GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
165 advisories
Filter by severity
A BOLA vulnerability in GET, PUT, DELETE /categories/{categoryId} allows a low privileged user to...
High
Unreviewed
CVE-2023-38047
was published
Jul 9, 2024
Authorization Bypass Through User-Controlled Key vulnerability in Talya Informatics Travel APPS...
High
Unreviewed
CVE-2024-1107
was published
Jun 27, 2024
An Improper Access Control vulnerability exists in the lunary-ai/lunary repository, affecting...
High
Unreviewed
CVE-2024-5131
was published
Jun 6, 2024
An Incorrect Authorization vulnerability exists in lunary-ai/lunary versions up to and including...
High
Unreviewed
CVE-2024-5130
was published
Jun 6, 2024
An authorization bypass through user-controlled key vulnerability [CWE-639] in...
High
Unreviewed
CVE-2023-40720
was published
May 14, 2024
IDOR vulnerability in Janto Ticketing Software affecting version 4.3r10. This vulnerability could...
High
Unreviewed
CVE-2024-4538
was published
May 7, 2024
IDOR vulnerability in Janto Ticketing Software affecting version 4.3r10. This vulnerability could...
High
Unreviewed
CVE-2024-4537
was published
May 7, 2024
SQL injection vulnerability in Vaales Technologies V_QRS v.2024-01-17 allows a remote attacker to...
High
Unreviewed
CVE-2024-24312
was published
May 1, 2024
Arbitrary File Read vulnerability in novel-plus 4.3.0 and before allows a remote attacker to...
High
Unreviewed
CVE-2024-33383
was published
Apr 30, 2024
Insecure Direct Object References (IDOR) vulnerability in Hospital Management System 1.0 allows...
High
Unreviewed
CVE-2024-28320
was published
Apr 29, 2024
Webid v1.2.1 suffers from an Insecure Direct Object Reference (IDOR) - Broken Access Control...
High
Unreviewed
CVE-2024-32166
was published
Apr 19, 2024
A prompt bypass exists in the secondscreen.gateway service running on webOS version 4 through 7....
High
Unreviewed
CVE-2023-6317
was published
Apr 9, 2024
Authorization Bypass Through User-Controlled Key vulnerability in ExtremePacs Extreme XDS allows...
High
Unreviewed
CVE-2023-6523
was published
Apr 5, 2024
A vulnerability classified as critical was found in SourceCodester Employee Task Management...
High
Unreviewed
CVE-2024-2574
was published
Mar 18, 2024
A vulnerability has been found in SourceCodester Employee Task Management System 1.0 and...
High
Unreviewed
CVE-2024-2577
was published
Mar 18, 2024
A vulnerability, which was classified as critical, was found in SourceCodester Employee Task...
High
Unreviewed
CVE-2024-2576
was published
Mar 18, 2024
A vulnerability, which was classified as critical, has been found in SourceCodester Employee Task...
High
Unreviewed
CVE-2024-2575
was published
Mar 18, 2024
An authorization bypass through user-controlled key vulnerability [CWE-639] in FortiOS version 7...
High
Unreviewed
CVE-2024-23112
was published
Mar 12, 2024
Authorization Bypass Through User-Controlled Key vulnerability in NetIQ (OpenText) Client Login...
High
Unreviewed
CVE-2024-1470
was published
Feb 29, 2024
Authorization Bypass Through User-Controlled Key vulnerability in Software Engineering...
High
Unreviewed
CVE-2023-6724
was published
Feb 9, 2024
Authorization Bypass Through User-Controlled Key vulnerability in Mia Technology Inc. MİA-MED...
High
Unreviewed
CVE-2023-6515
was published
Feb 8, 2024
Authorization Bypass Through User-Controlled Key vulnerability in ali Forms Contact Form builder...
High
Unreviewed
CVE-2024-22305
was published
Jan 31, 2024
The Moderna Sistemas ModernaNet Hospital Management System 2024 is susceptible to an Insecure...
High
Unreviewed
CVE-2024-23747
was published
Jan 29, 2024
A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.7). The "intermediate...
High
Unreviewed
CVE-2023-49251
was published
Jan 9, 2024
A vulnerability was found in SourceCodester Clinic Queuing System 1.0. It has been declared as...
High
Unreviewed
CVE-2024-0264
was published
Jan 7, 2024
ProTip!
Advisories are also available from the
GraphQL API