GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
102
GitHub Actions
54
Go
4,428
Maven
5,000+
npm
5,000+
NuGet
1,088
pip
5,000+
Pub
13
RubyGems
1,129
Rust
1,506
Swift
62
Unreviewed advisories
All unreviewed
5,000+
1,248 advisories
Filter by severity
The Store Locator for WordPress with Google Maps – LotsOfLocales plugin for WordPress is...
Critical
Unreviewed
CVE-2024-12571
was published
Dec 20, 2024
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2024-54270
was published
Dec 18, 2024
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2024-54376
was published
Dec 16, 2024
The Product Carousel Slider & Grid Ultimate for WooCommerce plugin for WordPress is vulnerable to...
High
Unreviewed
CVE-2024-12040
was published
Dec 12, 2024
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2024-54225
was published
Dec 9, 2024
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Moderate
Unreviewed
CVE-2024-52385
was published
Dec 9, 2024
The WP Umbrella: Update Backup Restore & Monitoring plugin for WordPress is vulnerable to Local...
Critical
Unreviewed
CVE-2024-12209
was published
Dec 8, 2024
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2024-53824
was published
Dec 6, 2024
The Soledad theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and...
High
Unreviewed
CVE-2024-11289
was published
Dec 6, 2024
Local File Inclusion vulnerabilities allow access to sensitive system information.
Affected...
High
Unreviewed
CVE-2024-51541
was published
Dec 5, 2024
The Free Responsive Testimonials, Social Proof Reviews, and Customer Reviews – Stars Testimonials...
High
Unreviewed
CVE-2024-11429
was published
Dec 5, 2024
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2024-52499
was published
Nov 28, 2024
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2024-52497
was published
Nov 28, 2024
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2024-52496
was published
Nov 28, 2024
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2024-52501
was published
Nov 28, 2024
The LA-Studio Element Kit for Elementor plugin for WordPress is vulnerable to Local File...
High
Unreviewed
CVE-2024-10873
was published
Nov 23, 2024
The Category Ajax Filter plugin for WordPress is vulnerable to Local File Inclusion in all...
Critical
Unreviewed
CVE-2024-10871
was published
Nov 9, 2024
The WPC Smart Messages for WooCommerce plugin for WordPress is vulnerable to Local File Inclusion...
High
Unreviewed
CVE-2024-10436
was published
Oct 29, 2024
The ee-class from FormosaSoft does not properly validate a specific page parameter, allowing...
High
Unreviewed
CVE-2024-9981
was published
Oct 15, 2024
The web service for ONS-S8 - Spectra Aggregation Switch includes functions which do not properly...
Critical
Unreviewed
CVE-2024-41925
was published
Oct 4, 2024
An issue was discovered in Geomatika IsiGeo Web 6.0. It allows remote authenticated users to...
Moderate
Unreviewed
CVE-2023-23565
was published
Aug 22, 2023
FUXA local file inclusion vulnerability
High
CVE-2023-31718
was published
for
fuxa-server
(npm)
Sep 22, 2023
FUXA vulnerable to Local File Inclusion
High
CVE-2023-31716
was published
for
@frangoteam/fuxa
(npm)
Sep 22, 2023
A local file inclusion vulnerability in one of Trend Micro Apex Central's widgets could allow a...
High
Unreviewed
CVE-2023-52325
was published
Jan 23, 2024
The Clean Login plugin for WordPress is vulnerable to Local File Inclusion in all versions up to,...
High
Unreviewed
CVE-2024-8252
was published
Aug 30, 2024
ProTip!
Advisories are also available from the
GraphQL API