GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,873 advisories
Filter by severity
Gotenberg provides a developer-friendly API to interact with powerful tools like Chromium and...
High
Unreviewed
CVE-2024-40639
was published
Jul 17, 2024
Sylius has a security vulnerability via adjustments API endpoint
High
CVE-2024-40633
was published
for
sylius/sylius
(Composer)
Jul 17, 2024
Vulnerability in the Oracle Process Manufacturing Financials product of Oracle E-Business Suite ...
High
Unreviewed
CVE-2024-21152
was published
Jul 17, 2024
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition...
High
Unreviewed
CVE-2024-21147
was published
Jul 17, 2024
Vulnerability in the Oracle Retail Xstore Office product of Oracle Retail Applications (component...
High
Unreviewed
CVE-2024-21136
was published
Jul 17, 2024
Sensitive information disclosure due to excessive privileges assigned to Acronis Agent. The...
High
Unreviewed
CVE-2022-45449
was published
Jul 16, 2024
An access control issue in Tmall_demo v2024.07.03 allows attackers to obtain sensitive information.
High
Unreviewed
CVE-2024-40554
was published
Jul 15, 2024
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Automattic Newspack...
High
Unreviewed
CVE-2024-37115
was published
Jul 10, 2024
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Membership Software...
High
Unreviewed
CVE-2024-37110
was published
Jul 10, 2024
An unauthenticated remote attacker can read out sensitive device information through a...
High
Unreviewed
CVE-2024-6421
was published
Jul 10, 2024
Exposure of Sensitive Information to an Unauthorized Actor in Samsung Galaxy SmartTag2 prior to 0...
High
Unreviewed
CVE-2024-32670
was published
Jul 10, 2024
A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801,...
High
Unreviewed
CVE-2023-52237
was published
Jul 9, 2024
Directus Allows Single Sign-On User Enumeration
High
CVE-2024-39896
was published
for
directus
(npm)
Jul 8, 2024
An issue was discovered in the CheckUser extension for MediaWiki through 1.42.1. It can expose...
High
Unreviewed
CVE-2024-40597
was published
Jul 7, 2024
An information disclosure vulnerability in ISPmanager v6.98.0 allows attackers to access...
High
Unreviewed
CVE-2024-39182
was published
Jul 6, 2024
Best House Rental Management System v1.0 was discovered to contain an arbitrary file read...
High
Unreviewed
CVE-2024-39210
was published
Jul 5, 2024
OpenStack Cinder, Glance, and Nova vulnerable to arbitrary file access
High
CVE-2024-32498
was published
for
cinder
(pip)
Jul 5, 2024
Information exposure vulnerability in the MRW plugin, in its 5.4.3 version, affecting the ...
High
Unreviewed
CVE-2024-6506
was published
Jul 4, 2024
Information exposure vulnerability in MESbook 20221021.03 version, the exploitation of which...
High
Unreviewed
CVE-2024-6426
was published
Jul 3, 2024
Incorrect access control in Teldat M1 v11.00.05.50.01 allows attackers to obtain sensitive...
High
Unreviewed
CVE-2024-36829
was published
Jun 26, 2024
In WhatsUp Gold versions released before 2023.1.3, a vulnerability exists in the TestController...
High
Unreviewed
CVE-2024-5010
was published
Jun 25, 2024
In the module "Axepta" (axepta) before 1.3.4 from Quadra Informatique for PrestaShop, a guest can...
High
Unreviewed
CVE-2024-34991
was published
Jun 25, 2024
CORSAIR iCUE 5.9.105 with iCUE Murals on Windows allows unprivileged users to insert DLL files in...
High
Unreviewed
CVE-2024-22002
was published
Jun 18, 2024
ProTip!
Advisories are also available from the
GraphQL API