GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,685
Maven
5,000+
npm
4,318
NuGet
760
pip
4,092
Pub
12
RubyGems
958
Rust
1,063
Swift
45
Unreviewed advisories
All unreviewed
5,000+
13 advisories
Filter by severity
DB-GPT Absolute Path Traversal vulnerability
Critical
CVE-2024-10831
was published
for
dbgpt
(pip)
Mar 20, 2025
DB-GPT Absolute Path Traversal in knowledge/{space_name}/document/upload
Critical
CVE-2024-10833
was published
for
dbgpt
(pip)
Mar 20, 2025
Deep Java Library path traversal issue
Critical
CVE-2025-0851
was published
for
ai.djl:api
(Maven)
Jan 29, 2025
Absolute path traversal in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6...
Critical
Unreviewed
CVE-2024-13160
was published
Jan 14, 2025
Absolute path traversal in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6...
Critical
Unreviewed
CVE-2024-13159
was published
Jan 14, 2025
Absolute path traversal in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6...
Critical
Unreviewed
CVE-2024-13161
was published
Jan 14, 2025
Absolute path traversal in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6...
Critical
Unreviewed
CVE-2024-10811
was published
Jan 14, 2025
Absolute File Traversal vulnerabilities allows access and modification of un-intended resources....
Critical
Unreviewed
CVE-2024-51549
was published
Dec 5, 2024
Butterfly has path/URL confusion in resource handling leading to multiple weaknesses
Critical
CVE-2024-47883
was published
for
org.openrefine.dependencies:butterfly
(Maven)
Oct 24, 2024
The fix for CVE-2024-26261 was incomplete, and and the specific package for OAKlouds from Hgiga...
Critical
Unreviewed
CVE-2024-9924
was published
Oct 14, 2024
A vulnerability in the content scanning and message filtering features of Cisco Secure Email...
Critical
Unreviewed
CVE-2024-20401
was published
Jul 17, 2024
A path traversal vulnerability exists in the parisneo/lollms-webui version 9.3 on the Windows...
Critical
Unreviewed
CVE-2024-2362
was published
Jun 6, 2024
MLflow Path Traversal vulnerability
Critical
CVE-2023-3765
was published
for
mlflow
(pip)
Jul 19, 2023
ProTip!
Advisories are also available from the
GraphQL API