GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,257 advisories
Filter by severity
In showNextSecurityScreenOrFinish of KeyguardSecurityContainerController.java, there is a...
High
Unreviewed
CVE-2023-21245
was published
Jul 13, 2023
In getCurrentState of OneTimePermissionUserManager.java, there is a possible way to hold one-time...
High
Unreviewed
CVE-2023-21254
was published
Jul 13, 2023
In SettingsHomepageActivity.java, there is a possible way to launch arbitrary activities via...
High
Unreviewed
CVE-2023-21256
was published
Jul 13, 2023
In TravianZ 8.3.4 and 8.3.3, Incorrect Access Control in the installation script allows an...
Critical
Unreviewed
CVE-2023-36994
was published
Jul 7, 2023
Zoho ManageEngine ServiceDesk Plus before 14202, ServiceDesk Plus MSP before 14300, and...
Moderate
Unreviewed
CVE-2023-34197
was published
Jul 7, 2023
Exposure of Sensitive Information to an unauthorized actor vulnerability in MB Connect Lines...
Moderate
Unreviewed
CVE-2023-1779
was published
Jul 6, 2023
Palantir discovered a software bug in a recently released version of Foundry’s Lime2 service, one...
Moderate
Unreviewed
CVE-2023-22833
was published
Jul 6, 2023
SGUDA U-Lock central lock control service’s lock management function has incorrect authorization....
High
Unreviewed
CVE-2022-46307
was published
Jul 6, 2023
SGUDA U-Lock central lock control service’s user management function has incorrect authorization....
High
Unreviewed
CVE-2022-46308
was published
Jul 6, 2023
Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.1 and 9.3.0.3, including...
Moderate
Unreviewed
CVE-2023-1158
was published
Jul 6, 2023
Versions of Sage 300 through 2022 implement role-based access controls that are only enforced...
Moderate
Unreviewed
CVE-2023-29927
was published
Jul 6, 2023
Improper Authorization vulnerability in OTRS AG OTRS 8 (Websocket API backend) allows any as...
High
Unreviewed
CVE-2023-2534
was published
Jul 6, 2023
The Web Stories for WordPress plugin supports the WordPress built-in functionality of protecting...
Moderate
Unreviewed
CVE-2023-1979
was published
Jul 6, 2023
Hitachi Vantara Pentaho Business Analytics Server versions before 9.3.0.0, 9.2.0.4 and 8.3.0.27...
High
Unreviewed
CVE-2022-43770
was published
Jul 6, 2023
A permissions issue was addressed with improved validation. This issue is fixed in macOS Ventura...
Moderate
Unreviewed
CVE-2023-23510
was published
Jul 6, 2023
The Profile Builder – User Profile & User Registration Forms plugin for WordPress is vulnerable...
Moderate
Unreviewed
CVE-2023-0814
was published
Jul 6, 2023
A CWE-285: Improper Authorization vulnerability exists that could cause Denial of Service against...
High
Unreviewed
CVE-2023-22610
was published
Jul 6, 2023
A vulnerability exists in the affected versions of Lumada APM’s User Asset Group feature due to a...
High
Unreviewed
CVE-2022-2155
was published
Jul 6, 2023
Franklin Fueling System FFS Colibri 1.9.22.8925 is affected by: File system overwrite. The impact...
Critical
Unreviewed
CVE-2022-44039
was published
Jul 6, 2023
D-Link – G integrated Access Device4 Information Disclosure & Authorization Bypass. *Information...
High
Unreviewed
CVE-2022-36785
was published
Jul 6, 2023
An attacker with local access to the system can make unauthorized modifications of the security...
High
Unreviewed
CVE-2021-26360
was published
Jul 6, 2023
An issue in Zimbra Collaboration (ZCS) v.8.8.15 and v.9.0 allows a remote attacker to escalate...
Critical
Unreviewed
CVE-2023-29381
was published
Jul 6, 2023
Inappropriate authorization vulnerability in the system apps. Successful exploitation of this...
High
Unreviewed
CVE-2022-48508
was published
Jul 6, 2023
An improper authorization vulnerability in Darktrace mobile app (Android) prior to version 6.0.15...
Moderate
Unreviewed
CVE-2023-29656
was published
Jul 6, 2023
Nexxt Nebula 1200-AC 15.03.06.60 allows authentication bypass and command execution by using the...
Critical
Unreviewed
CVE-2022-46080
was published
Jul 6, 2023
ProTip!
Advisories are also available from the
GraphQL API