GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,386
Erlang
33
GitHub Actions
22
Go
2,141
Maven
5,000+
npm
3,803
NuGet
687
pip
3,480
Pub
12
RubyGems
897
Rust
898
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
245,645 advisories
Filter by severity
SunGrow iSolarCloud before the October 31, 2024 remediation, is vulnerable to insecure direct...
Unknown
Unreviewed
CVE-2024-50685
was published
Feb 26, 2025
There is a SQL injection issue in Esri ArcGIS Monitor versions 2023.0 through 2024.x on Windows...
Moderate
Unreviewed
CVE-2025-1726
was published
Feb 26, 2025
SunGrow WiNet-S V200.001.00.P025 and earlier versions is missing integrity checks for firmware...
Unknown
Unreviewed
CVE-2024-50696
was published
Feb 26, 2025
SunGrow iSolarCloud Android app V2.1.6.20241104 and prior suffers from Missing SSL Certificate...
Unknown
Unreviewed
CVE-2024-50691
was published
Feb 26, 2025
SunGrow iSolarCloud before the October 31, 2024 remediation is vulnerable to insecure direct...
Unknown
Unreviewed
CVE-2024-50693
was published
Feb 26, 2025
SunGrow iSolarCloud before the October 31, 2024 remediation is vulnerable to insecure direct...
Unknown
Unreviewed
CVE-2024-50686
was published
Feb 26, 2025
SunGrow iSolarCloud before the October 31, 2024 remediation is vulnerable to insecure direct...
Unknown
Unreviewed
CVE-2024-50687
was published
Feb 26, 2025
SunGrow iSolarCloud before the October 31, 2024 remediation is vulnerable to insecure direct...
Unknown
Unreviewed
CVE-2024-50689
was published
Feb 26, 2025
SunGrow iSolarCloud Android app V2.1.6.20241017 and prior uses an insecure AES key to encrypt...
Unknown
Unreviewed
CVE-2024-50684
was published
Feb 26, 2025
A Cross Site Scripting vulnerability in CloudClassroom-PHP Project v1.0 allows a remote attacker...
Unknown
Unreviewed
CVE-2024-57423
was published
Feb 26, 2025
SunGrow iSolarCloud Android application V2.1.6.20241017 and prior contains hardcoded credentials....
Unknown
Unreviewed
CVE-2024-50688
was published
Feb 26, 2025
MET ONE 3400+ instruments running software v1.0.41 can, under rare conditions, temporarily store...
Moderate
Unreviewed
CVE-2025-0941
was published
Feb 26, 2025
A vulnerability in the CLI of Cisco APIC could allow an authenticated, local attacker to execute...
Moderate
Unreviewed
CVE-2025-20117
was published
Feb 26, 2025
A vulnerability in the implementation of the internal system processes of Cisco APIC could allow...
Moderate
Unreviewed
CVE-2025-20118
was published
Feb 26, 2025
A vulnerability in the web UI of Cisco APIC could allow an authenticated, remote attacker to...
Moderate
Unreviewed
CVE-2025-20116
was published
Feb 26, 2025
A vulnerability in the system file permission handling of Cisco APIC could allow an authenticated...
Moderate
Unreviewed
CVE-2025-20119
was published
Feb 26, 2025
A vulnerability in the software upgrade process of Cisco Nexus 3000 Series Switches and Cisco...
Moderate
Unreviewed
CVE-2025-20161
was published
Feb 26, 2025
A vulnerability in the health monitoring diagnostics of Cisco Nexus 3000 Series Switches and...
High
Unreviewed
CVE-2025-20111
was published
Feb 26, 2025
The Countdown Timer for Elementor WordPress plugin before 1.3.7 does not sanitise and escape some...
Moderate
Unreviewed
CVE-2024-13113
was published
Feb 26, 2025
The WPMovieLibrary WordPress plugin through 2.1.4.8 does not sanitise and escape a parameter...
High
Unreviewed
CVE-2024-13624
was published
Feb 26, 2025
The Simple Certain Time to Show Content WordPress plugin before 1.3.1 does not sanitise and...
High
Unreviewed
CVE-2024-10152
was published
Feb 26, 2025
The Post Timeline WordPress plugin before 2.3.10 does not sanitise and escape a parameter before...
High
Unreviewed
CVE-2024-13571
was published
Feb 26, 2025
The Simple:Press Forum WordPress plugin before 6.10.11 does not sanitise and escape a parameter...
High
Unreviewed
CVE-2024-10483
was published
Feb 26, 2025
SeaCMS 13.3 was discovered to contain an arbitrary file read vulnerability in the...
Moderate
Unreviewed
CVE-2025-25800
was published
Feb 26, 2025
The Custom Block Builder WordPress plugin before 3.8.3 does not sanitise and escape a parameter...
High
Unreviewed
CVE-2024-12878
was published
Feb 26, 2025
ProTip!
Advisories are also available from the
GraphQL API