GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
171 advisories
Filter by severity
The External Database Based Actions plugin for WordPress is vulnerable to authentication bypass...
High
Unreviewed
CVE-2024-10311
was published
Nov 15, 2024
The Really Simple Security (Free, Pro, and Pro Multisite) plugins for WordPress are vulnerable to...
Critical
Unreviewed
CVE-2024-10924
was published
Nov 15, 2024
The MultiManager WP – Manage All Your WordPress Sites Easily plugin for WordPress is vulnerable...
Critical
Unreviewed
CVE-2024-11028
was published
Nov 13, 2024
A authentication bypass using an alternate path or channel in Fortinet FortiClientWindows version...
High
Unreviewed
CVE-2024-47574
was published
Nov 13, 2024
The Relais 2FA plugin for WordPress is vulnerable to authentication bypass in versions up to, and...
Critical
Unreviewed
CVE-2024-10245
was published
Nov 12, 2024
The CE21 Suite plugin for WordPress is vulnerable to authentication bypass in versions up to, and...
Critical
Unreviewed
CVE-2024-10284
was published
Nov 9, 2024
codechecker vulnerable to authentication bypass when using specifically crafted URLs
Critical
CVE-2024-10081
was published
for
codechecker
(pip)
Nov 6, 2024
Authentication Bypass Using an Alternate Path or Channel vulnerability in Deryck Oñate User...
Critical
Unreviewed
CVE-2024-50503
was published
Oct 30, 2024
The Crypto plugin for WordPress is vulnerable to authentication bypass in versions up to, and...
Critical
Unreviewed
CVE-2024-9988
was published
Oct 29, 2024
The Crypto plugin for WordPress is vulnerable to authentication bypass in versions up to, and...
Critical
Unreviewed
CVE-2024-9989
was published
Oct 29, 2024
Authentication Bypass Using an Alternate Path or Channel vulnerability in Priyabrata Sarkar Token...
High
Unreviewed
CVE-2024-50488
was published
Oct 28, 2024
Authentication Bypass Using an Alternate Path or Channel vulnerability in MaanTheme MaanStore API...
Critical
Unreviewed
CVE-2024-50487
was published
Oct 28, 2024
Authentication Bypass Using an Alternate Path or Channel vulnerability in Realty Workstation...
Critical
Unreviewed
CVE-2024-50489
was published
Oct 28, 2024
Authentication Bypass Using an Alternate Path or Channel vulnerability in Acnoo Acnoo Flutter API...
Critical
Unreviewed
CVE-2024-50486
was published
Oct 28, 2024
Authentication Bypass Using an Alternate Path or Channel vulnerability in Stacks Stacks Mobile...
Critical
Unreviewed
CVE-2024-50477
was published
Oct 28, 2024
The eHRD CTMS from Sunnet has an Authentication Bypass vulnerability, allowing unauthenticated...
High
Unreviewed
CVE-2024-10438
was published
Oct 28, 2024
The Wp Social Login and Register Social Counter plugin for WordPress is vulnerable to...
Critical
Unreviewed
CVE-2024-9501
was published
Oct 26, 2024
The WatchTowerHQ plugin for WordPress is vulnerable to authentication bypass in versions up to,...
Critical
Unreviewed
CVE-2024-9933
was published
Oct 26, 2024
The Extensions by HocWP Team plugin for WordPress is vulnerable to authentication bypass in...
Critical
Unreviewed
CVE-2024-9930
was published
Oct 26, 2024
The Wux Blog Editor plugin for WordPress is vulnerable to authentication bypass in versions up to...
Critical
Unreviewed
CVE-2024-9931
was published
Oct 26, 2024
The User Toolkit plugin for WordPress is vulnerable to authentication bypass in versions up to,...
High
Unreviewed
CVE-2024-9890
was published
Oct 26, 2024
This vulnerability exists in Matrix Door Controller Cosec Vega FAXQ due to improper...
Critical
Unreviewed
CVE-2024-10381
was published
Oct 25, 2024
Sharp and Toshiba Tec MFPs improperly process HTTP authentication requests, resulting in an...
Critical
Unreviewed
CVE-2024-47406
was published
Oct 25, 2024
The Comments – wpDiscuz plugin for WordPress is vulnerable to authentication bypass in all...
Critical
Unreviewed
CVE-2024-9488
was published
Oct 25, 2024
Authentication Bypass Using an Alternate Path or Channel vulnerability in Vitalii Bryl iBryl...
High
Unreviewed
CVE-2024-49675
was published
Oct 23, 2024
ProTip!
Advisories are also available from the
GraphQL API