GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,359
Erlang
33
GitHub Actions
22
Go
2,124
Maven
5,000+
npm
3,787
NuGet
683
pip
3,467
Pub
12
RubyGems
894
Rust
892
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
427 advisories
Filter by severity
A CWE-434 "Unrestricted Upload of File with Dangerous Type" in the template file uploads in Q...
Moderate
Unreviewed
CVE-2025-26350
was published
Feb 12, 2025
A vulnerability has been found in SourceCodester Open Source Clinic Management System 1.0 and...
Moderate
Unreviewed
CVE-2024-4809
was published
May 14, 2024
A vulnerability was found in SourceCodester Online Computer and Laptop Store 1.0. It has been...
Moderate
Unreviewed
CVE-2024-4820
was published
May 14, 2024
A vulnerability has been found in SourceCodester Food Menu Manager 1.0 and classified as critical...
Moderate
Unreviewed
CVE-2025-1166
was published
Feb 11, 2025
A vulnerability, which was classified as critical, was found in Lumsoft ERP 8. Affected is the...
Moderate
Unreviewed
CVE-2025-1165
was published
Feb 11, 2025
A vulnerability was found in SourceCodester Prison Management System 1.0. It has been rated as...
Moderate
Unreviewed
CVE-2024-3437
was published
Apr 8, 2024
A vulnerability was found in SourceCodester Vehicle Management System up to 1.0 and classified as...
Moderate
Unreviewed
CVE-2024-5145
was published
May 21, 2024
A vulnerability was found in SourceCodester SchoolWebTech 1.0. It has been classified as critical...
Moderate
Unreviewed
CVE-2024-4966
was published
May 16, 2024
A vulnerability was found in SourceCodester Online Art Gallery Management System 1.0. It has been...
Moderate
Unreviewed
CVE-2024-4946
was published
May 16, 2024
A vulnerability classified as critical has been found in SourceCodester Employee and Visitor Gate...
Moderate
Unreviewed
CVE-2024-4921
was published
May 16, 2024
A vulnerability was found in SourceCodester Best Courier Management System 1.0. It has been...
Moderate
Unreviewed
CVE-2024-4945
was published
May 16, 2024
A vulnerability classified as critical was found in itsourcecode Farm Management System up to 1.0...
Moderate
Unreviewed
CVE-2025-0582
was published
Jan 20, 2025
Zoho ManageEngine ServiceDesk Plus (SDP) before 10.0 build 10012 allows remote attackers to...
Moderate
Unreviewed
CVE-2019-8394
was published
May 14, 2022
An arbitrary file upload vulnerability in the UI login page logo upload function of Process Maker...
Moderate
Unreviewed
CVE-2024-41454
was published
Jan 16, 2025
An issue in themesebrand Chatvia v.5.3.2 allows a remote attacker to execute arbitrary code via...
Moderate
Unreviewed
CVE-2024-40513
was published
Jan 17, 2025
An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated...
Moderate
Unreviewed
CVE-2023-42248
was published
Jan 14, 2025
An unauthenticated remote attacker can upload a arbitrary script file due to improper input...
Moderate
Unreviewed
CVE-2024-25994
was published
Mar 12, 2024
File Upload vulnerability in unauthenticated
session found in OpenText™ iManager 3.2.6.0200. The...
Moderate
Unreviewed
CVE-2024-3488
was published
May 15, 2024
BibORB 1.3.2, and possibly earlier versions, does not properly enforce a restriction for...
Moderate
Unreviewed
CVE-2005-0254
was published
May 1, 2022
The Admin and Customer Messages After Order for WooCommerce: OrderConvo plugin for WordPress is...
Moderate
Unreviewed
CVE-2024-13355
was published
Jan 16, 2025
SAP NetWeaver AS JAVA (User Admin Application) is vulnerable to stored cross site scripting...
Moderate
Unreviewed
CVE-2025-0057
was published
Jan 14, 2025
A vulnerability was found in Campcodes Project Management System 1.0. It has been declared as...
Moderate
Unreviewed
CVE-2025-0213
was published
Jan 4, 2025
A vulnerability was found in wangl1989 mysiteforme 1.0. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2024-13138
was published
Jan 5, 2025
The <redacted>.exe or <redacted>.exe CGI binary can be used to upload arbitrary files to /tmp...
Moderate
Unreviewed
CVE-2024-43662
was published
Jan 9, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in Beee ACF City Selector allows...
Moderate
Unreviewed
CVE-2024-56264
was published
Jan 2, 2025
ProTip!
Advisories are also available from the
GraphQL API