GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,005 advisories
Filter by severity
AList 3.15.1 is vulnerable to Incorrect Access Control, which can be exploited by attackers to...
High
Unreviewed
CVE-2023-31726
was published
May 24, 2023
The permission system implemented and enforced by the GarminOS TVM component in CIQ API version 1...
High
Unreviewed
CVE-2023-23299
was published
May 23, 2023
Authentication bypass vulnerability in Qrio Lock (Q-SL2) firmware version 2.0.9 and earlier...
High
Unreviewed
CVE-2023-25946
was published
May 23, 2023
In registerReceiverWithFeature of ActivityManagerService.java, there is a possible way for...
High
Unreviewed
CVE-2023-21117
was published
May 16, 2023
Improper Access Control in SICK FTMg AIR FLOW SENSOR with Partnumbers
1100214, 1100215, 1100216,...
High
Unreviewed
CVE-2023-23445
was published
May 15, 2023
Improper Access Control in SICK FTMg AIR FLOW SENSOR with Partnumbers
1100214, 1100215, 1100216,...
High
Unreviewed
CVE-2023-23446
was published
May 15, 2023
VMware Aria Operations contains a privilege escalation vulnerability. An authenticated malicious...
High
Unreviewed
CVE-2023-20877
was published
May 12, 2023
Mattermost Incorrect Authorization vulnerability
High
CVE-2023-2515
was published
for
github.com/mattermost/mattermost-server/v6
(Go)
May 12, 2023
Insecure Permissons vulnerability found in Shop_CMS YerShop all versions allows a remote attacker...
High
Unreviewed
CVE-2020-23362
was published
May 9, 2023
Milesight NCR/camera version 71.8.0.6-r5 discloses sensitive information through an unspecified...
High
Unreviewed
CVE-2023-24505
was published
May 8, 2023
Multiple components (such as Onlinetemplate-Verwaltung, Liste aller Teilbereiche, Umfragen...
High
Unreviewed
CVE-2023-31435
was published
May 2, 2023
Docker Desktop for Windows before 4.6.0 allows attackers to delete (or create) any file through...
High
Unreviewed
CVE-2022-37326
was published
Apr 27, 2023
An issue was discovered in the Hyundai Gen5W_L in-vehicle infotainment system AE_E_PE_EUR...
High
Unreviewed
CVE-2023-26244
was published
Apr 27, 2023
An issue was discovered in the Hyundai Gen5W_L in-vehicle infotainment system AE_E_PE_EUR...
High
Unreviewed
CVE-2023-26246
was published
Apr 27, 2023
An issue was discovered in the Hyundai Gen5W_L in-vehicle infotainment system AE_E_PE_EUR...
High
Unreviewed
CVE-2023-26245
was published
Apr 27, 2023
Incorrect access control in the runReport function of MyQ Solution Print Server before 8.2 Patch...
High
Unreviewed
CVE-2023-27107
was published
Apr 27, 2023
VMware Fusion contains a local privilege escalation vulnerability. A malicious actor with read...
High
Unreviewed
CVE-2023-20871
was published
Apr 25, 2023
Improper access control in reporting engine of Odoo Community 14.0 through 15.0, and Odoo...
High
Unreviewed
CVE-2021-23203
was published
Apr 25, 2023
Authentication Bypass in Hub Business integration in Devolutions Workspace Desktop 2023.1.1.3 and...
High
Unreviewed
CVE-2023-2257
was published
Apr 24, 2023
In AlarmManagerActivity of AlarmManagerActivity.java, there is a possible way to bypass...
High
Unreviewed
CVE-2023-20950
was published
Apr 19, 2023
A CWE-863: Incorrect Authorization vulnerability exists that could allow remote code execution...
High
Unreviewed
CVE-2023-25547
was published
Apr 18, 2023
LilyPond before 2.24 allows attackers to bypass the -dsafe protection mechanism via output-def...
High
Unreviewed
CVE-2020-17354
was published
Apr 16, 2023
An issue was discovered in SecurePoint UTM before 12.2.5.1. The firewall's endpoint at /spcgi.cgi...
High
Unreviewed
CVE-2023-22620
was published
Apr 13, 2023
A incorrect authorization in Fortinet FortiClient (Windows) 7.0.0 - 7.0.7, 6.4.0 - 6.4.9, 6.2.0 -...
High
Unreviewed
CVE-2022-40682
was published
Apr 11, 2023
Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.1 and 9.3.0.2, including...
High
Unreviewed
CVE-2022-43940
was published
Apr 3, 2023
ProTip!
Advisories are also available from the
GraphQL API