GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,383
Erlang
33
GitHub Actions
22
Go
2,141
Maven
5,000+
npm
3,803
NuGet
687
pip
3,479
Pub
12
RubyGems
897
Rust
898
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,482 advisories
Filter by severity
Improper Input Validation vulnerability in the ContentType parameter for attachments on...
High
Unreviewed
CVE-2023-38060
was published
Jul 24, 2023
In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before 8.2.2 when using PDO:...
Critical
Unreviewed
CVE-2022-31631
was published
Feb 13, 2025
A vulnerability was found in ywoa up to 2024.07.03. It has been rated as critical. This issue...
Moderate
Unreviewed
CVE-2025-1227
was published
Feb 12, 2025
A vulnerability, which was classified as critical, has been found in ywoa up to 2024.07.03. This...
Moderate
Unreviewed
CVE-2025-1216
was published
Feb 12, 2025
A vulnerability classified as critical was found in ywoa up to 2024.07.03. This vulnerability...
Moderate
Unreviewed
CVE-2025-1224
was published
Feb 12, 2025
Crayfish Allows Remote Code Execution via hypercube X-Islandora-Args Header
Critical
GHSA-c2p2-hgjg-9r3f
was published
for
islandora/crayfish
(Composer)
Feb 12, 2025
Toyota RAV4 2021 vehicles automatically trust messages from other ECUs on a CAN bus, which allows...
Moderate
Unreviewed
CVE-2023-29389
was published
Apr 5, 2023
A vulnerability has been found in CodeZips Gym Management System 1.0 and classified as critical....
Moderate
Unreviewed
CVE-2025-1183
was published
Feb 12, 2025
A vulnerability, which was classified as critical, has been found in Codezips Gym Management...
Moderate
Unreviewed
CVE-2025-1188
was published
Feb 12, 2025
A vulnerability was found in SourceCodester Best Church Management Software 1.1. It has been...
Moderate
Unreviewed
CVE-2025-1200
was published
Feb 12, 2025
A vulnerability has been found in code-projects Real Estate Property Management System 1.0 and...
Moderate
Unreviewed
CVE-2025-1197
was published
Feb 12, 2025
A vulnerability was found in pihome-shc PiHome 1.77 and classified as critical. Affected by this...
Moderate
Unreviewed
CVE-2025-1184
was published
Feb 12, 2025
A vulnerability was found in pihome-shc PiHome 2.0. It has been classified as critical. This...
Moderate
Unreviewed
CVE-2025-1185
was published
Feb 12, 2025
Prototype Pollution in handlebars
Critical
CVE-2019-19919
was published
for
bootstrap-wysihtml5-rails
(RubyGems)
Dec 26, 2019
A vulnerability, which was classified as critical, has been found in Codezips Gym Management...
Moderate
Unreviewed
CVE-2025-0803
was published
Jan 29, 2025
An HTML Injection vulnerability in Avaya Spaces may have allowed disclosure of sensitive...
High
Unreviewed
CVE-2024-12756
was published
Feb 11, 2025
A vulnerability was found in itsourcecode Vehicle Management System 1.0. It has been classified...
Moderate
Unreviewed
CVE-2024-12784
was published
Dec 19, 2024
A vulnerability classified as critical has been found in code-projects Job Recruitment 1.0. This...
Moderate
Unreviewed
CVE-2025-1162
was published
Feb 11, 2025
A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All...
High
Unreviewed
CVE-2024-50572
was published
Nov 12, 2024
A vulnerability was found in SourceCodester Contact Manager with Export to VCF 1.0. It has been...
Moderate
Unreviewed
CVE-2025-1168
was published
Feb 11, 2025
A vulnerability was found in Mayuri K Employee Management System up to 192.168.70.3 and...
Moderate
Unreviewed
CVE-2025-1167
was published
Feb 11, 2025
A vulnerability, which was classified as critical, has been found in 1000 Projects Bookstore...
Moderate
Unreviewed
CVE-2025-1172
was published
Feb 11, 2025
A vulnerability, which was classified as critical, was found in 1000 Projects Bookstore...
Moderate
Unreviewed
CVE-2025-1173
was published
Feb 11, 2025
Moodle vulnerable to cache poisoning via injection into storage
Moderate
CVE-2024-43428
was published
for
moodle/moodle
(Composer)
Nov 7, 2024
Improper neutralization of special elements in output (CWE-74) used by the email generation...
Moderate
Unreviewed
CVE-2024-21838
was published
Mar 5, 2024
ProTip!
Advisories are also available from the
GraphQL API