GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,717
Maven
5,000+
npm
4,328
NuGet
761
pip
4,105
Pub
12
RubyGems
958
Rust
1,065
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,607 advisories
Filter by severity
zdh_web is a data collection, processing, monitoring, scheduling, and management platform. In...
High
Unreviewed
CVE-2025-65897
was published
Dec 5, 2025
The warehouse management system version 1.2 contains an arbitrary file read vulnerability. The...
High
Unreviewed
CVE-2025-65878
was published
Dec 5, 2025
Warehouse Management System 1.2 contains an authenticated arbitrary file deletion vulnerability....
High
Unreviewed
CVE-2025-65879
was published
Dec 5, 2025
An issue was discovered in the Thermo Fisher Torrent Suite Django application 5.18.1. The ...
High
Unreviewed
CVE-2025-54307
was published
Dec 4, 2025
Directory traversal vulnerability in Fanvil x210 V2 2.12.20 allows unauthenticated attackers on...
High
Unreviewed
CVE-2025-64057
was published
Dec 5, 2025
This High severity Path Traversal (Arbitrary Write) vulnerability was introduced in versions: 9...
High
Unreviewed
CVE-2025-22167
was published
Oct 22, 2025
Insufficient escaping in the report scheduler within Checkmk <2.4.0p13, <2.3.0p38, <2.2.0p46 and...
High
Unreviewed
CVE-2025-39664
was published
Oct 9, 2025
Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2025-54160
was published
Dec 4, 2025
A vulnerability in portenable cgi allows remote authenticated users to get the status of...
High
Unreviewed
CVE-2025-29846
was published
Dec 4, 2025
PublicCMS V5.202506.b is vulnerable to path traversal via the doUploadSitefile method.
High
Unreviewed
CVE-2025-65838
was published
Dec 1, 2025
Unauthenticated Path Traversal with Arbitrary File Deletion in DB Electronica Telecomunicazioni S...
High
Unreviewed
CVE-2025-66251
was published
Nov 26, 2025
The Modula Image Gallery plugin for WordPress is vulnerable to arbitrary file deletion due to...
High
Unreviewed
CVE-2025-13645
was published
Dec 3, 2025
SoftSea EPUB File Reader 1.0.0.0 is vulnerable to Directory Traversal. The vulnerability resides...
High
Unreviewed
CVE-2025-63365
was published
Dec 1, 2025
Improper input sanitization in the file archives upload functionality of Eaton Galileo software...
High
Unreviewed
CVE-2025-59890
was published
Nov 27, 2025
UnForm Server versions < 10.1.15 contain an unauthenticated arbitrary file read and SMB coercion...
High
Unreviewed
CVE-2025-34350
was published
Nov 25, 2025
A path traversal vulnerability has been identified in WebDAV, which may allow unauthenticated...
High
Unreviewed
CVE-2025-12003
was published
Nov 25, 2025
An issue in the size query parameter (/views/file.py) of Austrian Archaeological Institute...
High
Unreviewed
CVE-2025-60915
was published
Nov 24, 2025
A low privileged remote attacker can upload a new or overwrite an existing python script by using...
High
Unreviewed
CVE-2025-41736
was published
Nov 18, 2025
A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled...
High
Unreviewed
CVE-2025-8941
was published
Aug 13, 2025
Milos Paripovic OneCommander 3.102.0.0 is vulnerable to Directory Traversal. The vulnerability...
High
Unreviewed
CVE-2025-63371
was published
Nov 19, 2025
7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2025-11001
was published
Nov 20, 2025
A path traversal vulnerability exists in the web management interface of D-Link DSL-2730U, DSL...
High
Unreviewed
CVE-2025-34048
was published
Jun 26, 2025
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
High
Unreviewed
CVE-2025-60242
was published
Nov 6, 2025
Nero BackItUp in the Nero Productline is vulnerable to a path parsing/UI rendering flaw (CWE-22)...
High
Unreviewed
CVE-2025-63680
was published
Nov 14, 2025
IBM AIX 7.2, and 7.3 and IBM VIOS 3.1, and 4.1 NIM server (formerly known as NIM master) service ...
High
Unreviewed
CVE-2025-36236
was published
Nov 14, 2025
ProTip!
Advisories are also available from the
GraphQL API