GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,862 advisories
Filter by severity
The Property module has a vulnerability in permission control.This vulnerability can be exploited...
Moderate
Unreviewed
CVE-2021-46785
was published
May 14, 2022
There is a Factory Reset Protection (FRP) bypass vulnerability on several smartphones. The system...
Moderate
Unreviewed
CVE-2018-7988
was published
May 13, 2022
Huawei smartphones with software Victoria-AL00 8.0.0.336a(C00) have an information leakage...
Low
Unreviewed
CVE-2018-7957
was published
May 13, 2022
Huawei Watch 2 with versions and earlier than OWDD.180707.001.E1 have an improper authorization...
Moderate
Unreviewed
CVE-2018-7926
was published
May 13, 2022
The radio module of some Huawei smartphones Emily-AL00A The versions before 8.1.0.171(C00) have a...
Moderate
Unreviewed
CVE-2018-7925
was published
May 13, 2022
Huawei Mate RS smartphones with the versions before NEO-AL00D 8.1.0.167(C786) have a lock-screen...
Moderate
Unreviewed
CVE-2018-7929
was published
May 13, 2022
An improper authorization vulnerability exists In Schneider Electric's 66074 MGE Network...
Critical
Unreviewed
CVE-2018-7245
was published
May 13, 2022
Aruba ClearPass Policy Manager guest authorization failure. Certain administrative operations in...
High
Unreviewed
CVE-2018-7079
was published
May 13, 2022
Ivanti Endpoint Security (formerly HEAT Endpoint Management and Security Suite) 8.5 Update 1 and...
High
Unreviewed
CVE-2018-6316
was published
May 13, 2022
NetApp 7-Mode Transition Tool allows users with valid credentials to access functions and...
Moderate
Unreviewed
CVE-2018-5489
was published
May 13, 2022
Necessary authorization checks for an authenticated user, resulting in escalation of privileges,...
High
Unreviewed
CVE-2018-2494
was published
May 13, 2022
In SAP Solution Manager 7.20, the role SAP_BPO_CONFIG gives the Business Process Operations (BPO)...
High
Unreviewed
CVE-2018-2361
was published
May 13, 2022
Incorrect Authorization in Jenkins
Moderate
CVE-2018-1999047
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
May 13, 2022
In Webgalamb through 7.0, system/ajax.php functionality is supposed to be available only to the...
Critical
Unreviewed
CVE-2018-19515
was published
May 13, 2022
The REST API component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports...
Critical
Unreviewed
CVE-2018-18815
was published
May 13, 2022
Incorrect enforcement of authorization checks in eDirectory prior to 9.1 SP2
High
Unreviewed
CVE-2018-17950
was published
May 13, 2022
An issue was discovered in Joomla! before 3.8.13. Inadequate checks on the tags search fields can...
Moderate
Unreviewed
CVE-2018-17857
was published
May 13, 2022
An issue was discovered in the Linux kernel before 4.8. Incorrect access checking in overlayfs...
Moderate
Unreviewed
CVE-2018-16597
was published
May 13, 2022
The Dell OpenManage Network Manager virtual appliance versions prior to 6.5.3 contain an improper...
High
Unreviewed
CVE-2018-15767
was published
May 13, 2022
Inova Partner 5.0.5-RELEASE, Build 0510-0906 and earlier allows authenticated users authorization...
Moderate
Unreviewed
CVE-2018-15693
was published
May 13, 2022
Inova Partner 5.0.5-RELEASE, Build 0510-0906 and earlier allows authenticated users authorization...
Moderate
Unreviewed
CVE-2018-15692
was published
May 13, 2022
An issue was discovered in Xen through 4.11.x. The DEBUGCTL MSR contains several debugging...
Moderate
Unreviewed
CVE-2018-15468
was published
May 13, 2022
Improper Authorization vulnerability in QTS 4.3.5 build 20181013, QTS 4.3.4 build 20181008, QTS 4...
High
Unreviewed
CVE-2018-14748
was published
May 13, 2022
Incorrect access control on ajaxdata.php in TerraMaster TOS version 3.1.03 allows attackers to...
High
Unreviewed
CVE-2018-13356
was published
May 13, 2022
Incorrect access control in nasapi in Buffalo TS5600D1206 version 3.61-0.10 allows attackers to...
Critical
Unreviewed
CVE-2018-13324
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API