GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,458
Erlang
33
GitHub Actions
22
Go
2,156
Maven
5,000+
npm
3,818
NuGet
693
pip
3,497
Pub
12
RubyGems
903
Rust
903
Swift
38
Unreviewed advisories
All unreviewed
5,000+
165 advisories
Filter by severity
Local File Inclusion in Rack::Static
High
CVE-2025-27610
was published
for
rack
(RubyGems)
Mar 10, 2025
When uploading organism or sequence data via the web interface,
GMOD Apollo
will unzip and...
Critical
Unreviewed
CVE-2025-23410
was published
Mar 5, 2025
Relative Path Traversal vulnerability in NotFound Delete Comments By Status allows PHP Local File...
High
Unreviewed
CVE-2025-25130
was published
Mar 3, 2025
IBM Cognos Analytics 11.2.0 through 11.2.4 FP5 is vulnerable to local file inclusion...
Moderate
Unreviewed
CVE-2024-56340
was published
Feb 28, 2025
Mautic allows Remote Code Execution and File Deletion in Asset Uploads
Critical
CVE-2024-47051
was published
for
mautic/core
(Composer)
Feb 26, 2025
A vulnerability was found in SourceCodester Best Church Management Software 1.0. It has been...
Moderate
Unreviewed
CVE-2025-1599
was published
Feb 24, 2025
A vulnerability has been found in PHPGurukul Online Nurse Hiring System 1.0 and classified as...
Moderate
Unreviewed
CVE-2025-1588
was published
Feb 23, 2025
Solon Path Traversal
Moderate
CVE-2025-1584
was published
for
org.noear:solon-web-staticfiles
(Maven)
Feb 23, 2025
Relative Path Traversal vulnerability in Ping Identity PingAM Java Policy Agent allows Parameter...
Critical
Unreviewed
CVE-2025-20059
was published
Feb 20, 2025
Bit Assist plugin for WordPress is vulnerable to Path Traversal in all versions up to, and...
Moderate
Unreviewed
CVE-2025-0822
was published
Feb 15, 2025
Bit Assist plugin for WordPress is vulnerable to Path Traversal in all versions up to, and...
Moderate
Unreviewed
CVE-2024-13791
was published
Feb 14, 2025
A CWE-23 "Relative Path Traversal" in the file upload mechanism in Q-Free MaxTime less than or...
High
Unreviewed
CVE-2025-26349
was published
Feb 12, 2025
A vulnerability has been found in Safetytest Cloud-Master Server up to 1.1.1 and classified as...
Moderate
Unreviewed
CVE-2025-1086
was published
Feb 7, 2025
Apache Solr Relative Path Traversal vulnerability
Moderate
CVE-2024-52012
was published
for
org.apache.solr:solr-core
(Maven)
Jan 27, 2025
Fedora Repository 3.8.1 allows path traversal when extracting uploaded archives ("Zip Slip"). A...
High
Unreviewed
CVE-2025-23011
was published
Jan 23, 2025
A relative path traversal in Fortinet FortiRecorder [CWE-23] version 7.2.0 through 7.2.1 and...
Moderate
Unreviewed
CVE-2024-46664
was published
Jan 14, 2025
A relative path traversal vulnerability [CWE-23] in Fortinet FortiManager version 7.4.0 through...
Moderate
Unreviewed
CVE-2024-32115
was published
Jan 14, 2025
A vulnerability classified as critical was found in Guangzhou Huayi Intelligent Technology Jeewms...
Moderate
Unreviewed
CVE-2025-0390
was published
Jan 11, 2025
A vulnerability classified as problematic was found in Tsinghua Unigroup Electronic Archives...
Moderate
Unreviewed
CVE-2025-0225
was published
Jan 5, 2025
A vulnerability was found in Dahua IPC-HFW1200S, IPC-HFW2300R-Z, IPC-HFW5220E-Z and IPC-HDW1200S...
Moderate
Unreviewed
CVE-2024-13130
was published
Jan 5, 2025
A vulnerability was found in Intelbras VIP S3020 G2, VIP S4020 G2, VIP S4020 G3 and VIP S4320 G2...
Moderate
Unreviewed
CVE-2024-12897
was published
Dec 23, 2024
A relative path traversal in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5.0 through 8.5...
Critical
Unreviewed
CVE-2023-34990
was published
Dec 18, 2024
TenderDocTransfer from Chunghwa Telecom has an Arbitrary File Write vulnerability. The...
High
Unreviewed
CVE-2024-12642
was published
Dec 16, 2024
The topm-client from Chunghwa Telecom has an Arbitrary File Read vulnerability. The application...
Moderate
Unreviewed
CVE-2024-12645
was published
Dec 16, 2024
Microsoft SharePoint Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-49062
was published
Dec 12, 2024
ProTip!
Advisories are also available from the
GraphQL API