GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Language support
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
3,440
Erlang
29
GitHub Actions
16
Go
1,667
Maven
4,928
npm
3,457
NuGet
595
pip
2,871
Pub
10
RubyGems
823
Rust
766
Swift
34
Unreviewed advisories
All unreviewed
5,000+
446 advisories
Filter by severity
IDOR vulnerability in Janto Ticketing Software affecting version 4.3r10. This vulnerability could...
High
Unreviewed
CVE-2024-4538
was published
May 7, 2024
IDOR vulnerability in Janto Ticketing Software affecting version 4.3r10. This vulnerability could...
High
Unreviewed
CVE-2024-4537
was published
May 7, 2024
Authorization Bypass Through User-Controlled Key vulnerability in The SEO Guys at SEOPress...
Moderate
Unreviewed
CVE-2024-34383
was published
May 6, 2024
Authorization Bypass Through User-Controlled Key vulnerability in Fabio Rinaldi Crelly Slider...
Moderate
Unreviewed
CVE-2024-33542
was published
Apr 29, 2024
Authorization Bypass Through User-Controlled Key vulnerability in FeedbackWP Rate my Post – WP...
Moderate
Unreviewed
CVE-2024-32823
was published
Apr 24, 2024
Authorization Bypass Through User-Controlled Key vulnerability in Metagauss ProfileGrid.This...
Moderate
Unreviewed
CVE-2024-32772
was published
Apr 24, 2024
Authorization Bypass Through User-Controlled Key vulnerability in Metagauss ProfileGrid.This...
Moderate
Unreviewed
CVE-2024-32808
was published
Apr 24, 2024
Authorization Bypass Through User-Controlled Key vulnerability in Wpmet Wp Ultimate Review.This...
Moderate
Unreviewed
CVE-2024-32683
was published
Apr 19, 2024
Authorization Bypass Through User-Controlled Key vulnerability in Plechev Andrey WP-Recall.This...
Moderate
Unreviewed
CVE-2024-32604
was published
Apr 18, 2024
A potential security vulnerability has been identified in HPE FlexFabric and FlexNetwork series...
Moderate
Unreviewed
CVE-2024-22439
was published
Apr 15, 2024
Reportico affected by Incorrect Access Control
Moderate
CVE-2023-48865
was published
for
reportico-web/reportico
(Composer)
Apr 12, 2024
A prompt bypass exists in the secondscreen.gateway service running on webOS version 4 through 7....
High
Unreviewed
CVE-2023-6317
was published
Apr 9, 2024
Authorization Bypass Through User-Controlled Key vulnerability in Metagauss ProfileGrid.This...
Moderate
Unreviewed
CVE-2024-31291
was published
Apr 7, 2024
Authorization Bypass Through User-Controlled Key vulnerability in Repute Infosystems BookingPress...
Moderate
Unreviewed
CVE-2024-31296
was published
Apr 7, 2024
Grafana: Users outside an organization can delete a snapshot with its key
Moderate
CVE-2024-1313
was published
for
github.com/grafana/grafana
(Go)
Apr 5, 2024
Authorization Bypass Through User-Controlled Key vulnerability in ExtremePacs Extreme XDS allows...
High
Unreviewed
CVE-2023-6523
was published
Apr 5, 2024
Authorization Bypass Through User-Controlled Key vulnerability in Ricard Torres Thumbs Rating...
Unknown
Unreviewed
CVE-2024-31095
was published
Mar 31, 2024
Authorization Bypass Through User-Controlled Key vulnerability in UPQODE Whizz.This issue affects...
Moderate
Unreviewed
CVE-2024-30543
was published
Mar 31, 2024
Authorization Bypass Through User-Controlled Key vulnerability in Metagauss ProfileGrid.This...
Moderate
Unreviewed
CVE-2024-30513
was published
Mar 29, 2024
Authorization Bypass Through User-Controlled Key vulnerability in Molongui.This issue affects...
Low
Unreviewed
CVE-2024-30507
was published
Mar 29, 2024
Duplicate Advisory: Grafana vulnerable to authorization bypass
Moderate
GHSA-mh7p-8m2f-qrm6
was published
for
github.com/grafana/grafana
(Go)
Mar 26, 2024
•
withdrawn
OneUptime Vulnerable to a Privilege Escalation via Local Storage Key Manipulation
High
CVE-2024-29194
was published
for
@oneuptime/common-server
(npm)
Mar 25, 2024
A vulnerability classified as critical was found in SourceCodester Employee Task Management...
High
Unreviewed
CVE-2024-2574
was published
Mar 18, 2024
A vulnerability has been found in SourceCodester Employee Task Management System 1.0 and...
High
Unreviewed
CVE-2024-2577
was published
Mar 18, 2024
A vulnerability, which was classified as critical, was found in SourceCodester Employee Task...
High
Unreviewed
CVE-2024-2576
was published
Mar 18, 2024
ProTip!
Advisories are also available from the
GraphQL API