GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,504
Maven
5,000+
npm
4,149
NuGet
735
pip
3,949
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,001 advisories
Filter by severity
Releases prior to VMware vRealize Operations Tenant App 8.6 contain an Information Disclosure...
High
Unreviewed
CVE-2021-22034
was published
May 24, 2022
Clustered Data ONTAP versions 9.x prior to 9.5P18, 9.6P16, 9.7P16, 9.8P7 and 9.9.1P2 are...
Moderate
Unreviewed
CVE-2021-27001
was published
May 24, 2022
Dell PowerStore versions 2.0.0.x, 2.0.1.x and 2.1.0.x contains an open port vulnerability. A...
Critical
Unreviewed
CVE-2022-26869
was published
Jun 3, 2022
Information disclosure from SendEntry in GitLab starting with 10.8 allowed exposure of full URL...
Moderate
Unreviewed
CVE-2021-39900
was published
May 24, 2022
A business logic error in the project deletion process in GitLab 13.6 and later allows persistent...
Moderate
Unreviewed
CVE-2021-39866
was published
May 24, 2022
A remote unauthorized read access to files vulnerability was discovered in Aruba Instant version...
Moderate
Unreviewed
CVE-2021-37734
was published
May 24, 2022
A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 14...
Moderate
Unreviewed
CVE-2021-1807
was published
May 24, 2022
LINE client for iOS before 11.15.0 might expose authentication information for a certain service...
High
Unreviewed
CVE-2021-41011
was published
May 24, 2022
Exposure of Resource to Wrong Sphere in Spring Data REST
Moderate
CVE-2021-22047
was published
for
org.springframework.data:spring-data-rest-core
(Maven)
May 24, 2022
An exploitable local privilege elevation vulnerability exists in the file system permissions of...
High
Unreviewed
CVE-2018-4048
was published
May 24, 2022
This issue was addressed with improved entitlements. This issue is fixed in macOS Big Sur 11.3,...
Moderate
Unreviewed
CVE-2021-1824
was published
May 24, 2022
A memory initialization issue was addressed with improved memory handling. This issue is fixed in...
Moderate
Unreviewed
CVE-2021-1820
was published
May 24, 2022
Inappropriate implementation in Navigation in Google Chrome prior to 93.0.4577.63 allowed a...
Moderate
Unreviewed
CVE-2021-30615
was published
May 24, 2022
IBM QRadar SIEM 7.4.3 GA - 7.4.3 Fix Pack 1 when using domains or multi-tenancy could be...
Moderate
Unreviewed
CVE-2021-29880
was published
May 24, 2022
NVIDIA GeForce Experience, all versions prior to 3.23, contains a vulnerability where, if a user...
High
Unreviewed
CVE-2021-1073
was published
May 24, 2022
Incorrect Access Control in Zammad 1.0.x up to 4.0.0 allows attackers to obtain sensitive...
High
Unreviewed
CVE-2021-35299
was published
May 24, 2022
In Artica Pandora FMS <=754 in the File Manager component, there is sensitive information exposed...
Moderate
Unreviewed
CVE-2021-34075
was published
May 24, 2022
When a download was initiated, the client did not check whether it was in normal or private...
Moderate
Unreviewed
CVE-2021-29958
was published
May 24, 2022
There is an Information Disclosure Vulnerability in Huawei Smartphone.Successful exploitation of...
High
Unreviewed
CVE-2021-22446
was published
May 24, 2022
An information disclosure vulnerability in GitLab EE versions 13.11 and later allowed a project...
High
Unreviewed
CVE-2021-22215
was published
May 24, 2022
Under certain conditions SAP Enable Now (SAP Workforce Performance Builder - Manager), versions -...
Moderate
Unreviewed
CVE-2021-27637
was published
May 24, 2022
A confusion between tag and branch names in GitLab CE/EE affecting all versions since 13.7...
Moderate
Unreviewed
CVE-2021-22252
was published
May 24, 2022
Exim 4 before 4.94.2 allows Exposure of File Descriptor to Unintended Control Sphere because...
High
Unreviewed
CVE-2020-28012
was published
May 24, 2022
An issue was discovered in the AbuseFilter extension for MediaWiki through 1.35.2. It improperly...
Moderate
Unreviewed
CVE-2021-31554
was published
May 24, 2022
IBM Security Verify Access Docker 10.0.0 could reveal highly sensitive information to a local...
Moderate
Unreviewed
CVE-2021-20500
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API