are also available from the
GraphQL API