GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,121
NuGet
735
pip
3,942
Pub
12
RubyGems
945
Rust
1,018
Swift
39
Unreviewed advisories
All unreviewed
5,000+
2,779 advisories
Filter by severity
There is a security protection bypass vulnerability with the modem.Successful exploitation of...
High
Unreviewed
CVE-2021-37109
was published
Feb 11, 2022
Improper access controls in the B. Braun Melsungen AG SpaceCom Version L81/U61 and earlier, and...
Moderate
Unreviewed
CVE-2020-25160
was published
Apr 15, 2022
Improper access control in software for Intel(R) PROSet/Wireless Wi-Fi and Killer(TM) Wi-Fi in...
Moderate
Unreviewed
CVE-2021-0171
was published
Feb 11, 2022
Improper access control in firmware for Intel(R) PROSet/Wireless Wi-Fi in multiple operating...
High
Unreviewed
CVE-2021-0164
was published
Feb 11, 2022
IBM Security Verify Access 10.0.0.0, 10.0.1.0 and 10.0.2.0 with the advanced access control...
Critical
Unreviewed
CVE-2021-39070
was published
Feb 3, 2022
antd-admin 5.5.0 is affected by an incorrect access control vulnerability. Unauthorized access to...
High
Unreviewed
CVE-2021-46371
was published
Feb 15, 2022
An issue was discovered in Delta RM 1.2. The /risque/risque/workflow/reset endpoint is lacking...
Moderate
Unreviewed
CVE-2021-44836
was published
Jan 19, 2022
Affected versions of Atlassian Jira Service Management Server and Data Center allow authenticated...
Moderate
Unreviewed
CVE-2021-43948
was published
Feb 16, 2022
There is an unauthorized rewriting vulnerability with the memory access management module on ACPU...
Moderate
Unreviewed
CVE-2021-37115
was published
Feb 11, 2022
Sangoma Technologies Corporation Switchvox Version 102409 is affected by an information...
Moderate
Unreviewed
CVE-2021-45310
was published
Feb 15, 2022
Improper access control in software for Intel(R) PROSet/Wireless Wi-Fi and Killer(TM) Wi-Fi in...
Moderate
Unreviewed
CVE-2021-0167
was published
Feb 11, 2022
Joomla! Core is prone to a security bypass vulnerability. Exploiting this issue may allow...
Critical
Unreviewed
CVE-2010-1435
was published
Apr 21, 2022
An issue was discovered in dst-admin v1.3.0. The product has an unauthorized arbitrary file...
High
Unreviewed
CVE-2021-44586
was published
Jan 11, 2022
Allwinner R818 SoC Android Q SDK V1.0 is affected by an incorrect access control vulnerability...
High
Unreviewed
CVE-2021-38789
was published
Jan 20, 2022
Improper access control in the Intel(R) Advisor software before version 2021.2 may allow an...
High
Unreviewed
CVE-2021-23152
was published
Feb 11, 2022
An issue has recently been discovered in Arista EOS where, under certain conditions, the service...
High
Unreviewed
CVE-2021-28507
was published
Jan 15, 2022
** DISPUTED ** ecjia-daojia 1.38.1-20210202629 is vulnerable to information leakage via content...
High
Unreviewed
CVE-2022-27055
was published
Apr 20, 2022
Depending on the configuration of the route permission table in file 'saprouttab', it is possible...
Critical
Unreviewed
CVE-2022-27668
was published
Jun 15, 2022
Mitel 6800 and 6900 Series SIP phone devices through 2022-04-27 have "undocumented functionality....
High
Unreviewed
CVE-2022-29855
was published
May 12, 2022
It has been reported that any Orion user, e.g. guest accounts can query the Orion.UserSettings...
Moderate
Unreviewed
CVE-2021-35248
was published
Dec 21, 2021
Incorrect Authorization in Getahead Direct Web Remoting
High
CVE-2007-0184
was published
for
org.directwebremoting:dwr
(Maven)
May 1, 2022
cups (Common Unix Printing System) 'Listen localhost:631' option not honored correctly which...
Moderate
Unreviewed
CVE-2012-6094
was published
Apr 23, 2022
Incorrect Authorization in Jenkins
Moderate
CVE-2017-2599
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
May 13, 2022
A vulnerability in the fabric infrastructure file system access control of Cisco Nexus 9000...
Moderate
Unreviewed
CVE-2021-1583
was published
May 24, 2022
A vulnerability in an API endpoint of Cisco Application Policy Infrastructure Controller (APIC)...
Critical
Unreviewed
CVE-2021-1577
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API