GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,077
Erlang
29
GitHub Actions
19
Go
1,903
Maven
5,000+
npm
3,634
NuGet
638
pip
3,249
Pub
10
RubyGems
867
Rust
819
Swift
35
Unreviewed advisories
All unreviewed
5,000+
1,338 advisories
Filter by severity
Transformers Deserialization of Untrusted Data vulnerability
Low
CVE-2024-3568
was published
for
transformers
(pip)
Apr 10, 2024
A vulnerability was found in EyouCMS 1.6.5. It has been declared as critical. This vulnerability...
Moderate
Unreviewed
CVE-2024-3431
was published
Apr 8, 2024
Deserialization of Untrusted Data vulnerability in PickPlugins Product Designer.This issue...
High
Unreviewed
CVE-2024-31277
was published
Apr 7, 2024
Deserialization of Untrusted Data vulnerability in VJInfotech WP Import Export Lite.This issue...
Moderate
Unreviewed
CVE-2024-31308
was published
Apr 7, 2024
Voltronic Power ViewPower Pro Deserialization of Untrusted Data Remote Code Execution...
Critical
Unreviewed
CVE-2023-51570
was published
Apr 2, 2024
A deserialization vulnerability in the FASTJSON component of Alldata v0.4.6 allows attackers to...
Critical
Unreviewed
CVE-2024-29433
was published
Apr 1, 2024
Deserialization of Untrusted Data vulnerability in Filter Custom Fields & Taxonomies Light.This...
Critical
Unreviewed
CVE-2024-31094
was published
Mar 31, 2024
Deserialization of Untrusted Data vulnerability in MainWP MainWP Links Manager Extension.This...
High
Unreviewed
CVE-2023-23649
was published
Mar 28, 2024
Deserialization of Untrusted Data vulnerability in WP Sunshine Sunshine Photo Cart.This issue...
Moderate
Unreviewed
CVE-2024-30221
was published
Mar 28, 2024
Deserialization of Untrusted Data vulnerability in Hercules Design Hercules Core.This issue...
Critical
Unreviewed
CVE-2024-30228
was published
Mar 28, 2024
Deserialization of Untrusted Data vulnerability in Acowebs PDF Invoices and Packing Slips For...
High
Unreviewed
CVE-2024-30230
was published
Mar 28, 2024
Deserialization of Untrusted Data vulnerability in WPENGINE, INC. WP Migrate.This issue affects...
Critical
Unreviewed
CVE-2024-30225
was published
Mar 28, 2024
Deserialization of Untrusted Data vulnerability in WPDeveloper BetterDocs.This issue affects...
Critical
Unreviewed
CVE-2024-30226
was published
Mar 28, 2024
Deserialization of Untrusted Data vulnerability in Wholesale Team WholesaleX.This issue affects...
Critical
Unreviewed
CVE-2024-30224
was published
Mar 28, 2024
Deserialization of Untrusted Data vulnerability in INFINITUM FORM Geo Controller.This issue...
Critical
Unreviewed
CVE-2024-30227
was published
Mar 28, 2024
Deserialization of Untrusted Data vulnerability in GiveWP.This issue affects GiveWP: from n/a...
High
Unreviewed
CVE-2024-30229
was published
Mar 28, 2024
Deserialization of Untrusted Data vulnerability in Repute Infosystems ARMember.This issue affects...
Critical
Unreviewed
CVE-2024-30223
was published
Mar 28, 2024
Deserialization of Untrusted Data vulnerability in Repute Infosystems ARMember.This issue affects...
High
Unreviewed
CVE-2024-30222
was published
Mar 28, 2024
Deserialization of Untrusted Data vulnerability in Echo Plugins Knowledge Base for Documentation,...
High
Unreviewed
CVE-2024-24842
was published
Mar 27, 2024
Deserialization of Untrusted Data vulnerability in WPEverest User Registration.This issue affects...
High
Unreviewed
CVE-2023-27459
was published
Mar 26, 2024
RDoc RCE vulnerability with .rdoc_options
Moderate
CVE-2024-27281
was published
for
rdoc
(RubyGems)
Mar 25, 2024
Gibbon through 26.0.00 allows remote authenticated users to conduct PHP deserialization attacks...
High
Unreviewed
CVE-2024-24725
was published
Mar 24, 2024
Gadget chain in Symfony 1 due to uncontrolled unserialized input in sfNamespacedParameterHolder
Moderate
CVE-2024-28861
was published
for
friendsofsymfony1/symfony1
(Composer)
Mar 22, 2024
The Artica-Proxy administrative web application will deserialize arbitrary PHP objects supplied...
Critical
Unreviewed
CVE-2024-2054
was published
Mar 21, 2024
`qiskit_ibm_runtime.RuntimeDecoder` can execute arbitrary code
Moderate
CVE-2024-29032
was published
for
qiskit-ibm-runtime
(pip)
Mar 20, 2024
ProTip!
Advisories are also available from the
GraphQL API