GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,121
NuGet
735
pip
3,942
Pub
12
RubyGems
945
Rust
1,018
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,299 advisories
Filter by severity
An issue was discovered in Cleo LexiCom 5.5.0.0. The requirement for the sender of an AS2 message...
Moderate
Unreviewed
CVE-2021-33577
was published
May 24, 2022
Insufficient policy enforcement in image handling in iOS in Google Chrome on iOS prior to 92.0...
Moderate
Unreviewed
CVE-2021-30583
was published
May 24, 2022
IBM Cloud Pak for Security (CP4S) 1.5.0.0, 1.5.1.0, 1.6.0.0, 1.6.1.0, 1.7.0.0, and 1.7.1.0 could...
Moderate
Unreviewed
CVE-2021-20541
was published
May 24, 2022
A vulnerability in Cisco Connected Mobile Experiences (CMX) API authorizations could allow an...
Moderate
Unreviewed
CVE-2021-1143
was published
May 24, 2022
This issue was addressed with improved checks. This issue is fixed in Security Update 2022-003...
Moderate
Unreviewed
CVE-2022-22616
was published
May 27, 2022
In FreeBSD 12.2-STABLE before r369346, 11.4-STABLE before r369345, 12.2-RELEASE before p4 and 11...
Moderate
Unreviewed
CVE-2020-25580
was published
May 24, 2022
IBM UrbanCode Deploy (UCD) 6.2.7.9, 7.0.5.4, and 7.1.1.1 could allow an authenticated user to...
Moderate
Unreviewed
CVE-2020-4848
was published
May 24, 2022
Incorrect authorization in GitLab EE affecting all versions from 12.0 before 14.9.5, all versions...
Moderate
Unreviewed
CVE-2022-1935
was published
Jun 7, 2022
Improper authorization vulnerability in Tizen factory reset policy prior to Firmware update JUL...
Moderate
Unreviewed
CVE-2021-25433
was published
May 24, 2022
A remote disclosure of sensitive information vulnerability was discovered in Aruba ClearPass...
Moderate
Unreviewed
CVE-2021-29141
was published
May 24, 2022
A remote disclosure of sensitive information vulnerability was discovered in Aruba ClearPass...
Moderate
Unreviewed
CVE-2021-29144
was published
May 24, 2022
IBM Cloud Pak for Security (CP4S) 1.5.0.0, 1.5.1.0, 1.6.0.0, 1.6.1.0, 1.7.0.0, and 1.7.1.0 could...
Moderate
Unreviewed
CVE-2021-20539
was published
May 24, 2022
NVIDIA camera firmware contains a vulnerability where an unauthorized modification by camera...
Moderate
Unreviewed
CVE-2021-1113
was published
May 24, 2022
Insufficient policy enforcement in Content Security Policy in Google Chrome prior to 91.0.4472.77...
Moderate
Unreviewed
CVE-2021-30532
was published
May 24, 2022
Improper access control in system firmware for some Intel(R) NUCs may allow a privileged...
Moderate
Unreviewed
CVE-2021-0067
was published
May 24, 2022
By default, the WP Page Builder WordPress plugin before 1.2.4 allows subscriber-level users to...
Moderate
Unreviewed
CVE-2021-24207
was published
May 24, 2022
IBM Cloud Pak for Security (CP4S) 1.5.0.0, 1.5.1.0, 1.6.0.0, 1.6.1.0, 1.7.0.0, and 1.7.1.0 could...
Moderate
Unreviewed
CVE-2021-20540
was published
May 24, 2022
An improper access control vulnerability in FortiManager and FortiAnalyzer GUI interface 7.0.0, 6...
Moderate
Unreviewed
CVE-2021-32587
was published
May 24, 2022
An improper access control vulnerability in ScreenOffActivity in Samsung Notes prior to version 4...
Moderate
Unreviewed
CVE-2021-25405
was published
May 24, 2022
In memory management driver, there is a possible information disclosure due to a missing...
Moderate
Unreviewed
CVE-2021-0415
was published
May 24, 2022
Improper Access Control in Jfinal CMS v4.7.1 and earlier allows remote attackers to obtain...
Moderate
Unreviewed
CVE-2020-19154
was published
May 24, 2022
This issue was addressed with improved data protection. This issue is fixed in macOS Big Sur 11.4...
Moderate
Unreviewed
CVE-2021-30751
was published
May 24, 2022
The REST API in Archer Platform 6.x before 6.11 (6.11.0.0) contains an Authorization Bypass...
Moderate
Unreviewed
CVE-2022-30585
was published
May 27, 2022
In system properties, there is a possible information disclosure due to a missing permission...
Moderate
Unreviewed
CVE-2021-0681
was published
May 24, 2022
Access control issue in AlekSIS-Core
Moderate
CVE-2022-29773
was published
for
aleksis-core
(pip)
Jun 4, 2022
ProTip!
Advisories are also available from the
GraphQL API