GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,319
Erlang
31
GitHub Actions
21
Go
2,077
Maven
5,000+
npm
3,746
NuGet
674
pip
3,435
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
2,715 advisories
Filter by severity
Path traversal in Jenkins Phoenix AutoTest Plugin
Moderate
CVE-2022-28156
was published
for
com.surenpi.jenkins:phoenix-autotest
(Maven)
Mar 30, 2022
aaPanel v6.8.21 was discovered to be vulnerable to directory traversal. This vulnerability allows...
Moderate
Unreviewed
CVE-2022-26252
was published
Mar 28, 2022
Mendelson OFTP2 before 1.1 b43 is affected by directory traversal. To access the vulnerable code...
Moderate
Unreviewed
CVE-2022-27906
was published
Mar 26, 2022
Passwork On-Premise Edition before 4.6.13 allows migration/downloadExportFile Directory Traversal...
Moderate
Unreviewed
CVE-2022-25266
was published
Mar 25, 2022
Directory traversal vulnerability in admin/updatelist.php in BaconMap 1.0 allows remote attackers...
Moderate
Unreviewed
CVE-2010-4801
was published
May 17, 2022
Directory traversal vulnerability in index.php in OrangeHRM 2.6.0.1 allows remote attackers to...
Moderate
Unreviewed
CVE-2010-4798
was published
May 17, 2022
Directory traversal vulnerability in the JotLoader (com_jotloader) component 2.2.1 for Joomla!...
Moderate
Unreviewed
CVE-2010-4617
was published
May 17, 2022
Directory traversal vulnerability in WebSEAL in IBM Tivoli Access Manager for e-business 6.1.1...
Moderate
Unreviewed
CVE-2010-4622
was published
May 17, 2022
Directory traversal vulnerability in module.php in PhpGedView 4.2.3 and possibly other versions,...
Moderate
Unreviewed
CVE-2011-0405
was published
May 17, 2022
Directory traversal vulnerability in system/system.php in Zwii 2.1.1, when magic_quotes_gpc is...
Moderate
Unreviewed
CVE-2011-0505
was published
May 17, 2022
Directory traversal vulnerability in WebSEAL in IBM Tivoli Access Manager for e-business 5.1...
Moderate
Unreviewed
CVE-2011-0494
was published
May 17, 2022
Directory traversal vulnerability in modules/profile/user.php in Ax Developer CMS (AxDCMS) 0.1.1...
Moderate
Unreviewed
CVE-2011-0506
was published
May 17, 2022
Directory traversal vulnerability in core/lib/router.php in LotusCMS Fraise 3.0, when...
Moderate
Unreviewed
CVE-2011-0518
was published
May 17, 2022
Path Traversal in Gitea
Moderate
CVE-2021-29134
was published
for
code.gitea.io/gitea
(Go)
Mar 16, 2022
The Simple Download Monitor WordPress plugin before 3.9.5 allows users with a role as low as...
Moderate
Unreviewed
CVE-2021-24692
was published
Mar 15, 2022
Path traversal in FreeTAKServer-UI
Moderate
CVE-2022-25511
was published
for
FreeTAKServer-UI
(pip)
Mar 12, 2022
An issue in index.php of OneNav v0.9.14 allows attackers to perform directory traversal.
Moderate
Unreviewed
CVE-2022-26276
was published
Mar 13, 2022
It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA)...
Moderate
Unreviewed
CVE-2021-42857
was published
Mar 11, 2022
Directory traversal vulnerability in pfSense-pkg-WireGuard pfSense-pkg-WireGuard 0.1.5 versions...
Moderate
Unreviewed
CVE-2022-21132
was published
Mar 11, 2022
Sinatra Path Traversal vulnerability
Moderate
CVE-2018-7212
was published
for
sinatra
(RubyGems)
Feb 20, 2018
The rack-cors rubygem may allow directory traveral
Moderate
CVE-2019-18978
was published
for
rack-cors
(RubyGems)
Nov 15, 2019
RustEmbed generated `get` method allows for directory traversal when reading files from disk
Moderate
GHSA-cgw6-f3mj-h742
was published
for
rust-embed
(Rust)
Jun 17, 2022
Arbitrary File Write via Archive Extraction in mholt/archiver
Moderate
CVE-2018-1002207
was published
for
github.com/mholt/archiver
(Go)
Feb 15, 2022
Path Traversal within joomla/archive zip class
Moderate
CVE-2021-26028
was published
for
joomla/archive
(Composer)
Mar 24, 2021
ProTip!
Advisories are also available from the
GraphQL API