GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,873
Erlang
37
GitHub Actions
36
Go
2,519
Maven
5,000+
npm
4,156
NuGet
736
pip
3,956
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,336 advisories
Filter by severity
In ActivityManager, there is a possible disclosure of installed packages due to a missing...
Low
Unreviewed
CVE-2022-20315
was published
Aug 13, 2022
IBM QRadar SIEM 7.3, 7.4, and 7.5 could allow a local user to obtain sensitive information from...
Moderate
Unreviewed
CVE-2022-22424
was published
Jul 21, 2022
In Content, there is a possible way to check if an account exists on the device due to a missing...
Moderate
Unreviewed
CVE-2022-20301
was published
Aug 13, 2022
Implicit Intent hijacking vulnerability in Finder prior to SMR Jul-2022 Release 1 allow allows...
Moderate
Unreviewed
CVE-2022-30758
was published
Jul 13, 2022
In Telecomm, there is a possible disclosure of registered self managed phone accounts due to a...
Low
Unreviewed
CVE-2022-20310
was published
Aug 13, 2022
In Content, there is a possible way to check if the given account exists on the device due to a...
Moderate
Unreviewed
CVE-2022-20300
was published
Aug 13, 2022
An issue has been discovered in GitLab affecting all versions starting from 12.4 before 14.10.5,...
Moderate
Unreviewed
CVE-2022-2270
was published
Jul 2, 2022
Improper use of a unique device ID in unprotected SecSoterService prior to SMR Jul-2022 Release 1...
Low
Unreviewed
CVE-2022-30753
was published
Jul 13, 2022
Incorrect permission management in Devolutions Server before 2022.2 allows a new user with a...
High
Unreviewed
CVE-2022-33996
was published
Jul 8, 2022
There is an unauthorized service in the system service. Since the component does not have...
High
Unreviewed
CVE-2022-20436
was published
Oct 12, 2022
Incorrect permissions for the folder C:\ProgramData\NoMachine\var\uninstall of Nomachine v7.9.2...
High
Unreviewed
CVE-2022-34043
was published
Jun 30, 2022
When installed as Windows service MELAG FTP Server 2.2.0.4 is run as SYSTEM user, which grants...
High
Unreviewed
CVE-2021-41635
was published
Jun 25, 2022
The application security module has a vulnerability in permission assignment. Successful...
Critical
Unreviewed
CVE-2022-34737
was published
Jul 13, 2022
Incorrect default configuration for trusted IP header in Mattermost version 6.7.0 and earlier...
Moderate
Unreviewed
CVE-2022-2366
was published
Jul 13, 2022
There is a Unauthorized service in the system service, may cause the system reboot. Since the...
High
Unreviewed
CVE-2022-20435
was published
Oct 12, 2022
CVA6 commit 909d85a gives incorrect permission to use special multiplication units when the...
High
Unreviewed
CVE-2022-33023
was published
Jun 30, 2022
Incorrect default permissions in the installation binaries for Intel(R) SEAPI all versions may...
High
Unreviewed
CVE-2022-26344
was published
Aug 19, 2022
A flaw was found in AMQ Broker Operator 7.9.4 installed via UI using OperatorHub where a low...
High
Unreviewed
CVE-2022-1833
was published
Jun 22, 2022
A privilege escalation vulnerability exists in the Windows version of installation for Advantech...
High
Unreviewed
CVE-2021-21912
was published
Dec 23, 2021
Weak access control permissions in MELAG FTP Server 2.2.0.4 allow the "Everyone" group to read...
High
Unreviewed
CVE-2021-41637
was published
Jun 25, 2022
A permission issue affects users that deployed the shipped version of the Checkmk Debian package....
High
Unreviewed
CVE-2022-33912
was published
Jun 18, 2022
In onCreateContextMenu of NetworkProviderSettings.java, there is a possible way for non-owner...
High
Unreviewed
CVE-2022-20137
was published
Jun 16, 2022
An issue was discovered in Couchbase Server before 7.0.4. Operations may succeed on a collection...
High
Unreviewed
CVE-2022-32562
was published
Jun 14, 2022
Incorrect default permissions for the Intel(R) Support Android application before 21.07.40 may...
Moderate
Unreviewed
CVE-2022-27500
was published
Aug 19, 2022
Power Distribution Units running on Powertek firmware (multiple brands) before 3.30.30 have an...
Critical
Unreviewed
CVE-2022-33175
was published
Jun 14, 2022
ProTip!
Advisories are also available from the
GraphQL API