GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,270
Erlang
31
GitHub Actions
21
Go
2,046
Maven
5,000+
npm
3,737
NuGet
663
pip
3,415
Pub
12
RubyGems
891
Rust
868
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
20,902 advisories
Filter by severity
A SQL Injection was found in /remove_sent_message.php in kashipara E-learning Management System...
Critical
Unreviewed
CVE-2024-54925
was published
Dec 9, 2024
Kashipara E-learning Management System v1.0 is vulnerable to SQL Injection in /admin/delete_class...
Critical
Unreviewed
CVE-2024-54934
was published
Dec 9, 2024
Serviceware Processes 6.0 through 7.3 allows attackers without valid authentication to send a...
Critical
Unreviewed
CVE-2024-48956
was published
Dec 9, 2024
Kashipara E-learning Management System v1.0 is vulnerable to Remote Code Execution via File...
Critical
Unreviewed
CVE-2024-54918
was published
Dec 9, 2024
Arbitrary File Upload vulnerability in Doctor-Appointment version 1.0 in /Frontend/signup_com.php...
Critical
Unreviewed
CVE-2022-38946
was published
Dec 9, 2024
SQL Injection vulnerability in Flipkart-Clone-PHP version 1.0 in entry.php in product_title...
Critical
Unreviewed
CVE-2022-38947
was published
Dec 9, 2024
Pentaminds CuroVMS v2.0.1 was discovered to contain exposed credentials.
Critical
Unreviewed
CVE-2024-40583
was published
Dec 9, 2024
A SQL Injection vulnerability was found in the /teacher_signup.php of kashipara E-learning...
Critical
Unreviewed
CVE-2024-54920
was published
Dec 9, 2024
Missing Authorization vulnerability in Envato Security Team Sweet Date.This issue affects Sweet...
Critical
Unreviewed
CVE-2024-43222
was published
Dec 9, 2024
Unrestricted Upload of File with Dangerous Type vulnerability in Genetech Pie Register Premium...
Critical
Unreviewed
CVE-2024-53822
was published
Dec 9, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2024-54215
was published
Dec 9, 2024
Missing Authorization vulnerability in SoftLab Integrate Google Drive allows Exploiting...
Critical
Unreviewed
CVE-2023-32117
was published
Dec 9, 2024
The POSIX::2008 package before 0.24 for Perl has a potential _execve50c env buffer overflow.
Critical
Unreviewed
CVE-2024-55564
was published
Dec 9, 2024
MailCleaner before 28d913e has default values of ssh_host_dsa_key, ssh_host_rsa_key, and...
Critical
Unreviewed
CVE-2024-55560
was published
Dec 9, 2024
The WP Umbrella: Update Backup Restore & Monitoring plugin for WordPress is vulnerable to Local...
Critical
Unreviewed
CVE-2024-12209
was published
Dec 8, 2024
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v...
Critical
Unreviewed
CVE-2024-41645
was published
Dec 7, 2024
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v...
Critical
Unreviewed
CVE-2024-41644
was published
Dec 7, 2024
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v...
Critical
Unreviewed
CVE-2024-41647
was published
Dec 7, 2024
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v...
Critical
Unreviewed
CVE-2024-41646
was published
Dec 7, 2024
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v...
Critical
Unreviewed
CVE-2024-41649
was published
Dec 7, 2024
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to...
Critical
Unreviewed
CVE-2024-38921
was published
Dec 7, 2024
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to...
Critical
Unreviewed
CVE-2024-38923
was published
Dec 7, 2024
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to...
Critical
Unreviewed
CVE-2024-38925
was published
Dec 7, 2024
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to...
Critical
Unreviewed
CVE-2024-38924
was published
Dec 7, 2024
Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to...
Critical
Unreviewed
CVE-2024-38927
was published
Dec 7, 2024
ProTip!
Advisories are also available from the
GraphQL API