GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,253
Erlang
31
GitHub Actions
21
Go
2,018
Maven
5,000+
npm
3,725
NuGet
662
pip
3,402
Pub
12
RubyGems
890
Rust
861
Swift
36
Unreviewed advisories
All unreviewed
5,000+
100,644 advisories
Filter by severity
An issue was discovered in Qlik Sense Enterprise for Windows before November 2024 IR. An...
High
Unreviewed
CVE-2024-55579
was published
Dec 9, 2024
An issue was discovered in Qlik Sense Enterprise for Windows before November 2024 IR....
High
Unreviewed
CVE-2024-55580
was published
Dec 9, 2024
A vulnerability classified as critical has been found in TP-Link VN020 F3v(T) TT_V6.2.1021....
High
Unreviewed
CVE-2024-12343
was published
Dec 8, 2024
A vulnerability was found in TP-Link VN020 F3v(T) TT_V6.2.1021. It has been rated as critical....
High
Unreviewed
CVE-2024-12342
was published
Dec 8, 2024
IBM AIX 7.2, 7.3 and VIOS 3.1 and 4.1 could allow a local user to execute arbitrary commands on...
High
Unreviewed
CVE-2024-47115
was published
Dec 7, 2024
The FileOrganizer – Manage WordPress and Website Files plugin for WordPress is vulnerable to...
High
Unreviewed
CVE-2024-11010
was published
Dec 7, 2024
The Gallery plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and...
High
Unreviewed
CVE-2024-11501
was published
Dec 7, 2024
The Beautiful taxonomy filters plugin for WordPress is vulnerable to SQL Injection via the ...
High
Unreviewed
CVE-2024-12270
was published
Dec 7, 2024
Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x uses weak credential mechanism...
High
Unreviewed
CVE-2024-45722
was published
Dec 6, 2024
Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x could allow an attacker to...
High
Unreviewed
CVE-2024-47146
was published
Dec 6, 2024
Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x could allow an attacker to...
High
Unreviewed
CVE-2024-47791
was published
Dec 6, 2024
NVIDIA UFM Enterprise, UFM Appliance, and UFM CyberAI contain a vulnerability where an attacker...
High
Unreviewed
CVE-2024-0130
was published
Dec 6, 2024
Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x contains a feature that could...
High
Unreviewed
CVE-2024-51727
was published
Dec 6, 2024
Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x could enable an attacker to...
High
Unreviewed
CVE-2024-47043
was published
Dec 6, 2024
Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x contains a a feature that could...
High
Unreviewed
CVE-2024-42494
was published
Dec 6, 2024
A local low-level user on the server machine with credentials to the running OAS services can...
High
Unreviewed
CVE-2024-11220
was published
Dec 6, 2024
A link following vulnerability has been reported to affect several QNAP operating system versions...
High
Unreviewed
CVE-2024-53691
was published
Dec 6, 2024
A command injection vulnerability has been reported to affect License Center. If exploited, the...
High
Unreviewed
CVE-2024-48863
was published
Dec 6, 2024
An improper certificate validation vulnerability has been reported to affect several QNAP...
High
Unreviewed
CVE-2024-48865
was published
Dec 6, 2024
An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported...
High
Unreviewed
CVE-2024-48868
was published
Dec 6, 2024
A command injection vulnerability has been reported to affect several QNAP operating system...
High
Unreviewed
CVE-2024-50393
was published
Dec 6, 2024
Starting in Python 3.12.0, the asyncio._SelectorSocketTransport.writelines()
method would not ...
High
Unreviewed
CVE-2024-12254
was published
Dec 6, 2024
phpMyFAQ Generates an Error Message Containing Sensitive Information if database server is not available
High
CVE-2024-54141
was published
for
thorsten/phpmyfaq
(Composer)
Dec 6, 2024
Path Traversal vulnerability in NotFound ARForms allows Path Traversal.This issue affects ARForms...
High
Unreviewed
CVE-2024-54216
was published
Dec 6, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-54209
was published
Dec 6, 2024
ProTip!
Advisories are also available from the
GraphQL API