GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,257 advisories
Filter by severity
TOTOLINK A3002RU version 2.0.0-B20190902.1958 has a post-authentication RCE due to incorrect...
High
Unreviewed
CVE-2023-48859
was published
Dec 6, 2023
Unauthorized access vulnerability in the launcher module. Successful exploitation of this...
High
Unreviewed
CVE-2023-49240
was published
Dec 6, 2023
Unauthorized access vulnerability in the card management module. Successful exploitation of this...
High
Unreviewed
CVE-2023-49239
was published
Dec 6, 2023
Unauthorized access vulnerability in the card management module. Successful exploitation of this...
High
Unreviewed
CVE-2023-49246
was published
Dec 6, 2023
Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical...
Moderate
Unreviewed
CVE-2023-42575
was published
Dec 5, 2023
Improper authorization verification vulnerability in AR Emoji prior to SMR Dec-2023 Release 1...
Moderate
Unreviewed
CVE-2023-42569
was published
Dec 5, 2023
Memory corruption in Automotive OS whenever untrusted apps try to access HAb for graphics...
High
Unreviewed
CVE-2023-33071
was published
Dec 5, 2023
An issue discovered in Connectize AC21000 G6 641.139.1.1256 allows attackers to gain control of...
Critical
Unreviewed
CVE-2023-24052
was published
Dec 5, 2023
A client side rate limit issue discovered in Connectize AC21000 G6 641.139.1.1256 allows...
Critical
Unreviewed
CVE-2023-24051
was published
Dec 5, 2023
An Insecure Credential Management issue discovered in Connectize AC21000 G6 641.139.1.1256 allows...
Moderate
Unreviewed
CVE-2023-24047
was published
Dec 5, 2023
Forgejo before 1.20.5-1 allows 2FA bypass when docker login uses Basic Authentication.
High
Unreviewed
CVE-2023-49947
was published
Dec 3, 2023
IBM Administration Runtime Expert for i 7.2, 7.3, 7.4, and 7.5 could allow a local user to obtain...
High
Unreviewed
CVE-2023-42006
was published
Dec 1, 2023
An issue has been discovered in GitLab EE affecting all versions starting from 16.2 before 16.4.3...
Moderate
Unreviewed
CVE-2023-5995
was published
Dec 1, 2023
An issue has been discovered in GitLab EE affecting all versions starting from 8.13 before 16.4.3...
Low
Unreviewed
CVE-2023-4658
was published
Dec 1, 2023
An issue has been discovered in GitLab affecting all versions starting from 9.2 before 16.4.3,...
Moderate
Unreviewed
CVE-2023-4317
was published
Dec 1, 2023
An issue has been discovered in GitLab affecting all versions starting from 12.1 before 16.4.3,...
Low
Unreviewed
CVE-2023-3443
was published
Dec 1, 2023
An issue has been discovered in GitLab affecting all versions starting from 13.2 before 16.4.3,...
Moderate
Unreviewed
CVE-2023-3964
was published
Dec 1, 2023
Incorrect Authorization vulnerability in NicheAddons Events Addon for Elementor allows Accessing...
Moderate
Unreviewed
CVE-2023-47827
was published
Nov 30, 2023
During internal Axis Security Development Model (ASDM) threat-modelling, a flaw was found in the...
High
Unreviewed
CVE-2023-5553
was published
Nov 21, 2023
The myStickymenu WordPress plugin before 2.6.5 does not adequately authorize some ajax calls,...
Moderate
Unreviewed
CVE-2023-5509
was published
Nov 20, 2023
The WP Hotel Booking WordPress plugin before 2.0.8 does not have proper authorisation when...
Moderate
Unreviewed
CVE-2023-5799
was published
Nov 20, 2023
Wago web-based management of multiple products has a vulnerability which allows an local...
Moderate
Unreviewed
CVE-2023-3379
was published
Nov 20, 2023
Improper authorization verification vulnerability in Samsung Email prior to version 6.1.90.4...
Moderate
Unreviewed
CVE-2023-42553
was published
Nov 15, 2023
An authenticated vulnerability has been identified allowing an attacker to effectively establish...
Moderate
Unreviewed
CVE-2023-45626
was published
Nov 15, 2023
A incorrect authorization in Fortinet FortiClient (Windows) 7.0.0 - 7.0.7, 6.4.0 - 6.4.9, 6.2.0 -...
High
Unreviewed
CVE-2022-40681
was published
Nov 14, 2023
ProTip!
Advisories are also available from the
GraphQL API