GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
37
GitHub Actions
36
Go
2,500
Maven
5,000+
npm
4,147
NuGet
735
pip
3,948
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
39 advisories
Filter by severity
Rapid7's InsightVM maintenance mode login page suffers from a sensitive information exposure...
Low
Unreviewed
CVE-2024-2745
was published
Apr 2, 2024
IBM Maximo Application Suite 8.10, 8.11 and IBM Maximo Asset Management 7.6.1.3 stores sensitive...
Low
Unreviewed
CVE-2023-32335
was published
Mar 13, 2024
Sametime is impacted by sensitive information passed in URL.
Low
Unreviewed
CVE-2023-45716
was published
Feb 10, 2024
IBM PowerSC 1.3, 2.0, and 2.1 may allow a remote attacker to view session identifiers passed via...
Low
Unreviewed
CVE-2023-50328
was published
Feb 2, 2024
Sensitive data exposure in Webconf in Tribe29 Checkmk Appliance before 1.6.8 allows local...
Low
Unreviewed
CVE-2023-6287
was published
Nov 27, 2023
Ray Missing Authorization vulnerability
Critical
CVE-2023-6020
was published
for
ray
(pip)
Nov 16, 2023
MLflow authentication requirement bypass can allow a user to arbitrarily create an account
Critical
CVE-2023-6014
was published
for
mlflow
(pip)
Nov 16, 2023
A use of GET request method with sensitive query strings vulnerability in Fortinet FortiOS 7.0.0 ...
High
Unreviewed
CVE-2023-37935
was published
Oct 10, 2023
NVIDIA Omniverse Workstation Launcher for Windows and Linux contains a vulnerability in the...
Moderate
Unreviewed
CVE-2023-25524
was published
Aug 3, 2023
Dell PowerScale OneFS versions 8.2.2 - 9.1.0.x contain a use of get request method with sensitive...
Moderate
Unreviewed
CVE-2021-21594
was published
May 24, 2022
ACTi cameras including the D, B, I, and E series using firmware version A1D-500-V6.11.31-AC have...
Critical
Unreviewed
CVE-2017-3185
was published
May 13, 2022
In Kibana X-Pack security versions prior to 5.4.3 if a Kibana user opens a crafted Kibana URL the...
Moderate
Unreviewed
CVE-2017-8443
was published
May 13, 2022
Dell EMC Streaming Data Platform versions before 1.3 contain a SQL Injection Vulnerability. A...
High
Unreviewed
CVE-2021-36328
was published
Dec 1, 2021
ProTip!
Advisories are also available from the
GraphQL API