GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,170
Erlang
30
GitHub Actions
19
Go
1,981
Maven
5,000+
npm
3,700
NuGet
656
pip
3,319
Pub
11
RubyGems
882
Rust
834
Swift
35
Unreviewed advisories
All unreviewed
5,000+
6,094 advisories
Filter by severity
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Weblizar Coming Soon...
Moderate
Unreviewed
CVE-2024-38756
was published
Aug 13, 2024
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in David Maucher Send...
Moderate
Unreviewed
CVE-2024-38760
was published
Aug 13, 2024
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Olive Themes Olive...
Moderate
Unreviewed
CVE-2024-38749
was published
Aug 13, 2024
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in MBE Worldwide S.P.A....
Moderate
Unreviewed
CVE-2024-38742
was published
Aug 13, 2024
Undisclosed requests to BIG-IP iControl REST can lead to information leak of user account names. ...
Moderate
Unreviewed
CVE-2024-41723
was published
Aug 14, 2024
Sensitive information exposure in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms...
Moderate
Unreviewed
CVE-2024-39822
was published
Aug 14, 2024
Sensitive information disclosure in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms...
Moderate
Unreviewed
CVE-2024-39823
was published
Aug 14, 2024
Sensitive information disclosure in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms...
Moderate
Unreviewed
CVE-2024-39824
was published
Aug 14, 2024
Sensitive information disclosure in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms...
Moderate
Unreviewed
CVE-2024-42434
was published
Aug 14, 2024
Sensitive information disclosure in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms...
Moderate
Unreviewed
CVE-2024-42435
was published
Aug 14, 2024
The ElementsKit Pro plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
Moderate
Unreviewed
CVE-2024-7063
was published
Aug 15, 2024
The Newsletters plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to,...
Moderate
Unreviewed
CVE-2024-7411
was published
Aug 15, 2024
Information Disclosure in GNCC's GC2 Indoor Security Camera 1080P allows an attacker with...
Moderate
Unreviewed
CVE-2024-31799
was published
Aug 15, 2024
Cross Site Scripting vulnerability in Friendica v.2023.12 allows a remote attacker to obtain...
Moderate
Unreviewed
CVE-2024-27731
was published
Aug 15, 2024
A vulnerability, which was classified as problematic, was found in SourceCodester Online Graduate...
Moderate
Unreviewed
CVE-2024-7843
was published
Aug 16, 2024
A vulnerability, which was classified as problematic, has been found in SourceCodester Online...
Moderate
Unreviewed
CVE-2024-7842
was published
Aug 16, 2024
The Relevanssi – A Better Search plugin for WordPress is vulnerable to Information Exposure in...
Moderate
Unreviewed
CVE-2024-7630
was published
Aug 16, 2024
Cilium leaks information via incorrect ReferenceGrant update logic in Gateway API
Moderate
CVE-2024-42486
was published
for
github.com/cilium/cilium
(Go)
Aug 16, 2024
A vulnerability was found in ZZCMS 2023. It has been rated as problematic. This issue affects...
Moderate
Unreviewed
CVE-2024-7925
was published
Aug 19, 2024
Priority – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
Moderate
Unreviewed
CVE-2024-41698
was published
Aug 20, 2024
The Hide My Site plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
Moderate
Unreviewed
CVE-2024-5880
was published
Aug 21, 2024
The Flamix: Bitrix24 and Contact Form 7 integrations plugin for WordPress is vulnerable to Full...
Moderate
Unreviewed
CVE-2024-6568
was published
Aug 21, 2024
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in OpenText Performance...
Moderate
Unreviewed
CVE-2022-26327
was published
Aug 21, 2024
Mage AI allows remote unauthenticated attackers to leak the terminal server command history of arbitrary users
Moderate
CVE-2024-8072
was published
for
mage-ai
(pip)
Aug 22, 2024
The WordPress Button Plugin MaxButtons plugin for WordPress is vulnerable to information exposure...
Moderate
Unreviewed
CVE-2024-6499
was published
Aug 24, 2024
ProTip!
Advisories are also available from the
GraphQL API