GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,274
Erlang
31
GitHub Actions
21
Go
2,056
Maven
5,000+
npm
3,740
NuGet
668
pip
3,419
Pub
12
RubyGems
891
Rust
872
Swift
36
Unreviewed advisories
All unreviewed
5,000+
282 advisories
Filter by severity
Authentication Bypass by Spoofing vulnerability in RafflePress Giveaways and Contests allows...
Moderate
Unreviewed
CVE-2024-32827
was published
May 17, 2024
Authentication Bypass by Spoofing vulnerability in helderk Maintenance Mode allows Functionality...
Low
Unreviewed
CVE-2024-32708
was published
May 17, 2024
Authentication Bypass by Spoofing vulnerability in WP Royal Royal Elementor Addons allows...
Moderate
Unreviewed
CVE-2024-32786
was published
May 17, 2024
Multiple Cisco products are affected by a vulnerability in the Snort Intrusion Prevention System ...
Moderate
Unreviewed
CVE-2024-20363
was published
May 22, 2024
Authentication Bypass by Spoofing vulnerability in IP2Location Download IP2Location Country...
Moderate
Unreviewed
CVE-2023-37865
was published
Jun 4, 2024
Authentication Bypass by Spoofing vulnerability in pluginkollektiv Antispam Bee allows Accessing...
Moderate
Unreviewed
CVE-2023-41134
was published
Jun 4, 2024
Authentication Bypass by Spoofing vulnerability in WP Maintenance allows Accessing Functionality...
Low
Unreviewed
CVE-2023-47769
was published
Jun 4, 2024
Authentication Bypass by Spoofing vulnerability in wpdevart Coming soon and Maintenance mode...
Low
Unreviewed
CVE-2023-49741
was published
Jun 4, 2024
Authentication Bypass by Spoofing vulnerability in 10up Restricted Site Access allows Accessing...
Moderate
Unreviewed
CVE-2023-48753
was published
Jun 4, 2024
Authentication Bypass by Spoofing vulnerability in yonifre Maspik – Spam blacklist allows...
Moderate
Unreviewed
CVE-2023-48271
was published
Jun 4, 2024
Authentication Bypass by Spoofing vulnerability in Metagauss RegistrationMagic allows Accessing...
Moderate
Unreviewed
CVE-2023-51543
was published
Jun 4, 2024
Authentication Bypass by Spoofing vulnerability in WPMU DEV Branda allows Accessing Functionality...
Moderate
Unreviewed
CVE-2023-51542
was published
Jun 4, 2024
Authentication Bypass by Spoofing vulnerability in FeedbackWP Rate my Post – WP Rating System...
Moderate
Unreviewed
CVE-2023-51667
was published
Jun 4, 2024
Authentication Bypass by Spoofing vulnerability in miniorange Malware Scanner allows Accessing...
Moderate
Unreviewed
CVE-2023-52176
was published
Jun 4, 2024
A flaw was found in OpenShift's Telemeter. If certain conditions are in place, an attacker can...
High
Unreviewed
CVE-2024-5037
was published
Jun 5, 2024
Authentication Bypass by Spoofing vulnerability in Acurax Under Construction / Maintenance Mode...
Low
Unreviewed
CVE-2024-35749
was published
Jun 10, 2024
A low severity vulnerability in BIPS has been identified where an attacker with high privileges...
Low
Unreviewed
CVE-2024-5812
was published
Jun 11, 2024
An issue in Annonshop.app DecentralizeJustice/ anonymousLocker commit 2b2b4 allows attackers to...
Moderate
Unreviewed
CVE-2024-36588
was published
Jun 13, 2024
Microsoft Edge (Chromium-based) Spoofing Vulnerability
Moderate
Unreviewed
CVE-2024-30058
was published
Jun 13, 2024
Click Studios Passwordstate Core before 9.8 build 9858 allows Authentication Bypass.
Moderate
Unreviewed
CVE-2024-39337
was published
Jun 24, 2024
DESIGNA ABACUS v.18 and before allows an attacker to bypass the payment process via a crafted QR...
Moderate
Unreviewed
CVE-2024-31802
was published
Jun 27, 2024
Security check loophole in HAProxy release (in combination with routing release) in Cloud Foundry...
Critical
Unreviewed
CVE-2024-37082
was published
Jul 3, 2024
Certain http endpoints of Checkmk in Checkmk < 2.3.0p10 < 2.2.0p31, < 2.1.0p46, <= 2.0.0p39...
Moderate
Unreviewed
CVE-2024-6163
was published
Jul 8, 2024
Authentication Bypass by Spoofing vulnerability in Patreon Patreon WordPress allows Functionality...
Moderate
Unreviewed
CVE-2024-37430
was published
Jul 9, 2024
PingOne MFA Integration Kit contains a vulnerability related to the Prompt Users to Set Up MFA...
High
Unreviewed
CVE-2023-40356
was published
Jul 9, 2024
ProTip!
Advisories are also available from the
GraphQL API