GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,306 advisories
Filter by severity
In getNotificationBuilder of CarrierServiceStateTracker.java, there is a possible permission...
Moderate
Unreviewed
CVE-2020-0397
was published
May 24, 2022
In showLimitedSimFunctionWarningNotification of NotificationMgr.java, there is a possible...
Moderate
Unreviewed
CVE-2020-0399
was published
May 24, 2022
In various places in Telephony, there is a possible permission bypass due to an unsafe...
Moderate
Unreviewed
CVE-2020-0396
was published
May 24, 2022
In showNotification of EmergencyCallbackModeService.java, there is a possible permission bypass...
Moderate
Unreviewed
CVE-2020-0395
was published
May 24, 2022
In createSaveNotification of RecordingService.java, there is a possible permission bypass due to...
Moderate
Unreviewed
CVE-2020-0389
was published
May 24, 2022
In PackageManager, there is a missing permission check. This could lead to local information...
Moderate
Unreviewed
CVE-2020-0288
was published
May 24, 2022
A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. Due to...
Moderate
Unreviewed
CVE-2020-13303
was published
May 24, 2022
GitLab before version 13.3.4 was vulnerable to an OAuth authorization scope change without user...
Moderate
Unreviewed
CVE-2020-13300
was published
May 24, 2022
A vulnerability was discovered in GitLab versions before 13.0.12, 13.1.10, 13.2.8 and 13.3.4....
Moderate
Unreviewed
CVE-2020-13318
was published
May 24, 2022
The rbd block device driver in drivers/block/rbd.c in the Linux kernel through 5.8.9 used...
Moderate
Unreviewed
CVE-2020-25284
was published
May 24, 2022
An issue was discovered on LG mobile devices with Android OS 10 software. The lguicc software ...
Critical
Unreviewed
CVE-2020-25282
was published
May 24, 2022
An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9.0, and 10 software. BT...
Critical
Unreviewed
CVE-2020-25283
was published
May 24, 2022
An issue was discovered in Hyland OnBase through 18.0.0.32 and 19.x through 19.8.9.1000. Client...
Moderate
Unreviewed
CVE-2020-25251
was published
May 24, 2022
SAP Marketing (Servlet), version-130,140,150, allows an authenticated attacker to invoke certain...
Moderate
Unreviewed
CVE-2020-6320
was published
May 24, 2022
Banking services from SAP 9.0 (Bank Analyzer), version - 500, and SAP S/4HANA for financial...
Moderate
Unreviewed
CVE-2020-6311
was published
May 24, 2022
In the COVIDSafe application through 1.0.21 for Android, unsafe use of the Bluetooth transport...
Low
Unreviewed
CVE-2020-14292
was published
May 24, 2022
u'Improper access control can lead signed process to guess pid of other processes and access...
High
Unreviewed
CVE-2019-10596
was published
May 24, 2022
An Incorrect Access Control vulnerability exists in /ucms/chk.php in UCMS 1.4.8. This results in...
Moderate
Unreviewed
CVE-2020-24981
was published
May 24, 2022
Clustered Data ONTAP versions prior to 9.3P19, 9.5P14, 9.6P9 and 9.7 are susceptible to a...
Moderate
Unreviewed
CVE-2020-8576
was published
May 24, 2022
The Teamwire application 5.3.0 for Android allows physically proximate attackers to exploit a...
Low
Unreviewed
CVE-2020-12621
was published
May 24, 2022
Openfind Mail2000 contains Broken Access Control vulnerability, which can be used to execute...
High
Unreviewed
CVE-2020-12776
was published
May 24, 2022
An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software....
High
Unreviewed
CVE-2020-25049
was published
May 24, 2022
The Bluetooth Low Energy Secure Manager Protocol (SMP) implementation in Texas Instruments...
Moderate
Unreviewed
CVE-2020-13593
was published
May 24, 2022
OX App Suite 7.10.3 and earlier has Incorrect Access Control via an /api/subscriptions request...
Moderate
Unreviewed
CVE-2020-12643
was published
May 24, 2022
In JetBrains YouTrack versions before 2020.3.4313, 2020.2.11008, 2020.1.11011, 2019.1.65514, 2019...
Moderate
Unreviewed
CVE-2020-24618
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API