GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,373
Erlang
33
GitHub Actions
22
Go
2,135
Maven
5,000+
npm
3,797
NuGet
687
pip
3,478
Pub
12
RubyGems
896
Rust
897
Swift
38
Unreviewed advisories
All unreviewed
5,000+
157 advisories
Filter by severity
Relative Path Traversal vulnerability in Ping Identity PingAM Java Policy Agent allows Parameter...
Critical
Unreviewed
CVE-2025-20059
was published
Feb 20, 2025
Bit Assist plugin for WordPress is vulnerable to Path Traversal in all versions up to, and...
Moderate
Unreviewed
CVE-2025-0822
was published
Feb 15, 2025
Bit Assist plugin for WordPress is vulnerable to Path Traversal in all versions up to, and...
Moderate
Unreviewed
CVE-2024-13791
was published
Feb 14, 2025
A CWE-23 "Relative Path Traversal" in the file upload mechanism in Q-Free MaxTime less than or...
High
Unreviewed
CVE-2025-26349
was published
Feb 12, 2025
A vulnerability has been found in Safetytest Cloud-Master Server up to 1.1.1 and classified as...
Moderate
Unreviewed
CVE-2025-1086
was published
Feb 7, 2025
Apache Solr Relative Path Traversal vulnerability
Moderate
CVE-2024-52012
was published
for
org.apache.solr:solr-core
(Maven)
Jan 27, 2025
Fedora Repository 3.8.1 allows path traversal when extracting uploaded archives ("Zip Slip"). A...
High
Unreviewed
CVE-2025-23011
was published
Jan 23, 2025
A relative path traversal in Fortinet FortiRecorder [CWE-23] version 7.2.0 through 7.2.1 and...
Moderate
Unreviewed
CVE-2024-46664
was published
Jan 14, 2025
A relative path traversal vulnerability [CWE-23] in Fortinet FortiManager version 7.4.0 through...
Moderate
Unreviewed
CVE-2024-32115
was published
Jan 14, 2025
A vulnerability classified as critical was found in Guangzhou Huayi Intelligent Technology Jeewms...
Moderate
Unreviewed
CVE-2025-0390
was published
Jan 11, 2025
A vulnerability classified as problematic was found in Tsinghua Unigroup Electronic Archives...
Moderate
Unreviewed
CVE-2025-0225
was published
Jan 5, 2025
A vulnerability was found in Dahua IPC-HFW1200S, IPC-HFW2300R-Z, IPC-HFW5220E-Z and IPC-HDW1200S...
Moderate
Unreviewed
CVE-2024-13130
was published
Jan 5, 2025
A vulnerability was found in Intelbras VIP S3020 G2, VIP S4020 G2, VIP S4020 G3 and VIP S4320 G2...
Moderate
Unreviewed
CVE-2024-12897
was published
Dec 23, 2024
A relative path traversal in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5.0 through 8.5...
Critical
Unreviewed
CVE-2023-34990
was published
Dec 18, 2024
TenderDocTransfer from Chunghwa Telecom has an Arbitrary File Write vulnerability. The...
High
Unreviewed
CVE-2024-12642
was published
Dec 16, 2024
The topm-client from Chunghwa Telecom has an Arbitrary File Read vulnerability. The application...
Moderate
Unreviewed
CVE-2024-12645
was published
Dec 16, 2024
Microsoft SharePoint Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-49062
was published
Dec 12, 2024
A vulnerability was found in cjbi wetech-cms 1.0/1.1/1.2. It has been rated as problematic....
Moderate
Unreviewed
CVE-2024-12482
was published
Dec 12, 2024
In JetBrains YouTrack before 2024.3.51866 system takeover was possible through path traversal in...
High
Unreviewed
CVE-2024-54154
was published
Dec 4, 2024
The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of...
Critical
Unreviewed
CVE-2024-11311
was published
Nov 18, 2024
The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of...
Critical
Unreviewed
CVE-2024-11315
was published
Nov 18, 2024
The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of...
Critical
Unreviewed
CVE-2024-11312
was published
Nov 18, 2024
The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of...
Critical
Unreviewed
CVE-2024-11314
was published
Nov 18, 2024
The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of...
Critical
Unreviewed
CVE-2024-11313
was published
Nov 18, 2024
The DVC from TRCore has a Path Traversal vulnerability, allowing unauthenticated remote attackers...
High
Unreviewed
CVE-2024-11309
was published
Nov 18, 2024
ProTip!
Advisories are also available from the
GraphQL API