GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,740
Maven
5,000+
npm
4,338
NuGet
765
pip
4,112
Pub
12
RubyGems
960
Rust
1,068
Swift
45
Unreviewed advisories
All unreviewed
5,000+
4,746 advisories
Filter by severity
IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to inject malicious HTML code...
High
Unreviewed
CVE-2020-4520
was published
May 24, 2022
A remote file inclusion vulnerability in the ArcGIS Server help documentation may allow a remote,...
Moderate
Unreviewed
CVE-2021-29113
was published
Dec 8, 2021
PHP remote file inclusion vulnerability in _center.php in ProMan 0.1.1 and earlier allows remote...
High
Unreviewed
CVE-2010-2137
was published
May 17, 2022
Multiple PHP remote file inclusion vulnerabilities in Open Education System (OES) 0.1 beta allow...
High
Unreviewed
CVE-2010-2132
was published
May 17, 2022
Multiple PHP remote file inclusion vulnerabilities in DataLife Engine (DLE) 8.3 allow remote...
High
Unreviewed
CVE-2010-2005
was published
May 17, 2022
index.pl in Miyabi CGI Tools SEO Links 1.02 allows remote attackers to execute arbitrary commands...
High
Unreviewed
CVE-2010-2626
was published
May 17, 2022
PHP remote file inclusion vulnerability in inc/smarty/libs/init.php in AdaptCMS 2.0.0 Beta, when...
Moderate
Unreviewed
CVE-2010-2618
was published
May 17, 2022
PHP remote file inclusion vulnerability in gallery.php in JV2 Folder Gallery 3.1 allows remote...
High
Unreviewed
CVE-2010-2127
was published
May 17, 2022
PHP remote file inclusion vulnerability in modules/catalog/upload_photo.php in Nakid CMS 0.5.2,...
Moderate
Unreviewed
CVE-2010-2358
was published
May 17, 2022
PHP remote file inclusion vulnerability in default_theme.php in FreePHPBlogSoftware 1.0, when...
Moderate
Unreviewed
CVE-2010-1978
was published
May 17, 2022
An arbitrary code execution vulnerability exists in Micro Focus Application Performance...
Critical
Unreviewed
CVE-2021-22514
was published
May 24, 2022
Multiple eval injection vulnerabilities in the import functionality in the Chaos Tool Suite (aka...
Moderate
Unreviewed
CVE-2010-1546
was published
May 17, 2022
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.3, 14.1.x before 14.1.4, 13.1.x...
High
Unreviewed
CVE-2021-23013
was published
May 24, 2022
PHP remote file inclusion vulnerability in index.php in PHPAuction 3.2 allows remote attackers to...
High
Unreviewed
CVE-2008-7000
was published
May 17, 2022
In multiple versions of Sophos Endpoint products for MacOS, a local attacker could execute...
High
Unreviewed
CVE-2021-25264
was published
May 24, 2022
A remote code execution (RCE) vulnerability in /root/run/adm.php?admin-ediy&part=exdiy of imcat...
High
Unreviewed
CVE-2020-22120
was published
May 24, 2022
PHP remote file inclusion vulnerability in ListRecords.php in osprey 1.0a4.1 allows remote...
High
Unreviewed
CVE-2008-6807
was published
May 17, 2022
phpCMS 2008 sp4 allowas remote malicious users to execute arbitrary php commands via the pagesize...
High
Unreviewed
CVE-2020-22201
was published
May 24, 2022
The SP Project & Document Manager WordPress plugin before 4.22 allows users to upload files,...
High
Unreviewed
CVE-2021-24347
was published
May 24, 2022
A remote code execution (RCE) in e/install/index.php of EmpireCMS 7.5 allows attackers to execute...
Critical
Unreviewed
CVE-2020-22937
was published
May 24, 2022
MaianAffiliate v.1.0 is suffers from code injection by adding a new product via the admin panel....
Moderate
Unreviewed
CVE-2021-39402
was published
May 24, 2022
Myucms v2.2.1 contains a remote code execution (RCE) vulnerability in the component \controller...
High
Unreviewed
CVE-2020-21650
was published
May 24, 2022
Myucms v2.2.1 contains a remote code execution (RCE) vulnerability in the component \controller...
Critical
Unreviewed
CVE-2020-21652
was published
May 24, 2022
NetScout nGeniusONE 6.3.2 allows Java RMI Code Execution.
Critical
Unreviewed
CVE-2021-45983
was published
Jun 3, 2022
PHP remote file inclusion vulnerability in kernel/smarty/Smarty.class.php in PHPEcho CMS 2.0 rc3...
High
Unreviewed
CVE-2008-7034
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API