GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
23,457 advisories
Filter by severity
patrickfuller camp up to and including commit bbd53a256ed70e79bd8758080936afbf6d738767 is...
Critical
Unreviewed
CVE-2022-37109
was published
Nov 15, 2022
WoWonder Social Network Platform 4.1.4 was discovered to contain a SQL injection vulnerability...
Critical
Unreviewed
CVE-2022-42984
was published
Nov 15, 2022
Cryptographic issues in WLAN during the group key handshake of the WPA/WPA2 protocol in...
Critical
Unreviewed
CVE-2022-25674
was published
Nov 15, 2022
Memory Corruption in modem due to improper length check while copying into memory in Snapdragon...
Critical
Unreviewed
CVE-2022-25727
was published
Nov 15, 2022
Memory corruption in video due to configuration weakness. in Snapdragon Auto, Snapdragon Compute,...
Critical
Unreviewed
CVE-2022-33234
was published
Nov 15, 2022
Tenda AC1200 Router Model W15Ev2 V15.11.0.10(1576) was discovered to contain a stack overflow via...
Critical
Unreviewed
CVE-2022-42058
was published
Nov 15, 2022
The WPForms Pro WordPress plugin before 1.7.7 does not validate its form data when generating the...
Critical
Unreviewed
CVE-2022-3574
was published
Nov 14, 2022
The tagDiv Composer WordPress plugin before 3.5, required by the Newspaper WordPress theme before...
Critical
Unreviewed
CVE-2022-3477
was published
Nov 14, 2022
Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Silicon...
Critical
Unreviewed
CVE-2022-24937
was published
Nov 14, 2022
Authentication Bypass by Primary Weakness in GitHub repository kareadita/kavita prior to 0.6.0.3.
Critical
Unreviewed
CVE-2022-3993
was published
Nov 14, 2022
A vulnerability was found in NagVis up to 1.9.33 and classified as problematic. This issue...
Critical
Unreviewed
CVE-2022-3979
was published
Nov 14, 2022
A vulnerability was found in LibTIFF. It has been classified as critical. This affects the...
Critical
Unreviewed
CVE-2022-3970
was published
Nov 13, 2022
A vulnerability was found in Pingkon HMS-PHP. It has been rated as critical. This issue affects...
Critical
Unreviewed
CVE-2022-3972
was published
Nov 13, 2022
A vulnerability classified as critical has been found in Pingkon HMS-PHP. Affected is an unknown...
Critical
Unreviewed
CVE-2022-3973
was published
Nov 13, 2022
Pi-Star_DV_Dash (for Pi-Star DV) before 5aa194d mishandles the module parameter.
Critical
Unreviewed
CVE-2022-45182
was published
Nov 12, 2022
Zoho ManageEngine Password Manager Pro before 12122, PAM360 before 5711, and Access Manager Plus...
Critical
Unreviewed
CVE-2022-43671
was published
Nov 12, 2022
Zoho ManageEngine Password Manager Pro before 12122, PAM360 before 5711, and Access Manager Plus...
Critical
Unreviewed
CVE-2022-43672
was published
Nov 12, 2022
** UNSUPPORTED WHEN ASSIGNED ** A remote unauthenticated insecure deserialization vulnerability...
Critical
Unreviewed
CVE-2022-38650
was published
Nov 12, 2022
** UNSUPPORTED WHEN ASSIGNED ** A security filter misconfiguration exists in VMware Hyperic...
Critical
Unreviewed
CVE-2022-38651
was published
Nov 12, 2022
** UNSUPPORTED WHEN ASSIGNED ** A remote insecure deserialization vulnerability exixsts in VMWare...
Critical
Unreviewed
CVE-2022-38652
was published
Nov 12, 2022
A vulnerability classified as critical has been found in eolinker goku_lite. This affects an...
Critical
Unreviewed
CVE-2022-3947
was published
Nov 11, 2022
Improper buffer restrictions in the Hyperscan library maintained by Intel(R) all versions...
Critical
Unreviewed
CVE-2022-29486
was published
Nov 11, 2022
Improper authentication in firmware for Intel(R) AMT before versions 11.8.93, 11.22.93, 11.12.93,...
Critical
Unreviewed
CVE-2022-26845
was published
Nov 11, 2022
Out-of-bounds write in some Intel(R) XMM(TM) 7560 Modem software before version M2_7560_R_01.2146...
Critical
Unreviewed
CVE-2022-26513
was published
Nov 11, 2022
A vulnerability classified as critical was found in eolinker goku_lite. This vulnerability...
Critical
Unreviewed
CVE-2022-3948
was published
Nov 11, 2022
ProTip!
Advisories are also available from the
GraphQL API