GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
41
GitHub Actions
41
Go
3,051
Maven
5,000+
npm
4,791
NuGet
825
pip
4,389
Pub
12
RubyGems
988
Rust
1,145
Swift
50
Unreviewed advisories
All unreviewed
5,000+
1,273 advisories
Filter by severity
Unrestricted Upload of File with Dangerous Type vulnerability in Webkul Medical Prescription...
Critical
Unreviewed
CVE-2025-29009
was published
Jul 16, 2025
An unauthenticated arbitrary file upload vulnerability exists in Tiki Wiki CMS Groupware version...
Critical
Unreviewed
CVE-2025-34111
was published
Jul 15, 2025
The HT Contact Form Widget For Elementor Page Builder & Gutenberg Blocks & Form Builder. plugin...
Critical
Unreviewed
CVE-2025-7340
was published
Jul 15, 2025
The Simple-File-List Plugin for WordPress is vulnerable to Remote Code Execution in versions up...
Critical
Unreviewed
CVE-2020-36847
was published
Jul 12, 2025
The AIT CSV import/export plugin for WordPress is vulnerable to arbitrary file uploads due to...
Critical
Unreviewed
CVE-2020-36849
was published
Jul 12, 2025
The WPBookit plugin for WordPress is vulnerable to arbitrary file uploads due to missing file...
Critical
Unreviewed
CVE-2025-6058
was published
Jul 12, 2025
Marvell QConvergeConsole getFileFromURL Unrestricted File Upload Remote Code Execution...
Critical
Unreviewed
CVE-2025-6802
was published
Jul 7, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in Fastw3b LLC FW Gallery allows...
Critical
Unreviewed
CVE-2025-49414
was published
Jul 4, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in LiquidThemes LogisticsHub allows...
Critical
Unreviewed
CVE-2025-30933
was published
Jul 4, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in CreedAlly Bulk Featured Image...
Critical
Unreviewed
CVE-2025-28951
was published
Jul 4, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in WPCenter AiBud WP allows Upload...
Critical
Unreviewed
CVE-2025-23968
was published
Jul 3, 2025
The Drag and Drop Multiple File Upload (Pro) - WooCommerce plugin for WordPress is vulnerable to...
Critical
Unreviewed
CVE-2025-5746
was published
Jul 2, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in getredhawkstudio File Manager...
Critical
Unreviewed
CVE-2025-53260
was published
Jun 27, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in HaruTheme Drag and Drop Multiple...
Critical
Unreviewed
CVE-2025-49885
was published
Jun 27, 2025
Vulnerability in fusionforge in the shipped Apache configuration, where the web server may...
Critical
Unreviewed
CVE-2014-0468
was published
Jun 26, 2025
The ZoomSounds plugin before 6.05 contains a PHP file allowing unauthenticated users to upload an...
Critical
Unreviewed
CVE-2021-4457
was published
Jun 26, 2025
An issue was discovered on IROAD Dashcam FX2 devices. An unauthenticated file upload endpoint can...
Critical
Unreviewed
CVE-2025-30131
was published
Jun 26, 2025
An unauthenticated file upload vulnerability exists in the Fanwei E-Office <= v9.4 web management...
Critical
Unreviewed
CVE-2025-34046
was published
Jun 26, 2025
An issue in EfroTech Time Trax v.1.0 allows a remote attacker to execute arbitrary code via the...
Critical
Unreviewed
CVE-2025-46157
was published
Jun 18, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in Fastw3b LLC FW Food Menu allows...
Critical
Unreviewed
CVE-2025-49447
was published
Jun 17, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in merkulove Reformer for Elementor...
Critical
Unreviewed
CVE-2025-49444
was published
Jun 17, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in RomanCode MapSVG allows Upload a...
Critical
Unreviewed
CVE-2025-47559
was published
Jun 17, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in RexTheme WP VR allows Upload a...
Critical
Unreviewed
CVE-2025-47452
was published
Jun 17, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in NasaTheme Flozen allows Upload a...
Critical
Unreviewed
CVE-2025-49071
was published
Jun 17, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in ovatheme Ovatheme Events Manager...
Critical
Unreviewed
CVE-2025-32510
was published
Jun 17, 2025
ProTip!
Advisories are also available from the
GraphQL API