GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,162
Erlang
30
GitHub Actions
19
Go
1,966
Maven
5,000+
npm
3,694
NuGet
653
pip
3,311
Pub
11
RubyGems
881
Rust
831
Swift
35
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
84 advisories
Filter by severity
Authentication Bypass Using an Alternate Path or Channel vulnerability in Deryck Oñate User...
Critical
Unreviewed
CVE-2024-50503
was published
Oct 30, 2024
The Crypto plugin for WordPress is vulnerable to authentication bypass in versions up to, and...
Critical
Unreviewed
CVE-2024-9989
was published
Oct 29, 2024
The Crypto plugin for WordPress is vulnerable to authentication bypass in versions up to, and...
Critical
Unreviewed
CVE-2024-9988
was published
Oct 29, 2024
Authentication Bypass Using an Alternate Path or Channel vulnerability in MaanTheme MaanStore API...
Critical
Unreviewed
CVE-2024-50487
was published
Oct 28, 2024
Authentication Bypass Using an Alternate Path or Channel vulnerability in Realty Workstation...
Critical
Unreviewed
CVE-2024-50489
was published
Oct 28, 2024
Authentication Bypass Using an Alternate Path or Channel vulnerability in Stacks Stacks Mobile...
Critical
Unreviewed
CVE-2024-50477
was published
Oct 28, 2024
Authentication Bypass Using an Alternate Path or Channel vulnerability in Acnoo Acnoo Flutter API...
Critical
Unreviewed
CVE-2024-50486
was published
Oct 28, 2024
The Wp Social Login and Register Social Counter plugin for WordPress is vulnerable to...
Critical
Unreviewed
CVE-2024-9501
was published
Oct 26, 2024
The WatchTowerHQ plugin for WordPress is vulnerable to authentication bypass in versions up to,...
Critical
Unreviewed
CVE-2024-9933
was published
Oct 26, 2024
The Extensions by HocWP Team plugin for WordPress is vulnerable to authentication bypass in...
Critical
Unreviewed
CVE-2024-9930
was published
Oct 26, 2024
The Wux Blog Editor plugin for WordPress is vulnerable to authentication bypass in versions up to...
Critical
Unreviewed
CVE-2024-9931
was published
Oct 26, 2024
This vulnerability exists in Matrix Door Controller Cosec Vega FAXQ due to improper...
Critical
Unreviewed
CVE-2024-10381
was published
Oct 25, 2024
Sharp and Toshiba Tec MFPs improperly process HTTP authentication requests, resulting in an...
Critical
Unreviewed
CVE-2024-47406
was published
Oct 25, 2024
The Comments – wpDiscuz plugin for WordPress is vulnerable to authentication bypass in all...
Critical
Unreviewed
CVE-2024-9488
was published
Oct 25, 2024
Authentication Bypass Using an Alternate Path or Channel vulnerability in Vivek Tamrakar WP REST...
Critical
Unreviewed
CVE-2024-49328
was published
Oct 20, 2024
Authentication Bypass Using an Alternate Path or Channel vulnerability in Najeeb Ahmad Simple...
Critical
Unreviewed
CVE-2024-49604
was published
Oct 20, 2024
The Nextend Social Login Pro plugin for WordPress is vulnerable to authentication bypass in all...
Critical
Unreviewed
CVE-2024-9893
was published
Oct 16, 2024
: Authentication Bypass Using an Alternate Path or Channel vulnerability in sooskriszta, webforza...
Critical
Unreviewed
CVE-2024-49247
was published
Oct 16, 2024
The UltimateAI plugin for WordPress is vulnerable to authentication bypass in versions up to, and...
Critical
Unreviewed
CVE-2024-9105
was published
Oct 16, 2024
The Pedalo Connector plugin for WordPress is vulnerable to authentication bypass in versions up...
Critical
Unreviewed
CVE-2024-9822
was published
Oct 11, 2024
The LatePoint plugin for WordPress is vulnerable to authentication bypass in versions up to, and...
Critical
Unreviewed
CVE-2024-8943
was published
Oct 8, 2024
The WordPress & WooCommerce Affiliate Program plugin for WordPress is vulnerable to...
Critical
Unreviewed
CVE-2024-9289
was published
Oct 1, 2024
The Wechat Social login plugin for WordPress is vulnerable to authentication bypass in versions...
Critical
Unreviewed
CVE-2024-9106
was published
Oct 1, 2024
An attacker can directly request the ProGauge MAGLINK LX CONSOLE
resource sub page with full...
Critical
Unreviewed
CVE-2024-43692
was published
Sep 25, 2024
The WooCommerce Photo Reviews Premium plugin for WordPress is vulnerable to authentication bypass...
Critical
Unreviewed
CVE-2024-8277
was published
Sep 11, 2024
ProTip!
Advisories are also available from the
GraphQL API