GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,517
Maven
5,000+
npm
4,150
NuGet
736
pip
3,952
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,003 advisories
Filter by severity
An information leak in YKC Tokushima_awayokocho Line v13.6.1 allows attackers to obtain the...
Moderate
Unreviewed
CVE-2023-39043
was published
Sep 18, 2023
An information leak in Cheese Cafe Line v13.6.1 allows attackers to obtain the channel access...
Moderate
Unreviewed
CVE-2023-39040
was published
Sep 18, 2023
An information leak in Camp Style Project Line v13.6.1 allows attackers to obtain the channel...
Moderate
Unreviewed
CVE-2023-39039
was published
Sep 18, 2023
A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) message processing...
Moderate
Unreviewed
CVE-2022-20917
was published
Sep 15, 2023
A vulnerability has been identified in SIMATIC PCS neo (Administration Console) V4.0 (All...
Moderate
Unreviewed
CVE-2023-38558
was published
Sep 14, 2023
DHCP Server Service Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2023-38152
was published
Sep 12, 2023
Windows TCP/IP Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2023-38160
was published
Sep 12, 2023
Microsoft Word Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2023-36761
was published
Sep 12, 2023
IBM Aspera Faspex 5.0.5 does not restrict or incorrectly restricts access to a resource from an...
Moderate
Unreviewed
CVE-2023-24965
was published
Sep 8, 2023
Minio vulnerable to Privilege Escalation on Windows via Path separator manipulation
High
CVE-2023-28433
was published
for
github.com/minio/minio
(Go)
Sep 6, 2023
Sensitive information disclosure due to excessive collection of system information. The following...
Moderate
Unreviewed
CVE-2023-41745
was published
Aug 31, 2023
Excessive attack surface due to binding to an unrestricted IP address. The following products are...
Moderate
Unreviewed
CVE-2023-41742
was published
Aug 31, 2023
An issue was discovered in TechView LA-5570 Wireless Gateway 1.0.19_T53, allows physical...
Moderate
Unreviewed
CVE-2023-34725
was published
Aug 29, 2023
A vulnerability has been identified in ioLogik 4000 Series (ioLogik E4200) firmware versions v1.6...
Moderate
Unreviewed
CVE-2023-4230
was published
Aug 24, 2023
The InfiniteWP Client plugin for WordPress is vulnerable to Sensitive Information Exposure in...
Moderate
Unreviewed
CVE-2023-2916
was published
Aug 21, 2023
Exposure of Sensitive Information vulnerability in AcyMailing Enterprise component for Joomla. It...
Moderate
Unreviewed
CVE-2023-39974
was published
Aug 17, 2023
Dell Storage Integration Tools for VMware (DSITV) 06.01.00.016 contain an information disclosure...
Moderate
Unreviewed
CVE-2023-39250
was published
Aug 16, 2023
Vulnerability of input parameters being not strictly verified in the AMS module. Successful...
High
Unreviewed
CVE-2023-39383
was published
Aug 13, 2023
An information leak in PHPJabbers Yacht Listing Script v1.0 allows attackers to export clients'...
High
Unreviewed
CVE-2023-38830
was published
Aug 10, 2023
Exposure of sensitive information in Zoom Client SDK's before 5.15.5 may allow an authenticated...
High
Unreviewed
CVE-2023-39214
was published
Aug 9, 2023
ZKTeco BioAccess IVS v3.3.1 allows unauthenticated attackers to obtain sensitive information...
High
Unreviewed
CVE-2023-38955
was published
Aug 3, 2023
Some API routes exists in Control ID IDSecure 4.7.26.0 and prior, exfiltrating sensitive...
Moderate
Unreviewed
CVE-2023-33368
was published
Aug 3, 2023
In CODESYS Development System 3.5.9.0 to 3.5.17.0 and CODESYS Scripting 4.0.0.0 to 4.1.0.0 unsafe...
High
Unreviewed
CVE-2023-3670
was published
Jul 28, 2023
Secret displayed without masking by Chef Identity Plugin
Low
CVE-2023-39155
was published
for
org.jenkins-ci.plugins:chef-identity
(Maven)
Jul 26, 2023
An issue has been discovered in GitLab DAST scanner affecting all versions starting from 3.0.29...
Moderate
Unreviewed
CVE-2023-1401
was published
Jul 26, 2023
ProTip!
Advisories are also available from the
GraphQL API