GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,360
Erlang
33
GitHub Actions
22
Go
2,127
Maven
5,000+
npm
3,793
NuGet
683
pip
3,471
Pub
12
RubyGems
894
Rust
894
Swift
38
Unreviewed advisories
All unreviewed
5,000+
2,736 advisories
Filter by severity
Missing Authorization vulnerability in Adnan Analytify allows Exploiting Incorrectly Configured...
Moderate
Unreviewed
CVE-2025-26773
was published
Feb 17, 2025
Missing Authorization vulnerability in enituretechnology Distance Based Shipping Calculator...
Moderate
Unreviewed
CVE-2025-26765
was published
Feb 17, 2025
Missing Authorization vulnerability in NotFound LTL Freight Quotes – Unishippers Edition allows...
Moderate
Unreviewed
CVE-2025-22289
was published
Feb 17, 2025
Missing Authorization vulnerability in enituretechnology LTL Freight Quotes – Worldwide Express...
Moderate
Unreviewed
CVE-2025-22291
was published
Feb 17, 2025
The Team – Team Members Showcase Plugin plugin for WordPress is vulnerable to unauthorized access...
Moderate
Unreviewed
CVE-2024-13439
was published
Feb 15, 2025
The WP Project Manager – Task, team, and project management plugin featuring kanban board and...
Moderate
Unreviewed
CVE-2024-13752
was published
Feb 15, 2025
The Media Library Folders plugin for WordPress is vulnerable to unauthorized plugin settings...
Moderate
Unreviewed
CVE-2025-0935
was published
Feb 15, 2025
Missing Authorization vulnerability in ashamil OPSI Israel Domestic Shipments allows Exploiting...
Moderate
Unreviewed
CVE-2025-23766
was published
Feb 14, 2025
Missing Authorization vulnerability in Murali Push Notification for Post and BuddyPress allows...
Moderate
Unreviewed
CVE-2025-23771
was published
Feb 14, 2025
Missing Authorization vulnerability in Northern Beaches Websites IdeaPush allows Exploiting...
Moderate
Unreviewed
CVE-2025-24607
was published
Feb 14, 2025
Missing Authorization vulnerability in Mark Winiarski WPLingo allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-23534
was published
Feb 14, 2025
Missing Authorization vulnerability in Ability, Inc Accessibility Suite by Online ADA allows...
Moderate
Unreviewed
CVE-2025-22698
was published
Feb 14, 2025
Missing Authorization vulnerability in EPC Photography. This issue affects Photography: from n/a...
Moderate
Unreviewed
CVE-2025-22702
was published
Feb 14, 2025
The Read More & Accordion plugin for WordPress is vulnerable to unauthorized modification and...
Moderate
Unreviewed
CVE-2024-13639
was published
Feb 13, 2025
A vulnerability classified as critical has been found in pihome-shc PiHome 2.0. This affects an...
Moderate
Unreviewed
CVE-2025-1214
was published
Feb 12, 2025
A CWE-862 "Missing Authorization" in maxprofile/user-groups/routes.lua in Q-Free MaxTime less...
Moderate
Unreviewed
CVE-2025-26367
was published
Feb 12, 2025
A CWE-862 "Missing Authorization" in maxprofile/users/routes.lua in Q-Free MaxTime less than or...
Moderate
Unreviewed
CVE-2025-26376
was published
Feb 12, 2025
A CWE-862 "Missing Authorization" in maxprofile/users/routes.lua (user endpoint) in Q-Free...
Moderate
Unreviewed
CVE-2025-26373
was published
Feb 12, 2025
A CWE-862 "Missing Authorization" in maxprofile/users/routes.lua (users endpoint) in Q-Free...
Moderate
Unreviewed
CVE-2025-26374
was published
Feb 12, 2025
The Puzzles | WP Magazine / Review with Store WordPress Theme + RTL theme for WordPress is...
Moderate
Unreviewed
CVE-2024-13769
was published
Feb 12, 2025
The WP Table Manager plugin for WordPress is vulnerable to unauthorized access due to a missing...
Moderate
Unreviewed
CVE-2024-13374
was published
Feb 12, 2025
The WPSyncSheets Lite For WPForms – WPForms Google Spreadsheet Addon plugin for WordPress is...
Moderate
Unreviewed
CVE-2024-12164
was published
Feb 12, 2025
The The Ultimate WordPress Toolkit – WP Extended plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-13554
was published
Feb 12, 2025
The aDirectory – WordPress Directory Listing Plugin plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-13541
was published
Feb 12, 2025
Due to a missing authorization check, an attacker who is logged in to application can view/...
Moderate
Unreviewed
CVE-2025-25241
was published
Feb 11, 2025
ProTip!
Advisories are also available from the
GraphQL API