GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,337 advisories
Filter by severity
An access control issue in the component form2WlAc.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210...
Moderate
Unreviewed
CVE-2024-57678
was published
Jan 16, 2025
An access control issue in the component form2RepeaterSetup.cgi of D-Link 816A2_FWv1...
Moderate
Unreviewed
CVE-2024-57679
was published
Jan 16, 2025
An access control issue in the component form2PortriggerRule.cgi of D-Link 816A2_FWv1...
Moderate
Unreviewed
CVE-2024-57680
was published
Jan 16, 2025
An access control issue in the component form2alg.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210...
Moderate
Unreviewed
CVE-2024-57681
was published
Jan 16, 2025
On-Premises Data Gateway Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2025-21403
was published
Jan 14, 2025
Incorrect Authorization vulnerability in Drupal Pages Restriction Access allows Forceful Browsing...
Moderate
Unreviewed
CVE-2024-13302
was published
Jan 9, 2025
Canlineapp Online 1.1 is vulnerable to Broken Access Control and allows users with the Auditor...
Moderate
Unreviewed
CVE-2024-56114
was published
Jan 9, 2025
Incorrect Authorization vulnerability in Drupal Responsive and off-canvas menu allows Forceful...
Moderate
Unreviewed
CVE-2024-13266
was published
Jan 9, 2025
Incorrect Authorization vulnerability in Drupal OhDear Integration allows Forceful Browsing.This...
Moderate
Unreviewed
CVE-2024-13290
was published
Jan 9, 2025
Incorrect Authorization vulnerability in Drupal Freelinking allows Forceful Browsing.This issue...
Moderate
Unreviewed
CVE-2024-13270
was published
Jan 9, 2025
Incorrect Authorization vulnerability in Drupal Content Entity Clone allows Forceful Browsing...
Moderate
Unreviewed
CVE-2024-13271
was published
Jan 9, 2025
Incorrect Authorization vulnerability in Drupal Commerce View Receipt allows Forceful Browsing...
Moderate
Unreviewed
CVE-2024-13257
was published
Jan 9, 2025
The WebChannel API, which is used to transport various information across processes, did not...
Moderate
Unreviewed
CVE-2025-0237
was published
Jan 7, 2025
Some Honor products are affected by incorrect privilege assignment vulnerability, successful...
Moderate
Unreviewed
CVE-2024-47148
was published
Dec 26, 2024
IBM AIX 7.2, 7.3, VIOS 3.1, and 4.1
could allow a non-privileged local user to exploit a...
Moderate
Unreviewed
CVE-2024-47102
was published
Dec 25, 2024
In JetBrains TeamCity before 2024.12 improper access control allowed viewing details of...
Moderate
Unreviewed
CVE-2024-56348
was published
Dec 20, 2024
In JetBrains TeamCity before 2024.12 build credentials allowed unauthorized viewing of projects
Moderate
Unreviewed
CVE-2024-56350
was published
Dec 20, 2024
Arista NG Firewall uvm_login Incorrect Authorization Privilege Escalation Vulnerability. This...
Moderate
Unreviewed
CVE-2024-12831
was published
Dec 20, 2024
Elasticsearch Incorrect Authorization vulnerability
Moderate
CVE-2024-12539
was published
for
org.elasticsearch:elasticsearch
(Maven)
Dec 17, 2024
An issue was discovered in GitLab CE/EE affecting all versions from 15.0 prior to 17.4.6, 17.5...
Moderate
Unreviewed
CVE-2024-8650
was published
Dec 16, 2024
An issue has been discovered in GitLab CE/EE affecting all versions from 16.9 before 17.4.6, 17.5...
Moderate
Unreviewed
CVE-2024-8116
was published
Dec 16, 2024
The issue was addressed with improved permissions logic. This issue is fixed in macOS Sequoia 15...
Moderate
Unreviewed
CVE-2024-54495
was published
Dec 12, 2024
Mattermost versions 9.7.x <= 9.7.5, 9.8.x <= 9.8.2 and 9.9.x <= 9.9.2 fail to properly propagate...
Moderate
Unreviewed
CVE-2024-12247
was published
Dec 5, 2024
Incorrect authorization in permission validation component in Devolutions Server 2024.3.6.0 and...
Moderate
Unreviewed
CVE-2024-12148
was published
Dec 4, 2024
Incorrect authorization in the permission component in Devolutions Server 2024.3.7.0 and earlier...
Moderate
Unreviewed
CVE-2024-12196
was published
Dec 4, 2024
ProTip!
Advisories are also available from the
GraphQL API