GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,714
Erlang
34
GitHub Actions
28
Go
2,301
Maven
5,000+
npm
3,942
NuGet
711
pip
3,711
Pub
12
RubyGems
920
Rust
960
Swift
38
Unreviewed advisories
All unreviewed
5,000+
279,536 advisories
Filter by severity
A vulnerability has been found in Emlog Pro 2.5.11 and classified as critical. This vulnerability...
Moderate
Unreviewed
CVE-2025-5119
was published
May 23, 2025
A Broken Access Control vulnerability in StrangeBee TheHive 5.2.0 before 5.2.16, 5.3.0 before 5.3...
Moderate
Unreviewed
CVE-2025-48741
was published
May 23, 2025
An e-mail flooding vulnerability in StrangeBee TheHive 5.2.0 before 5.2.16, 5.3.0 before 5.3.11,...
Moderate
Unreviewed
CVE-2025-48738
was published
May 23, 2025
A Cross-Site Request Forgery (CSRF) vulnerability in StrangeBee TheHive 5.2.0 before 5.2.16, 5.3...
Moderate
Unreviewed
CVE-2025-48740
was published
May 23, 2025
A stored cross-site scripting (XSS) vulnerability in the component /tinyfilemanager.php of...
Moderate
Unreviewed
CVE-2025-44998
was published
May 23, 2025
A SQL Injection issue in the request body processing in BOS IPCs with firmware 21.45.8.2.2_220219...
Moderate
Unreviewed
CVE-2025-48735
was published
May 23, 2025
A Server-Side Request Forgery (SSRF) vulnerability in StrangeBee TheHive 5.2.0 before 5.2.16, 5.3...
Moderate
Unreviewed
CVE-2025-48739
was published
May 23, 2025
Hardcoded credentials in the Telnet service in D-Link DIR-605L v2.13B01 and DIR-816L v2.06B01...
Moderate
Unreviewed
CVE-2025-46176
was published
May 23, 2025
OpenFGA Authorization Bypass
Moderate
CVE-2025-48371
was published
for
github.com/openfga/openfga
(Go)
May 23, 2025
On MOBOTIX P3 cameras before MX-V4.7.2.18 and Mx6 cameras before MX-V5.2.0.61, the tcpdump...
High
Unreviewed
CVE-2023-34873
was published
May 23, 2025
PHPGURUKUL Student Management System using PHP and MySQL v1 was discovered to contain multiple...
Moderate
Unreviewed
CVE-2024-51102
was published
May 23, 2025
Phpgurukul Medical Card Generation System v1.0 is vulnerable to HTML Injection in admin/contactus...
Unknown
Unreviewed
CVE-2024-48704
was published
May 23, 2025
PHPGURUKUL Student Management System using PHP and MySQL v1 was discovered to contain multiple...
Moderate
Unreviewed
CVE-2024-51103
was published
May 23, 2025
A reflected cross-site scripting (XSS) vulnerability in the component mcgs/download-medical-cards...
Unknown
Unreviewed
CVE-2024-51099
was published
May 23, 2025
parse_string in cJSON before 1.7.18 has a heap-based buffer over-read via {"1":1, with no...
Low
Unreviewed
CVE-2023-53154
was published
May 23, 2025
When installing Tenable Network Monitor to a non-default location on a Windows host, Tenable...
High
Unreviewed
CVE-2025-24916
was published
May 23, 2025
In Tenable Network Monitor versions prior to 6.5.1 on a Windows host, it was found that a non...
High
Unreviewed
CVE-2025-24917
was published
May 23, 2025
DNN allows Stored Cross-Site Scripting (XSS) with svg files rendered inline
Moderate
CVE-2025-48378
was published
for
DotNetNuke.Core
(NuGet)
May 23, 2025
Reflected Cross-Site Scripting (XSS) in module actions in edit mode
Moderate
CVE-2025-48377
was published
for
DotNetNuke.Core
(NuGet)
May 23, 2025
DNN site Import could use an external source with a crafted request
Low
CVE-2025-48376
was published
for
DotNetNuke.SiteExportImport
(NuGet)
May 23, 2025
PHPGURUKUL Restaurant Table Booking System using PHP and MySQL v1.0 was discovered to contain a...
Unknown
Unreviewed
CVE-2024-51101
was published
May 23, 2025
Multiple stored cross-site scripting (XSS) vulnerabilities in the component /mcgs/admin/contactus...
Unknown
Unreviewed
CVE-2024-51107
was published
May 23, 2025
Multiple stored cross-site scripting (XSS) vulnerabilities in the component /admin/card-bwdates...
Unknown
Unreviewed
CVE-2024-51108
was published
May 23, 2025
A vulnerability has been found in easysoft zentaopms 21.5_20250307 and classified as critical....
Moderate
Unreviewed
CVE-2025-5114
was published
May 23, 2025
An issue in Hospital Management System In PHP V4.0 allows a remote attacker to execute arbitrary...
Unknown
Unreviewed
CVE-2024-51360
was published
May 23, 2025
ProTip!
Advisories are also available from the
GraphQL API