GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,504
Maven
5,000+
npm
4,149
NuGet
735
pip
3,949
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
387 advisories
Filter by severity
An issue was discovered on GE Grid Solutions MS3000 devices before 3.7.6.25p0_3.2.2.17p0_4.7p0....
Critical
Unreviewed
CVE-2022-43977
was published
Jan 17, 2023
A vulnerability was found in Little Apps Little Software Stats. It has been declared as critical....
Critical
Unreviewed
CVE-2015-10057
was published
Jan 16, 2023
An unauthenticated attacker in SAP NetWeaver AS for Java - version 7.50, due to improper access...
Critical
Unreviewed
CVE-2023-0017
was published
Jan 10, 2023
A vulnerability has been found in ghostlander Halcyon and classified as critical. Affected by...
Critical
Unreviewed
CVE-2021-4300
was published
Jan 5, 2023
https://www.hillstonenet.com.cn/ Hillstone Firewall SG-6000 <= 5.0.4.0 is vulnerable to Incorrect...
Critical
Unreviewed
CVE-2022-45778
was published
Dec 28, 2022
rdiffweb Improper Access Control vulnerability
Critical
CVE-2022-4724
was published
for
rdiffweb
(pip)
Dec 27, 2022
A vulnerability was found in House Rental System and classified as critical. Affected by this...
Critical
Unreviewed
CVE-2022-4276
was published
Dec 3, 2022
A vulnerability, which was classified as critical, has been found in FeMiner wms. Affected by...
Critical
Unreviewed
CVE-2022-4272
was published
Dec 3, 2022
A vulnerability, which was classified as critical, has been found in SourceCodester Human...
Critical
Unreviewed
CVE-2022-4273
was published
Dec 3, 2022
A vulnerability classified as critical was found in SourceCodester Book Store Management System 1...
Critical
Unreviewed
CVE-2022-4229
was published
Nov 30, 2022
A vulnerability, which was classified as critical, was found in SourceCodester Event Registration...
Critical
Unreviewed
CVE-2022-4232
was published
Nov 30, 2022
There is an access control vulnerability in some ZTE PON OLT products. Due to improper access...
Critical
Unreviewed
CVE-2022-39070
was published
Nov 22, 2022
Carel Boss Mini 1.5.0 has Improper Access Control.
Critical
Unreviewed
CVE-2022-34827
was published
Nov 19, 2022
Block BYPASS vulnerability in iQ Block Country plugin <= 1.2.18 on WordPress.
Critical
Unreviewed
CVE-2022-41155
was published
Nov 19, 2022
Bypass vulnerability in Quiz And Survey Master plugin <= 7.3.10 on WordPress.
Critical
Unreviewed
CVE-2022-41652
was published
Nov 18, 2022
VMware Workspace ONE Assist prior to 22.10 contains a Broken Access Control vulnerability. A...
Critical
Unreviewed
CVE-2022-31687
was published
Nov 10, 2022
The firmware of InHand Networks InRouter302 V3.5.45 introduces fixes for TALOS-2022-1472 and...
Critical
Unreviewed
CVE-2022-25932
was published
Nov 9, 2022
easyii CMS's File Upload Management vulnerable to unrestricted upload
Critical
CVE-2022-3771
was published
for
noumo/easyii
(Composer)
Oct 31, 2022
A vulnerability was found in seccome Ehoney. It has been rated as critical. This issue affects...
Critical
Unreviewed
CVE-2022-3735
was published
Oct 28, 2022
An authentication bypass vulnerability exists in the GHOME control functionality of Abode Systems...
Critical
Unreviewed
CVE-2022-27805
was published
Oct 25, 2022
Multiple Trumpf Products in multiple versions use default privileged Windows users and passwords....
Critical
Unreviewed
CVE-2022-2052
was published
Oct 17, 2022
A vulnerability has been found in SourceCodester Human Resource Management System 1.0 and...
Critical
Unreviewed
CVE-2022-3458
was published
Oct 12, 2022
A denial of service vulnerability exists in the ucloud_del_node functionality of TCL LinkHub Mesh...
Critical
Unreviewed
CVE-2022-26346
was published
Aug 6, 2022
A vulnerability, which was classified as critical, has been found in SourceCodester Garage...
Critical
Unreviewed
CVE-2022-2578
was published
Jul 30, 2022
An attacker with weak credentials could access the TCP port via an open FTP port, allowing an...
Critical
Unreviewed
CVE-2022-2103
was published
Jun 25, 2022
ProTip!
Advisories are also available from the
GraphQL API