GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,354
Erlang
31
GitHub Actions
22
Go
2,120
Maven
5,000+
npm
3,779
NuGet
681
pip
3,460
Pub
12
RubyGems
892
Rust
888
Swift
38
Unreviewed advisories
All unreviewed
5,000+
991 advisories
Filter by severity
A vulnerability in the implementation of a CLI command in Cisco Aironet Access Points (AP) could...
Moderate
Unreviewed
CVE-2021-1423
was published
May 24, 2022
In the KeepKey firmware before 7.3.2, the bootloader can be exploited in unusual situations in...
Moderate
Unreviewed
CVE-2022-30330
was published
May 8, 2022
Zoho ManageEngine Remote Access Plus before 10.1.2137.15 allows guest users to view domain...
Moderate
Unreviewed
CVE-2022-26653
was published
Apr 17, 2022
Verizon LVSKIHP 5G outside devices through 2022-02-15 allow anyone (knowing the device's serial...
High
Unreviewed
CVE-2022-28376
was published
Apr 4, 2022
CSRF token exposure in TYPO3 extension
Moderate
CVE-2021-36793
was published
for
lms/routes
(Composer)
Sep 2, 2021
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 could allow a remote attacker to obtain...
Moderate
Unreviewed
CVE-2021-38904
was published
Apr 23, 2022
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 could allow an authenticated user to view report...
Moderate
Unreviewed
CVE-2021-38905
was published
Apr 23, 2022
In Weidmüller u-controls and IoT-Gateways in versions up to 1.12.1 a network port intended only...
Critical
Unreviewed
CVE-2021-20999
was published
May 24, 2022
An Access Control vulnerability exists in Desire2Learn/D2L Learning Management System (LMS) 20.21...
Moderate
Unreviewed
CVE-2021-43129
was published
Apr 20, 2022
Mounting /proc filesystem via chroot command silently mounts it in read-write mode. The user...
Moderate
Unreviewed
CVE-2008-2544
was published
Apr 21, 2022
Improper Control of a Resource Through its Lifetime in Mattermost
Moderate
CVE-2022-1385
was published
for
github.com/mattermost/mattermost-server/v6
(Go)
Apr 20, 2022
In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to a missing...
Moderate
Unreviewed
CVE-2021-39805
was published
Apr 13, 2022
Exposure of Resource to Wrong Sphere in Simple-Wayland-HotKey-Daemon
Low
CVE-2022-27814
was published
for
Simple-Wayland-HotKey-Daemon
(Rust)
Apr 15, 2022
Exposure of Resource to Wrong Sphere in Simple-Wayland-HotKey-Daemon
Moderate
CVE-2022-27817
was published
for
Simple-Wayland-HotKey-Daemon
(Rust)
Apr 15, 2022
An issue was discovered in Amazon AWS VPN Client 2.0.0. A TOCTOU race condition exists during the...
Moderate
Unreviewed
CVE-2022-25165
was published
Apr 15, 2022
A PHP Local File Inclusion vulneraility in the default Redbasic theme for Hubzilla before version...
High
Unreviewed
CVE-2022-27257
was published
Apr 16, 2022
Dell PowerScale OneFS, 8.2,x, 9.1.0.x, 9.2.1.x, and 9.3.0.x contain a denial of service...
Moderate
Unreviewed
CVE-2022-23163
was published
Apr 13, 2022
Dell PowerScale OneFS 8.2.2 and above contain an elevation of privilege vulnerability. A local...
High
Unreviewed
CVE-2022-24411
was published
Apr 13, 2022
A website that had permission to access the microphone could record audio without the audio...
Moderate
Unreviewed
CVE-2022-38474
was published
Dec 22, 2022
VMware Workspace ONE Access, Identity Manager and vRealize Automation contain an information...
Moderate
Unreviewed
CVE-2022-22961
was published
Apr 14, 2022
Information exposure vulnerability in ril property setting prior to SMR April-2022 Release 1...
Moderate
Unreviewed
CVE-2022-27822
was published
Apr 12, 2022
BeyondTrust AppGuard Enterprise through 6.6.20.2 creates a Temporary File in a Directory with...
High
Unreviewed
CVE-2021-42255
was published
Apr 13, 2022
Telephony application has a Exposure of Sensitive Information to an Unauthorized Actor...
Moderate
Unreviewed
CVE-2021-39980
was published
Jan 4, 2022
Improper access control vulnerability in SamsungContacts prior to SMR Apr-2022 Release 1 allows...
Low
Unreviewed
CVE-2022-26090
was published
Apr 12, 2022
Information exposure vulnerability in Samsung DeX Home prior to SMR April-2022 Release 1 allows...
Moderate
Unreviewed
CVE-2022-27576
was published
Apr 12, 2022
ProTip!
Advisories are also available from the
GraphQL API