GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,504
Maven
5,000+
npm
4,149
NuGet
735
pip
3,949
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
3,423 advisories
Filter by severity
Memory corruption due to improper authentication in Qualcomm IPC while loading unsigned lib in...
High
Unreviewed
CVE-2022-33242
was published
Mar 10, 2023
The undo_mark_statuses_as_sensitive method in app/services/approve_appeal_service.rb in Mastodon...
Moderate
Unreviewed
CVE-2022-48364
was published
Mar 6, 2023
Improper Authentication vulnerability in ABB Symphony Plus S+ Operations allows Man in the Middle...
High
Unreviewed
CVE-2023-0228
was published
Mar 2, 2023
Medtronic identified that the Pelvic Health clinician apps, which are installed on the Smart...
Moderate
Unreviewed
CVE-2023-25931
was published
Mar 1, 2023
This vulnerability in the Snyk Kubernetes Monitor can result in irrelevant data being posted to a...
Moderate
Unreviewed
CVE-2023-1065
was published
Feb 28, 2023
An issue was discovered in Docmosis Tornado prior to version 2.9.5. An unauthenticated attacker...
High
Unreviewed
CVE-2023-25264
was published
Feb 28, 2023
A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura...
Low
Unreviewed
CVE-2023-23493
was published
Feb 27, 2023
There is a data processing error vulnerability in Leia-B29 2.0.0.49(M03). Successful exploitation...
Moderate
Unreviewed
CVE-2022-48254
was published
Feb 27, 2023
There is an identity authentication bypass vulnerability in Huawei Children Smart Watch (Simba...
Moderate
Unreviewed
CVE-2022-48305
was published
Feb 27, 2023
An issue was discovered in the A4N (Aremis 4 Nomad) application 1.5.0 for Android. It possesses...
High
Unreviewed
CVE-2022-34908
was published
Feb 27, 2023
A vulnerability in the CLI console login authentication of Cisco Nexus 9300-FX3 Series Fabric...
Moderate
Unreviewed
CVE-2023-20012
was published
Feb 23, 2023
An access control issue in H3C A210-G A210-GV100R005 allows attackers to authenticate without a...
Critical
Unreviewed
CVE-2023-24093
was published
Feb 22, 2023
A vulnerability has been found in harrystech Dynosaur-Rails and classified as critical. Affected...
Critical
Unreviewed
CVE-2015-10083
was published
Feb 21, 2023
A vulnerability classified as critical has been found in SourceCodester Employee Task Management...
High
Unreviewed
CVE-2023-0905
was published
Feb 18, 2023
Improper authentication in the Intel(R) Quartus Prime Pro and Standard edition software may allow...
High
Unreviewed
CVE-2022-32570
was published
Feb 16, 2023
Improper authentication in the Intel(R) SUR software before version 2.4.8902 may allow an...
High
Unreviewed
CVE-2022-33946
was published
Feb 16, 2023
Improper authentication in the Intel(R) SUR software before version 2.4.8902 may allow a...
High
Unreviewed
CVE-2022-32971
was published
Feb 16, 2023
Priority Web version 19.1.0.68, parameter manipulation on an unspecified end-point may allow...
Critical
Unreviewed
CVE-2023-23460
was published
Feb 15, 2023
Incorrect Access Control in Comfast router CF-WR6110N V2.3.1 allows a remote attacker on the same...
Moderate
Unreviewed
CVE-2022-45724
was published
Feb 13, 2023
PowerPath Management Appliance with versions 3.3 & 3.2* contains Authorization Bypass...
High
Unreviewed
CVE-2022-34446
was published
Feb 11, 2023
Improper access control vulnerability in Phone application prior to SMR Feb-2023 Release 1 allows...
Moderate
Unreviewed
CVE-2023-21437
was published
Feb 9, 2023
Improper access control vulnerability in telecom application prior to SMR JAN-2023 Release 1...
Moderate
Unreviewed
CVE-2023-21425
was published
Feb 9, 2023
The IHwAttestationService interface has a defect in authentication. Successful exploitation of...
High
Unreviewed
CVE-2022-48294
was published
Feb 9, 2023
An issue was discovered in Couchbase Server 6.5.x and 6.6.x before 6.6.6, 7.x before 7.0.5, and 7...
High
Unreviewed
CVE-2022-42951
was published
Feb 6, 2023
A vulnerability in the Remember Me function of Mura CMS before v10.0.580 allows attackers to...
Critical
Unreviewed
CVE-2022-47003
was published
Feb 1, 2023
ProTip!
Advisories are also available from the
GraphQL API