GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,717
Maven
5,000+
npm
4,328
NuGet
761
pip
4,105
Pub
12
RubyGems
958
Rust
1,065
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
88 advisories
Filter by severity
There is a relative path traversal vulnerability in the NI System Web Server that may result in...
High
Unreviewed
CVE-2025-12097
was published
Dec 4, 2025
WebITR developed by Uniong has an Arbitrary File Read vulnerability, allowing authenticated...
High
Unreviewed
CVE-2025-13771
was published
Nov 28, 2025
A relative path traversal vulnerability has been reported to affect QuMagie. If a remote attacker...
High
Unreviewed
CVE-2025-58464
was published
Nov 7, 2025
IQ-Support developed by IQ Service International has an Arbitrary File Read vulnerability,...
High
Unreviewed
CVE-2025-13161
was published
Nov 14, 2025
The API used to interact with documents in the application contains two endpoints with a flaw...
High
Unreviewed
CVE-2024-54449
was published
Mar 14, 2025
A relative path traversal vulnerability was discovered in Productivity Suite software version 4.4...
High
Unreviewed
CVE-2025-58429
was published
Oct 24, 2025
A relative path traversal vulnerability was discovered in Productivity Suite software version
4...
High
Unreviewed
CVE-2025-58456
was published
Oct 24, 2025
A relative path traversal vulnerability was discovered in Productivity Suite software version
4...
High
Unreviewed
CVE-2025-58078
was published
Oct 24, 2025
A relative path traversal (ZipSlip) vulnerability was discovered in Productivity Suite software...
High
Unreviewed
CVE-2025-62498
was published
Oct 24, 2025
Agentflow developed by Flowring has an Arbitrary File Reading vulnerability, allowing...
High
Unreviewed
CVE-2025-11898
was published
Oct 17, 2025
Relative path traversal vulnerability due to improper input validation in Digilent WaveForms that...
High
Unreviewed
CVE-2025-10203
was published
Sep 15, 2025
The QbiCRMGateway developed by Ai3 has an Arbitrary File Reading vulnerability, allowing...
High
Unreviewed
CVE-2025-9639
was published
Aug 29, 2025
Relative path traversal in Windows Kerberos allows an authorized attacker to elevate privileges...
High
Unreviewed
CVE-2025-53779
was published
Aug 12, 2025
An issue was discovered in Logpoint before 7.6.0. An attacker with operator privileges can...
High
Unreviewed
CVE-2025-54317
was published
Jul 20, 2025
In JetBrains TeamCity before 2025.07 path traversal was possible via plugin unpacking on Windows
High
Unreviewed
CVE-2025-54531
was published
Jul 28, 2025
A path traversal vulnerability exists in the 'document uploads manager' feature of mintplex-labs...
High
Unreviewed
CVE-2024-10513
was published
Mar 20, 2025
BatchSignCS, a background Windows application developed by WellChoose, has an Arbitrary File...
High
Unreviewed
CVE-2025-7619
was published
Jul 14, 2025
Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code...
High
Unreviewed
CVE-2025-48817
was published
Jul 8, 2025
The iPublish System developed by Jhenggao has an Arbitrary File Reading vulnerability, allowing...
High
Unreviewed
CVE-2025-7146
was published
Jul 8, 2025
Directory traversal vulnerability in the Runtime Toolkit in CODESYS Runtime System 2.3.x and 2.4...
High
Unreviewed
CVE-2012-6069
was published
May 17, 2022
Innoshop through 0.4.1 allows directory traversal via FileManager API endpoints. An authenticated...
High
Unreviewed
CVE-2025-52922
was published
Jun 23, 2025
Sitecore Experience Manager (XM), Experience Platform (XP), and Experience Commerce (XC) versions...
High
Unreviewed
CVE-2025-34510
was published
Jun 17, 2025
IBM AIX 7.3 and IBM VIOS 4.1.1 Perl implementation could allow a non-privileged local user to...
High
Unreviewed
CVE-2025-33112
was published
Jun 10, 2025
In JetBrains TeamCity before 2023.11.4 path traversal allowing to perform limited admin actions ...
High
Unreviewed
CVE-2024-27199
was published
Mar 4, 2024
Relative Path Traversal vulnerability in Themewinter Eventin allows Path Traversal.This issue...
High
Unreviewed
CVE-2025-47445
was published
May 14, 2025
ProTip!
Advisories are also available from the
GraphQL API