GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,503
Maven
5,000+
npm
4,148
NuGet
735
pip
3,949
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
23,483 advisories
Filter by severity
If an out-of-memory condition occurred when creating a JavaScript global, a JavaScript realm may...
Critical
Unreviewed
CVE-2022-45406
was published
Dec 22, 2022
Mozilla developers and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox...
Critical
Unreviewed
CVE-2022-36320
was published
Dec 22, 2022
Mozilla developers Bryce Seager van Dyk and the Mozilla Fuzzing Team reported potential...
Critical
Unreviewed
CVE-2022-34485
was published
Dec 22, 2022
A use-after-free in WebGL extensions could have led to a potentially exploitable crash. This...
Critical
Unreviewed
CVE-2022-46882
was published
Dec 22, 2022
AyaCMS 3.1.2 is vulnerable to Arbitrary file upload via /aya/module/admin/fst_down.inc.php
Critical
Unreviewed
CVE-2022-46102
was published
Dec 22, 2022
AyaCMS 3.1.2 is vulnerable to file deletion via /aya/module/admin/fst_del.inc.php
Critical
Unreviewed
CVE-2022-47926
was published
Dec 22, 2022
here is an arbitrary file upload vulnerability in the file management function module of...
Critical
Unreviewed
CVE-2022-45966
was published
Dec 22, 2022
Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where a specific...
Critical
Unreviewed
CVE-2022-3183
was published
Dec 22, 2022
A vulnerability, which was classified as critical, has been found in sslh. This issue affects the...
Critical
Unreviewed
CVE-2022-4639
was published
Dec 22, 2022
Product: AndroidVersions: Android kernelAndroid ID: A-235292841References: N/A
Critical
Unreviewed
CVE-2022-42529
was published
Dec 21, 2022
In AeroCms v0.0.1, there is an arbitrary file upload vulnerability at /admin/posts.php?source...
Critical
Unreviewed
CVE-2022-46135
was published
Dec 21, 2022
Password recovery vulnerability in SICK SIM2000ST Partnumber 2086502 with firmware version <1.13...
Critical
Unreviewed
CVE-2022-47377
was published
Dec 21, 2022
Wildix WMS 6 before 6.02.20221216, WMS 5 before 5.04.20221214, and WMS4 before 4.04.45396.23...
Critical
Unreviewed
CVE-2022-47635
was published
Dec 21, 2022
A DNS misconfiguration was found in Zyxel NBG7510 firmware versions prior to V1.00(ABZY.3)C0,...
Critical
Unreviewed
CVE-2022-38546
was published
Dec 21, 2022
Libksba before 1.6.3 is prone to an integer overflow vulnerability in the CRL signature parser.
Critical
Unreviewed
CVE-2022-47629
was published
Dec 21, 2022
A flaw was found in Exuberant Ctags in the way it handles the "-o" option. This option specifies...
Critical
Unreviewed
CVE-2022-4515
was published
Dec 20, 2022
A thread security vulnerability exists in the authentication process. Successful exploitation of...
Critical
Unreviewed
CVE-2022-46316
was published
Dec 20, 2022
Some smartphones have the out-of-bounds write vulnerability.Successful exploitation of this...
Critical
Unreviewed
CVE-2022-46325
was published
Dec 20, 2022
Fingerprint calibration has a vulnerability of lacking boundary judgment. Successful exploitation...
Critical
Unreviewed
CVE-2022-46319
was published
Dec 20, 2022
The kernel module has an out-of-bounds read vulnerability. Successful exploitation of this...
Critical
Unreviewed
CVE-2022-46320
was published
Dec 20, 2022
Some smartphones have the out-of-bounds write vulnerability.Successful exploitation of this...
Critical
Unreviewed
CVE-2022-46323
was published
Dec 20, 2022
Some smartphones have the out-of-bounds write vulnerability. Successful exploitation of this...
Critical
Unreviewed
CVE-2022-46324
was published
Dec 20, 2022
Some smartphones have the out-of-bounds write vulnerability. Successful exploitation of this...
Critical
Unreviewed
CVE-2022-46326
was published
Dec 20, 2022
Some smartphones have configuration issues. Successful exploitation of this vulnerability may...
Critical
Unreviewed
CVE-2022-46327
was published
Dec 20, 2022
WBCE CMS v1.5.4 can implement getshell by modifying the upload file type.
Critical
Unreviewed
CVE-2022-46020
was published
Dec 20, 2022
ProTip!
Advisories are also available from the
GraphQL API