GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,257 advisories
Filter by severity
Vulnerability of incomplete read and write permission verification in the GPU module. Successful...
Critical
Unreviewed
CVE-2021-46891
was published
Jul 5, 2023
Vulnerability of incomplete read and write permission verification in the GPU module. Successful...
Critical
Unreviewed
CVE-2021-46890
was published
Jul 5, 2023
Arcserve UDP through 9.0.6034 allows authentication bypass. The method getVersionInfo at...
Critical
Unreviewed
CVE-2023-26258
was published
Jul 3, 2023
UniFi OS 3.1 introduces a misconfiguration on consoles running UniFi Network that allows users on...
Critical
Unreviewed
CVE-2023-31997
was published
Jul 1, 2023
An issue was discovered in the CheckUserLog API in the CheckUser extension for MediaWiki through...
Moderate
Unreviewed
CVE-2023-37300
was published
Jun 30, 2023
A security defect was identified in Foundry workspace-server that enabled a user to bypass an...
Moderate
Unreviewed
CVE-2023-30955
was published
Jun 29, 2023
there is a possible way to bypass the protected confirmation screen due to Failure to lock...
High
Unreviewed
CVE-2023-21225
was published
Jun 28, 2023
IBM Robotic Process Automation for Cloud Pak 21.0.1 through 21.0.7.3 and 23.0.0 through 23.0.3...
High
Unreviewed
CVE-2023-22593
was published
Jun 27, 2023
Incorrect access control in the component /index.php?mod=system&op=orgtree of dzzoffice 2.02...
Moderate
Unreviewed
CVE-2021-30205
was published
Jun 27, 2023
The Formidable Forms WordPress plugin before 6.3.1 does not adequately authorize the user or...
High
Unreviewed
CVE-2023-2877
was published
Jun 27, 2023
An exposed dangerous function vulnerability in the Trend Micro Apex One and Apex One as a Service...
High
Unreviewed
CVE-2023-34148
was published
Jun 27, 2023
An exposed dangerous function vulnerability in the Trend Micro Apex One and Apex One as a Service...
High
Unreviewed
CVE-2023-34146
was published
Jun 27, 2023
An exposed dangerous function vulnerability in the Trend Micro Apex One and Apex One as a Service...
High
Unreviewed
CVE-2023-34147
was published
Jun 27, 2023
A logic issue was addressed with improved checks. This issue is fixed in iTunes 12.12.9 for...
High
Unreviewed
CVE-2023-32353
was published
Jun 23, 2023
Terraform Enterprise since v202207-1 did not properly implement authorization rules for agent...
Unknown
Unreviewed
CVE-2023-3114
was published
Jun 23, 2023
XML Signature Wrapping (XSW) in SAML-based Single Sign-on feature in TOPdesk v12.10.12 allows bad...
High
Unreviewed
CVE-2023-34923
was published
Jun 22, 2023
An issue was discovered in /cgi-bin/adm.cgi in WavLink WavRouter version RPT70HA1.x, allows...
High
Unreviewed
CVE-2023-29708
was published
Jun 22, 2023
A logic error in SiLabs Z/IP Gateway SDK 7.18.02 and earlier allows authentication to be bypassed...
High
Unreviewed
CVE-2023-0971
was published
Jun 21, 2023
nappropriate authorization vulnerability in the SettingsProvider module.Successful exploitation...
High
Unreviewed
CVE-2023-34161
was published
Jun 19, 2023
Vulnerability of unauthorized access to foreground app information.Successful exploitation of...
Moderate
Unreviewed
CVE-2022-48495
was published
Jun 19, 2023
Vulnerability of bypassing the default desktop security controls.Successful exploitation of this...
Moderate
Unreviewed
CVE-2022-48488
was published
Jun 19, 2023
In KeePassXC through 2.7.5, a local attacker can make changes to the Database security settings,...
Moderate
Unreviewed
CVE-2023-35866
was published
Jun 19, 2023
An issue was discovered on NOKIA Airscale ASIKA Single RAN devices before 21B. A mobile network...
High
Unreviewed
CVE-2023-25185
was published
Jun 16, 2023
Improper Authorization in SSH server in Bosch VMS 11.0, 11.1.0, and 11.1.1 allows a remote...
High
Unreviewed
CVE-2023-28175
was published
Jun 15, 2023
IBM Security Guardium 11.3, 11.4, and 11.5 could allow a local user to obtain elevated privileges...
High
Unreviewed
CVE-2022-22307
was published
Jun 15, 2023
ProTip!
Advisories are also available from the
GraphQL API