GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,825
Erlang
36
GitHub Actions
32
Go
2,419
Maven
5,000+
npm
4,055
NuGet
723
pip
3,847
Pub
12
RubyGems
934
Rust
1,006
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
3,062 advisories
Filter by severity
In firewall service, there is a possible way to write permission usage records of an app due to a...
Moderate
Unreviewed
CVE-2023-42703
was published
Dec 4, 2023
In imsservice, there is a possible way to write permission usage records of an app due to a...
Moderate
Unreviewed
CVE-2023-42704
was published
Dec 4, 2023
In firewall service, there is a possible way to write permission usage records of an app due to a...
Moderate
Unreviewed
CVE-2023-42713
was published
Dec 4, 2023
In imsservice, there is a possible way to write permission usage records of an app due to a...
Moderate
Unreviewed
CVE-2023-42678
was published
Dec 4, 2023
In imsservice, there is a possible way to write permission usage records of an app due to a...
Moderate
Unreviewed
CVE-2023-42674
was published
Dec 4, 2023
In imsservice, there is a possible way to write permission usage records of an app due to a...
Moderate
Unreviewed
CVE-2023-42677
was published
Dec 4, 2023
In firewall service, there is a possible way to write permission usage records of an app due to a...
Moderate
Unreviewed
CVE-2023-42709
was published
Dec 4, 2023
In imsservice, there is a possible way to write permission usage records of an app due to a...
Moderate
Unreviewed
CVE-2023-42672
was published
Dec 4, 2023
In imsservice, there is a possible way to write permission usage records of an app due to a...
Moderate
Unreviewed
CVE-2023-42671
was published
Dec 4, 2023
Missing Authorization vulnerability in WPOmnia KB Support – WordPress Help Desk and Knowledge...
Moderate
Unreviewed
CVE-2023-37890
was published
Nov 30, 2023
The Limit Login Attempts Reloaded WordPress plugin before 2.25.26 is missing authorization on the...
Moderate
Unreviewed
CVE-2023-5525
was published
Nov 27, 2023
The WordPress Backup & Migration WordPress plugin before 1.4.4 does not authorize some AJAX...
Moderate
Unreviewed
CVE-2023-5737
was published
Nov 27, 2023
The Seraphinite Accelerator WordPress plugin before 2.20.32 does not have authorisation and CSRF...
Moderate
Unreviewed
CVE-2023-5611
was published
Nov 27, 2023
The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due...
Moderate
Unreviewed
CVE-2023-5386
was published
Nov 22, 2023
The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due...
Moderate
Unreviewed
CVE-2023-5416
was published
Nov 22, 2023
The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due...
Moderate
Unreviewed
CVE-2023-5411
was published
Nov 22, 2023
The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due...
Moderate
Unreviewed
CVE-2023-5419
was published
Nov 22, 2023
The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due...
Moderate
Unreviewed
CVE-2023-5417
was published
Nov 22, 2023
The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due...
Moderate
Unreviewed
CVE-2023-5385
was published
Nov 22, 2023
The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due...
Moderate
Unreviewed
CVE-2023-5415
was published
Nov 22, 2023
The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due...
Moderate
Unreviewed
CVE-2023-5387
was published
Nov 22, 2023
The UserPro plugin for WordPress is vulnerable to unauthorized access of data due to a missing...
Moderate
Unreviewed
CVE-2023-2448
was published
Nov 22, 2023
Missing Authorization in GitHub repository pkp/pkp-lib prior to 3.3.0-16.
Moderate
Unreviewed
CVE-2023-5900
was published
Nov 14, 2023
The ImageMapper plugin for WordPress is vulnerable to unauthorized loss of data due to a missing...
Moderate
Unreviewed
CVE-2023-5506
was published
Nov 14, 2023
Prometheus metrics are available without
authentication. These expose detailed and sensitive...
Moderate
Unreviewed
CVE-2023-6001
was published
Nov 8, 2023
ProTip!
Advisories are also available from the
GraphQL API