GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,279
Erlang
31
GitHub Actions
21
Go
2,056
Maven
5,000+
npm
3,740
NuGet
668
pip
3,421
Pub
12
RubyGems
891
Rust
873
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,989 advisories
Filter by severity
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2024-0984
was published
Feb 29, 2024
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2024-1091
was published
Feb 29, 2024
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2024-1090
was published
Feb 29, 2024
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2024-0983
was published
Feb 29, 2024
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2024-1089
was published
Feb 29, 2024
The WooCommerce Point of Sale plugin for WordPress is vulnerable to privilege escalation in all...
Critical
Unreviewed
CVE-2024-11281
was published
Dec 25, 2024
The MarketKing — Ultimate WooCommerce Multivendor Marketplace Solution plugin for WordPress is...
Moderate
Unreviewed
CVE-2024-12413
was published
Dec 25, 2024
The Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form &...
Moderate
Unreviewed
CVE-2024-12190
was published
Dec 25, 2024
The PlugVersions – Easily rollback to previous versions of your plugins plugin for WordPress is...
High
Unreviewed
CVE-2024-12881
was published
Dec 24, 2024
The ELEX WooCommerce Dynamic Pricing and Discounts plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-12266
was published
Dec 24, 2024
The WC Price History for Omnibus plugin for WordPress is vulnerable to unauthorized access due to...
Moderate
Unreviewed
CVE-2024-12617
was published
Dec 24, 2024
The Print Invoice & Delivery Notes for WooCommerce plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-12210
was published
Dec 24, 2024
The Custom Login Page Styler – Login Protected Private Site , Change wp-admin login url ,...
High
Unreviewed
CVE-2024-12594
was published
Dec 24, 2024
The Change Memory Limit plugin for WordPress is vulnerable to unauthorized modification of data...
Moderate
Unreviewed
CVE-2024-1093
was published
Mar 5, 2024
The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid, Carousel and...
Moderate
Unreviewed
CVE-2024-11852
was published
Dec 22, 2024
The WP BASE Booking of Appointments, Services and Events plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-12558
was published
Dec 21, 2024
In JetBrains TeamCity before 2024.12 improper access control allowed unauthorized users to modify...
Moderate
Unreviewed
CVE-2024-56349
was published
Dec 20, 2024
The File Manager Pro – Filester plugin for WordPress is vulnerable to unauthorized modification...
Moderate
Unreviewed
CVE-2024-12331
was published
Dec 19, 2024
Missing Authorization vulnerability in theDotstore Advance Menu Manager.This issue affects...
High
Unreviewed
CVE-2024-54381
was published
Dec 18, 2024
Missing Authorization vulnerability in VibeThemes WPLMS allows Accessing Functionality Not...
High
Unreviewed
CVE-2024-56048
was published
Dec 18, 2024
In the development options section of the Settings app, there is a possible authentication bypass...
High
Unreviewed
CVE-2018-9477
was published
Nov 20, 2024
In multiple functions of ShortcutService.java, there is a possible creation of a spoofed shortcut...
High
Unreviewed
CVE-2018-9469
was published
Nov 20, 2024
In setAllowOnlyVpnForUids of NetworkManagementService.java, there is a possible security settings...
High
Unreviewed
CVE-2017-13314
was published
Nov 16, 2024
Missing Authorization vulnerability in Web Chunky Order Delivery & Pickup Location Date Time...
Moderate
Unreviewed
CVE-2024-55997
was published
Dec 18, 2024
The Travel Booking WordPress Theme theme for WordPress is vulnerable to unauthorized modification...
Moderate
Unreviewed
CVE-2024-11926
was published
Dec 18, 2024
ProTip!
Advisories are also available from the
GraphQL API