GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
22
Go
2,095
Maven
5,000+
npm
3,760
NuGet
678
pip
3,446
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
3,293 advisories
Filter by severity
The GoHero Store Customizer for WooCommerce plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2024-12826
was published
Jan 25, 2025
The Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for...
Moderate
Unreviewed
CVE-2024-13368
was published
Jan 25, 2025
The Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for...
Moderate
Unreviewed
CVE-2024-12113
was published
Jan 25, 2025
The Boom Fest plugin for WordPress is vulnerable to unauthorized modification of data due to a...
Moderate
Unreviewed
CVE-2024-13449
was published
Jan 25, 2025
The Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for...
Moderate
Unreviewed
CVE-2024-13370
was published
Jan 25, 2025
Missing Authorization vulnerability in Arshid WooCommerce Quick View allows Exploiting...
Moderate
Unreviewed
CVE-2025-24705
was published
Jan 24, 2025
Missing Authorization vulnerability in GoDaddy CoBlocks allows Exploiting Incorrectly Configured...
Moderate
Unreviewed
CVE-2025-24751
was published
Jan 24, 2025
Missing Authorization vulnerability in Metaphor Creations Post Duplicator allows Exploiting...
Moderate
Unreviewed
CVE-2025-24736
was published
Jan 24, 2025
Missing Authorization vulnerability in ExactMetrics ExactMetrics allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-24750
was published
Jan 24, 2025
Missing Authorization vulnerability in Kadence WP Gutenberg Blocks by Kadence Blocks allows...
Moderate
Unreviewed
CVE-2025-24753
was published
Jan 24, 2025
Missing Authorization vulnerability in ThimPress Thim Elementor Kit allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-24725
was published
Jan 24, 2025
Missing Authorization vulnerability in wpase.com Admin and Site Enhancements (ASE) allows...
Moderate
Unreviewed
CVE-2025-24649
was published
Jan 24, 2025
Missing Authorization vulnerability in webraketen Internal Links Manager allows Exploiting...
Moderate
Unreviewed
CVE-2025-24679
was published
Jan 24, 2025
Missing Authorization vulnerability in mikemmx Super Block Slider allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-24682
was published
Jan 24, 2025
Missing Authorization vulnerability in Yehi Advanced Notifications allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-24693
was published
Jan 24, 2025
Missing Authorization vulnerability in Revmakx WP Duplicate – WordPress Migration Plugin allows...
Moderate
Unreviewed
CVE-2025-24652
was published
Jan 24, 2025
Missing Authorization vulnerability in Gagan Sandhu , Enej Bajgoric , CTLT DEV, UBC People Lists...
Moderate
Unreviewed
CVE-2025-24691
was published
Jan 24, 2025
Missing Authorization vulnerability in Code for Recovery 12 Step Meeting List allows Exploiting...
Moderate
Unreviewed
CVE-2025-24580
was published
Jan 24, 2025
Missing Authorization vulnerability in WC Product Table WooCommerce Product Table Lite allows...
Moderate
Unreviewed
CVE-2025-24596
was published
Jan 24, 2025
Missing Authorization vulnerability in Speedcomp Linet ERP-Woocommerce Integration allows...
Moderate
Unreviewed
CVE-2025-24594
was published
Jan 24, 2025
Missing Authorization vulnerability in ElementInvader ElementInvader Addons for Elementor allows...
Moderate
Unreviewed
CVE-2025-24618
was published
Jan 24, 2025
Missing Authorization vulnerability in Vikas Ratudi VForm allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-24604
was published
Jan 24, 2025
Missing Authorization vulnerability in NinjaTeam GDPR CCPA Compliance Support allows Exploiting...
Moderate
Unreviewed
CVE-2025-24591
was published
Jan 24, 2025
Missing Authorization vulnerability in Marco Almeida | Webdados Taxonomy/Term and Role based...
Moderate
Unreviewed
CVE-2025-24625
was published
Jan 24, 2025
Missing Authorization vulnerability in silverplugins217 Build Private Store For Woocommerce...
Moderate
Unreviewed
CVE-2025-24633
was published
Jan 24, 2025
ProTip!
Advisories are also available from the
GraphQL API