GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,386
Erlang
33
GitHub Actions
22
Go
2,141
Maven
5,000+
npm
3,803
NuGet
687
pip
3,480
Pub
12
RubyGems
897
Rust
898
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
150 advisories
Filter by severity
Typecho v1.3.0 was discovered to contain a race condition vulnerability in the post commenting...
Moderate
Unreviewed
CVE-2024-35539
was published
Aug 19, 2024
Typecho v1.3.0 was discovered to contain a Client IP Spoofing vulnerability, which allows...
Moderate
Unreviewed
CVE-2024-35538
was published
Aug 19, 2024
An IP Spoofing vulnerability has been discovered in Likeshop up to 2.5.7.20210811. This issue...
Moderate
Unreviewed
CVE-2024-41432
was published
Aug 7, 2024
This issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.4. A...
Moderate
Unreviewed
CVE-2024-27853
was published
Jul 30, 2024
Authentication Bypass by Spoofing vulnerability in Patreon Patreon WordPress allows Functionality...
Moderate
Unreviewed
CVE-2024-37430
was published
Jul 9, 2024
Certain http endpoints of Checkmk in Checkmk < 2.3.0p10 < 2.2.0p31, < 2.1.0p46, <= 2.0.0p39...
Moderate
Unreviewed
CVE-2024-6163
was published
Jul 8, 2024
DESIGNA ABACUS v.18 and before allows an attacker to bypass the payment process via a crafted QR...
Moderate
Unreviewed
CVE-2024-31802
was published
Jun 27, 2024
Click Studios Passwordstate Core before 9.8 build 9858 allows Authentication Bypass.
Moderate
Unreviewed
CVE-2024-39337
was published
Jun 24, 2024
Microsoft Edge (Chromium-based) Spoofing Vulnerability
Moderate
Unreviewed
CVE-2024-30058
was published
Jun 13, 2024
An issue in Annonshop.app DecentralizeJustice/ anonymousLocker commit 2b2b4 allows attackers to...
Moderate
Unreviewed
CVE-2024-36588
was published
Jun 13, 2024
Authentication Bypass by Spoofing vulnerability in miniorange Malware Scanner allows Accessing...
Moderate
Unreviewed
CVE-2023-52176
was published
Jun 4, 2024
Authentication Bypass by Spoofing vulnerability in FeedbackWP Rate my Post – WP Rating System...
Moderate
Unreviewed
CVE-2023-51667
was published
Jun 4, 2024
Authentication Bypass by Spoofing vulnerability in WPMU DEV Branda allows Accessing Functionality...
Moderate
Unreviewed
CVE-2023-51542
was published
Jun 4, 2024
Authentication Bypass by Spoofing vulnerability in Metagauss RegistrationMagic allows Accessing...
Moderate
Unreviewed
CVE-2023-51543
was published
Jun 4, 2024
Authentication Bypass by Spoofing vulnerability in yonifre Maspik – Spam blacklist allows...
Moderate
Unreviewed
CVE-2023-48271
was published
Jun 4, 2024
Authentication Bypass by Spoofing vulnerability in 10up Restricted Site Access allows Accessing...
Moderate
Unreviewed
CVE-2023-48753
was published
Jun 4, 2024
Authentication Bypass by Spoofing vulnerability in pluginkollektiv Antispam Bee allows Accessing...
Moderate
Unreviewed
CVE-2023-41134
was published
Jun 4, 2024
Authentication Bypass by Spoofing vulnerability in IP2Location Download IP2Location Country...
Moderate
Unreviewed
CVE-2023-37865
was published
Jun 4, 2024
Multiple Cisco products are affected by a vulnerability in the Snort Intrusion Prevention System ...
Moderate
Unreviewed
CVE-2024-20363
was published
May 22, 2024
Authentication Bypass by Spoofing vulnerability in RafflePress Giveaways and Contests allows...
Moderate
Unreviewed
CVE-2024-32827
was published
May 17, 2024
Authentication Bypass by Spoofing vulnerability in WP Royal Royal Elementor Addons allows...
Moderate
Unreviewed
CVE-2024-32786
was published
May 17, 2024
Authentication Bypass by Spoofing vulnerability in webtechideas WTI Like Post allows...
Moderate
Unreviewed
CVE-2024-33917
was published
May 17, 2024
Authentication Bypass by Spoofing vulnerability in Wpmet Wp Ultimate Review allows Functionality...
Moderate
Unreviewed
CVE-2024-21746
was published
May 17, 2024
Authentication Bypass by Spoofing vulnerability in LionScripts IP Blocker Lite allows...
Moderate
Unreviewed
CVE-2024-30479
was published
May 17, 2024
Authentication Bypass by Spoofing vulnerability in Stefano Lissa & The Newsletter Team Newsletter...
Moderate
Unreviewed
CVE-2024-30522
was published
May 17, 2024
ProTip!
Advisories are also available from the
GraphQL API