GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,504
Maven
5,000+
npm
4,149
NuGet
735
pip
3,949
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
567 advisories
Filter by severity
In JetBrains TeamCity before 2021.2.1, an unauthenticated attacker can cancel running builds via...
Moderate
Unreviewed
CVE-2022-24336
was published
Feb 26, 2022
An issue was discovered in drivers/usb/gadget/function/rndis.c in the Linux kernel before 5.16.10...
Moderate
Unreviewed
CVE-2022-25375
was published
Feb 21, 2022
An issue was discovered in Cerebrate through 1.4. An incorrect sharing group ACL allowed an...
Moderate
Unreviewed
CVE-2022-25318
was published
Feb 19, 2022
Exposure of Resource to Wrong Sphere in ezsystems/ezplatform-kernel
Moderate
CVE-2022-25336
was published
for
ezsystems/ezplatform-kernel
(Composer)
Feb 19, 2022
Policy bypass in Blink in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to leak...
Moderate
Unreviewed
CVE-2022-0117
was published
Feb 13, 2022
The check_alu_op() function in kernel/bpf/verifier.c in the Linux kernel through v5.16-rc5 did...
Moderate
Unreviewed
CVE-2021-45402
was published
Feb 12, 2022
In clear_data_dlg_text of strings.xml, there is a possible situation when "Clear storage"...
Moderate
Unreviewed
CVE-2021-39631
was published
Feb 12, 2022
Improper isolation of shared resources in network on chip for the Intel(R) 82599 Ethernet...
Moderate
Unreviewed
CVE-2021-33096
was published
Feb 11, 2022
In Stormshield 1.1.0, and 2.1.0 through 2.9.0, an attacker can block a client from accessing the...
Moderate
Unreviewed
CVE-2021-31814
was published
Feb 11, 2022
In Zammad 5.0.2, agents can configure "out of office" periods and substitute persons. If the...
Moderate
Unreviewed
CVE-2021-44886
was published
Feb 10, 2022
A potential Information leakage vulnerability has been identified in versions of Micro Focus...
Moderate
Unreviewed
CVE-2021-38130
was published
Feb 10, 2022
Windows Remote Access Connection Manager Information Disclosure Vulnerability.
Moderate
Unreviewed
CVE-2022-21985
was published
Feb 10, 2022
Windows Common Log File System Driver Information Disclosure Vulnerability.
Moderate
Unreviewed
CVE-2022-21998
was published
Feb 10, 2022
Microsoft Excel Information Disclosure Vulnerability.
Moderate
Unreviewed
CVE-2022-22716
was published
Feb 10, 2022
Microsoft Office Information Disclosure Vulnerability.
Moderate
Unreviewed
CVE-2022-23252
was published
Feb 10, 2022
Microsoft Power BI Information Disclosure Vulnerability.
Moderate
Unreviewed
CVE-2022-23254
was published
Feb 10, 2022
Incorrect Authorization in keycloak
Moderate
CVE-2020-1725
was published
for
org.keycloak:keycloak-parent
(Maven)
Feb 9, 2022
UNIVERGE DT 820 V3.2.7.0 and prior, UNIVERGE DT 830 V5.2.7.0 and prior, UNIVERGE DT 930 V2.4.0.0...
Moderate
Unreviewed
CVE-2021-44746
was published
Feb 8, 2022
The Document Embedder WordPress plugin before 1.7.9 contains a AJAX action endpoint, which could...
Moderate
Unreviewed
CVE-2021-24868
was published
Feb 2, 2022
The Document Embedder WordPress plugin before 1.7.5 contains a REST endpoint, which could allow...
Moderate
Unreviewed
CVE-2021-24775
was published
Feb 2, 2022
Adenza AxiomSL ControllerView through 10.8.1 is vulnerable to user enumeration. An attacker can...
Moderate
Unreviewed
CVE-2022-24032
was published
Jan 31, 2022
Insufficient user authorization in Moodle
Moderate
CVE-2022-0334
was published
for
moodle/moodle
(Composer)
Jan 28, 2022
An issue was discovered in Saviynt Enterprise Identity Cloud (EIC) 5.5 SP2.x. An attacker can...
Moderate
Unreviewed
CVE-2022-23856
was published
Jan 25, 2022
In a Junos Fusion scenario an External Control of Critical State Data vulnerability in the...
Moderate
Unreviewed
CVE-2022-22154
was published
Jan 20, 2022
An issue was discovered in Delta RM 1.2. It is possible for an unprivileged user to access the...
Moderate
Unreviewed
CVE-2021-44837
was published
Jan 20, 2022
ProTip!
Advisories are also available from the
GraphQL API