GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
37
GitHub Actions
36
Go
2,500
Maven
5,000+
npm
4,147
NuGet
735
pip
3,948
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
64 advisories
Filter by severity
Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated...
Moderate
Unreviewed
CVE-2023-20172
was published
May 18, 2023
Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated...
Moderate
Unreviewed
CVE-2023-20171
was published
May 18, 2023
Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated...
Moderate
Unreviewed
CVE-2023-20106
was published
May 18, 2023
Yellobrik PEC-1864 implements authentication checks via javascript in the frontend interface....
Critical
Unreviewed
CVE-2023-0750
was published
Apr 6, 2023
Insufficient policy enforcement in DevTools in Google Chrome prior to 110.0.5481.77 allowed a...
Moderate
Unreviewed
CVE-2023-0704
was published
Feb 7, 2023
The PrivateContent plugin for WordPress is vulnerable to protection mechanism bypass due to the...
Moderate
Unreviewed
CVE-2023-0581
was published
Jan 30, 2023
Insufficient policy enforcement in custom tabs in Google Chrome on Android prior to 106.0.5249.62...
Moderate
Unreviewed
CVE-2022-3310
was published
Nov 2, 2022
Insufficient policy enforcement in developer tools in Google Chrome prior to 106.0.5249.62...
High
Unreviewed
CVE-2022-3308
was published
Nov 2, 2022
Insufficient policy enforcement in Extensions API in Google Chrome prior to 105.0.5195.52 allowed...
Moderate
Unreviewed
CVE-2022-3047
was published
Sep 27, 2022
The Cognex 3D-A1000 Dimensioning System in firmware version 1.0.3 (3354) and prior is vulnerable...
Critical
Unreviewed
CVE-2022-1525
was published
Sep 7, 2022
A Client-Side Enforcement of Server-Side Security issue was discovered in ProMinent MultiFLEX...
Moderate
Unreviewed
CVE-2017-14013
was published
May 13, 2022
UNEDITABLE_SCHEMAS and UNEDITABLE_TABLE_DESCRIPTION_MATCH_RULES not respected by frontend service backend
Low
GHSA-47qg-q58v-7vrp
was published
for
amundsen-frontend
(pip)
Dec 2, 2020
Circumvention of file size limits in ActiveStorage
High
CVE-2020-8162
was published
for
activestorage
(RubyGems)
May 26, 2020
Moderate severity vulnerability that affects org.keycloak:keycloak-core
Moderate
CVE-2017-12161
was published
for
org.keycloak:keycloak-core
(Maven)
Oct 18, 2018
ProTip!
Advisories are also available from the
GraphQL API