GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,300
Erlang
31
GitHub Actions
21
Go
2,069
Maven
5,000+
npm
3,744
NuGet
668
pip
3,429
Pub
12
RubyGems
892
Rust
880
Swift
36
Unreviewed advisories
All unreviewed
5,000+
121,358 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
bpf: put bpf_link's program...
Moderate
Unreviewed
CVE-2024-56786
was published
Jan 8, 2025
A vulnerability, which was classified as critical, has been found in code-projects Online Shoe...
Moderate
Unreviewed
CVE-2025-0207
was published
Jan 4, 2025
A vulnerability was found in Campcodes Project Management System 1.0. It has been declared as...
Moderate
Unreviewed
CVE-2025-0213
was published
Jan 4, 2025
A vulnerability, which was classified as critical, has been found in code-projects Travel...
Moderate
Unreviewed
CVE-2025-0229
was published
Jan 5, 2025
A vulnerability, which was classified as critical, was found in code-projects Responsive Hotel...
Moderate
Unreviewed
CVE-2025-0230
was published
Jan 5, 2025
A vulnerability has been found in Codezips Gym Management System 1.0 and classified as critical....
Moderate
Unreviewed
CVE-2025-0231
was published
Jan 6, 2025
A Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in...
Moderate
Unreviewed
CVE-2023-22652
was published
Jun 1, 2023
A Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in...
Moderate
Unreviewed
CVE-2023-32181
was published
Jun 1, 2023
A vulnerability was found in Codezips Technical Discussion Forum 1.0 and classified as critical....
Moderate
Unreviewed
CVE-2024-12788
was published
Dec 19, 2024
A vulnerability has been found in 1000 Projects Attendance Tracking Management System 1.0 and...
Moderate
Unreviewed
CVE-2024-12787
was published
Dec 19, 2024
IBM Cognos Analytics 11.2.0 through 11.2.4 and 12.0.0 through 12.0.3 is vulnerable to HTML...
Moderate
Unreviewed
CVE-2024-41752
was published
Dec 18, 2024
On affected platforms running Arista EOS, a specially crafted packet with incorrect VLAN tag...
Moderate
Unreviewed
CVE-2024-5872
was published
Jan 10, 2025
On affected platforms running Arista EOS with SNMP configured, if “snmp-server transmit max-size”...
Moderate
Unreviewed
CVE-2024-7095
was published
Jan 10, 2025
On affected platforms running Arista EOS with one of the following features configured to...
Moderate
Unreviewed
CVE-2024-6437
was published
Jan 10, 2025
A vulnerability was found in wangl1989 mysiteforme 1.0. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2024-13138
was published
Jan 5, 2025
A vulnerability, which was classified as critical, was found in code-projects Online Shoe Store 1...
Moderate
Unreviewed
CVE-2025-0208
was published
Jan 4, 2025
A vulnerability has been found in Campcodes School Faculty Scheduling System 1.0 and classified...
Moderate
Unreviewed
CVE-2025-0210
was published
Jan 4, 2025
A vulnerability was found in Campcodes Student Grading System 1.0. It has been classified as...
Moderate
Unreviewed
CVE-2025-0212
was published
Jan 4, 2025
A vulnerability has been found in TreasureHuntGame TreasureHunt up to 963e0e0 and classified as...
Moderate
Unreviewed
CVE-2024-12895
was published
Dec 22, 2024
Cross-site Scripting (XSS) - Stored in GitHub repository jgraph/drawio prior to 21.2.8.
Moderate
Unreviewed
CVE-2023-3026
was published
Jun 1, 2023
If a MIME email combines OpenPGP and OpenPGP MIME data in a certain way Thunderbird repeatedly...
Moderate
Unreviewed
CVE-2023-0616
was published
Jun 2, 2023
Bluetooth Classic in Bluetooth Core Specification through 5.3 does not properly conceal device...
Moderate
Unreviewed
CVE-2022-24695
was published
Jun 2, 2023
Incorrect Authorization vulnerability in Drupal Commerce View Receipt allows Forceful Browsing...
Moderate
Unreviewed
CVE-2024-13257
was published
Jan 9, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-13289
was published
Jan 9, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-13292
was published
Jan 9, 2025
ProTip!
Advisories are also available from the
GraphQL API