GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,504
Maven
5,000+
npm
4,149
NuGet
735
pip
3,949
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
845 advisories
Filter by severity
Mutt before 1.5.20 patch 7 allows an attacker to cause a denial of service via a series of...
Moderate
Unreviewed
CVE-2005-2351
was published
Apr 21, 2022
An Access Control vulnerability exists in Desire2Learn/D2L Learning Management System (LMS) 20.21...
Moderate
Unreviewed
CVE-2021-43129
was published
Apr 20, 2022
Zoho ManageEngine Remote Access Plus before 10.1.2137.15 allows guest users to view domain...
Moderate
Unreviewed
CVE-2022-26653
was published
Apr 17, 2022
Zoho ManageEngine Remote Access Plus before 10.1.2137.15 allows guest users to view license details.
Moderate
Unreviewed
CVE-2022-26777
was published
Apr 17, 2022
A PHP Local File Inclusion vulneraility in the default Redbasic theme for Hubzilla before version...
High
Unreviewed
CVE-2022-27257
was published
Apr 16, 2022
Windows DNS Server Information Disclosure Vulnerability.
Moderate
Unreviewed
CVE-2022-26816
was published
Apr 16, 2022
An issue was discovered in Amazon AWS VPN Client 2.0.0. A TOCTOU race condition exists during the...
Moderate
Unreviewed
CVE-2022-25165
was published
Apr 15, 2022
VMware Workspace ONE Access, Identity Manager and vRealize Automation contain an information...
Moderate
Unreviewed
CVE-2022-22961
was published
Apr 14, 2022
A vulnerability has been identified in Mendix Applications using Mendix 7 (All versions < V7.23...
Moderate
Unreviewed
CVE-2022-25650
was published
Apr 13, 2022
A vulnerability has been identified in SCALANCE X302-7 EEC (230V), SCALANCE X302-7 EEC (230V,...
High
Unreviewed
CVE-2022-25755
was published
Apr 13, 2022
BeyondTrust AppGuard Enterprise through 6.6.20.2 creates a Temporary File in a Directory with...
High
Unreviewed
CVE-2021-42255
was published
Apr 13, 2022
In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to a missing...
Moderate
Unreviewed
CVE-2021-39805
was published
Apr 13, 2022
Dell PowerScale OneFS 8.2.2 and above contain an elevation of privilege vulnerability. A local...
High
Unreviewed
CVE-2022-24411
was published
Apr 13, 2022
Dell PowerScale OneFS, 8.2,x, 9.1.0.x, 9.2.1.x, and 9.3.0.x contain a denial of service...
Moderate
Unreviewed
CVE-2022-23163
was published
Apr 13, 2022
Improper access control vulnerability in SamsungContacts prior to SMR Apr-2022 Release 1 allows...
Low
Unreviewed
CVE-2022-26090
was published
Apr 12, 2022
Information exposure vulnerability in Samsung DeX Home prior to SMR April-2022 Release 1 allows...
Moderate
Unreviewed
CVE-2022-27576
was published
Apr 12, 2022
Information exposure vulnerability in One UI Home prior to SMR April-2022 Release 1 allows to...
Moderate
Unreviewed
CVE-2022-27575
was published
Apr 12, 2022
Information exposure vulnerability in ril property setting prior to SMR April-2022 Release 1...
Moderate
Unreviewed
CVE-2022-27822
was published
Apr 12, 2022
Reprise License Manager 14.2 is affected by an Information Disclosure vulnerability via a GET...
Moderate
Unreviewed
CVE-2022-28365
was published
Apr 10, 2022
A remote, unauthenticated attacker could utilize the control programmer of the CODESYS Control...
High
Unreviewed
CVE-2022-22515
was published
Apr 8, 2022
Policy bypass in COOP in Google Chrome prior to 98.0.4758.80 allowed a remote attacker to bypass...
Moderate
Unreviewed
CVE-2022-0461
was published
Apr 6, 2022
Data leak in Canvas in Google Chrome prior to 99.0.4844.51 allowed a remote attacker who...
Moderate
Unreviewed
CVE-2022-0806
was published
Apr 6, 2022
A business logic error in Project Import in GitLab CE/EE versions 14.9 prior to 14.9.2, 14.8...
Low
Unreviewed
CVE-2022-1111
was published
Apr 5, 2022
Verizon LVSKIHP 5G outside devices through 2022-02-15 allow anyone (knowing the device's serial...
High
Unreviewed
CVE-2022-28376
was published
Apr 4, 2022
IBM SterlingPartner Engagement Manager 6.2.0 could allow a remote authenticated attacker to...
High
Unreviewed
CVE-2022-22331
was published
Apr 2, 2022
ProTip!
Advisories are also available from the
GraphQL API