GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,299
Erlang
31
GitHub Actions
21
Go
2,064
Maven
5,000+
npm
3,744
NuGet
668
pip
3,424
Pub
12
RubyGems
892
Rust
877
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
359 advisories
Filter by severity
"FFRI yarai", "FFRI yarai Home and Business Edition" and their OEM products handle exceptional...
Low
Unreviewed
CVE-2023-39341
was published
Aug 9, 2023
Due to insufficient file permissions, unprivileged users could gain access to unencrypted user...
Critical
Unreviewed
CVE-2023-21408
was published
Aug 3, 2023
Due to insufficient file permissions, unprivileged users could gain access to unencrypted...
Critical
Unreviewed
CVE-2023-21409
was published
Aug 3, 2023
An uncaught exception vulnerability exists in Control ID IDSecure 4.7.26.0 and prior, allowing...
High
Unreviewed
CVE-2023-33370
was published
Aug 3, 2023
An authenticated attacker with guest privileges or higher can cause the iControl SOAP process to...
Moderate
Unreviewed
CVE-2023-38419
was published
Aug 2, 2023
An unhandled error in Vault Enterprise's namespace creation may cause the Vault process to crash,...
Unknown
Unreviewed
CVE-2023-3774
was published
Jul 28, 2023
An Improper Handling of Exceptional Conditions vulnerability in packet processing of Juniper...
High
Unreviewed
CVE-2023-36832
was published
Jul 14, 2023
Vulnerability of failures to capture exceptions in the communication framework. Successful...
High
Unreviewed
CVE-2023-1695
was published
Jul 6, 2023
In Progress MOVEit Transfer before 2021.0.9 (13.0.9), 2021.1.7 (13.1.7), 2022.0.7 (14.0.7), 2022...
High
Unreviewed
CVE-2023-36933
was published
Jul 5, 2023
In wlan firmware, there is possible system crash due to an uncaught exception. This could lead to...
High
Unreviewed
CVE-2023-20692
was published
Jul 4, 2023
On the affected platforms running EOS, a malformed DHCP packet might cause the DHCP relay agent...
High
Unreviewed
CVE-2023-24510
was published
Jun 6, 2023
An issue was discovered in Exynos Mobile Processor and Modem for Exynos Modem 5123, Exynos Modem...
High
Unreviewed
CVE-2023-29092
was published
May 9, 2023
Tooljet v1.6 does not properly handle missing values in the API, allowing attackers to...
High
Unreviewed
CVE-2022-27978
was published
Apr 26, 2023
No exception handling vulnerability which revealed sensitive or excessive information to users.
High
Unreviewed
CVE-2023-23837
was published
Apr 25, 2023
NVIDIA ConnectX-5, ConnectX-6, and ConnectX6-DX contain a vulnerability in the NIC firmware,...
High
Unreviewed
CVE-2023-0204
was published
Apr 22, 2023
An issue was discovered in ONOS 2.5.1. In IntentManager, the install-requested intent (which...
High
Unreviewed
CVE-2021-38363
was published
Apr 20, 2023
An Improper Check or Handling of Exceptional Conditions vulnerability in packet processing on the...
Moderate
Unreviewed
CVE-2023-28970
was published
Apr 18, 2023
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
Critical
Unreviewed
CVE-2022-23121
was published
Mar 28, 2023
A potential memory vulnerability due to insufficient input validation in PDFXEditCore.x64.dll in...
High
Unreviewed
CVE-2023-24308
was published
Mar 28, 2023
In multiple functions of SnoozeHelper.java, there is a possible failure to persist settings due...
High
Unreviewed
CVE-2023-20993
was published
Mar 24, 2023
An Improper Handling of Exceptional Conditions vulnerability in obs-service-go_modules of...
Moderate
Unreviewed
CVE-2022-45155
was published
Mar 15, 2023
Improper Handling of Parameters vulnerability in BG-TEK COSLAT Firewall allows Remote Code...
Critical
Unreviewed
CVE-2021-4105
was published
Feb 24, 2023
MISP before 2.4.166 unsafely allows users to use the order parameter, related to app/Model...
Critical
Unreviewed
CVE-2022-48329
was published
Feb 20, 2023
app/Controller/Component/IndexFilterComponent.php in MISP before 2.4.167 mishandles...
Critical
Unreviewed
CVE-2022-48328
was published
Feb 20, 2023
Improper conditions check in the Intel(R) SGX SDK software may allow a privileged user to...
Moderate
Unreviewed
CVE-2022-26509
was published
Feb 16, 2023
ProTip!
Advisories are also available from the
GraphQL API