GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,752
Maven
5,000+
npm
4,357
NuGet
765
pip
4,121
Pub
12
RubyGems
961
Rust
1,069
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,216 advisories
Filter by severity
A flaw has been found in Smartbit CommV Smartschool App up to 10.4.4. Impacted is an unknown...
Moderate
Unreviewed
CVE-2025-14702
was published
Dec 15, 2025
A vulnerability was found in Shiguangwu sgwbox N3 2.0.25. The impacted element is an unknown...
Moderate
Unreviewed
CVE-2025-14704
was published
Dec 15, 2025
A weakness has been identified in atlaszz AI Photo Team Galleryit App 1.3.8.2 on Android. This...
Moderate
Unreviewed
CVE-2025-14698
was published
Dec 15, 2025
A security vulnerability has been detected in Municorn FAX App 3.27.0 on Android. This...
Moderate
Unreviewed
CVE-2025-14699
was published
Dec 15, 2025
A vulnerability has been found in Jehovahs Witnesses JW Library App up to 15.5.1 on Android....
Moderate
Unreviewed
CVE-2025-14617
was published
Dec 13, 2025
The Simple CSV Table plugin for WordPress is vulnerable to Directory Traversal in all versions up...
Moderate
Unreviewed
CVE-2025-12960
was published
Dec 12, 2025
The Image Gallery – Photo Grid & Video Gallery plugin for WordPress is vulnerable to Path...
Moderate
Unreviewed
CVE-2025-13891
was published
Dec 12, 2025
The WatchTowerHQ plugin for WordPress is vulnerable to arbitrary file read via the ...
Moderate
Unreviewed
CVE-2025-13972
was published
Dec 12, 2025
The WP Job Portal plugin for WordPress is vulnerable to Arbitrary File Read in all versions up to...
Moderate
Unreviewed
CVE-2025-14293
was published
Dec 11, 2025
A weakness has been identified in baowzh hfly up to 638ff9abe9078bc977c132b37acbe1900b63491c....
Moderate
Unreviewed
CVE-2025-14520
was published
Dec 11, 2025
A security vulnerability has been detected in baowzh hfly up to...
Moderate
Unreviewed
CVE-2025-14521
was published
Dec 11, 2025
Pyrofork has a Path Traversal in download_media Method
Moderate
CVE-2025-67720
was published
for
pyrofork
(pip)
Dec 10, 2025
Jenkins Redpen - Pipeline Reporter for Jira Plugin has a path traversal vulnerability
Moderate
CVE-2025-67643
was published
for
org.jenkinsci.plugins:pipeline-reporter-by-redpen
(Maven)
Dec 10, 2025
A lack of security checks in the file import process of RHOPHI Analytics LLP Office App-Edit Word...
Moderate
Unreviewed
CVE-2025-65814
was published
Dec 10, 2025
A lack of security checks in the file import process of AB TECHNOLOGY Document Reader: PDF, DOC,...
Moderate
Unreviewed
CVE-2025-65815
was published
Dec 10, 2025
The Simple Download Counter plugin for WordPress is vulnerable to Path Traversal in all versions...
Moderate
Unreviewed
CVE-2025-13677
was published
Dec 10, 2025
HP System Event Utility and Omen Gaming Hub might allow execution of
certain files outside of...
Moderate
Unreviewed
CVE-2025-11531
was published
Dec 9, 2025
An unauthenticated directory traversal vulnerability in cgi-bin/upload.cgi in SNMP Web Pro 1.1...
Moderate
Unreviewed
CVE-2025-65287
was published
Dec 9, 2025
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
Moderate
Unreviewed
CVE-2025-14311
was published
Dec 9, 2025
A vulnerability was found in Yottamaster DM2, DM3 and DM200 up to 1.2.23/1.9.12. Affected by this...
Moderate
Unreviewed
CVE-2025-14224
was published
Dec 8, 2025
A security vulnerability has been detected in ORICO CD3510 1.9.12. This affects an unknown...
Moderate
Unreviewed
CVE-2025-14220
was published
Dec 8, 2025
A vulnerability has been found in Sobey Media Convergence System 2.0/2.1. This vulnerability...
Moderate
Unreviewed
CVE-2025-14182
was published
Dec 7, 2025
ComposioHQ has a directory traversal vulnerability
Moderate
CVE-2025-56427
was published
for
composio
(pip)
Dec 4, 2025
A vulnerability in FileStation file cgi allows remote authenticated users to read file metadata...
Moderate
Unreviewed
CVE-2025-29844
was published
Dec 4, 2025
A vulnerability in FileStation thumb cgi allows remote authenticated users to read/write image...
Moderate
Unreviewed
CVE-2025-29843
was published
Dec 4, 2025
ProTip!
Advisories are also available from the
GraphQL API