GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
987 advisories
Filter by severity
ownCloud Server before 10.3.0 allows an attacker, who has received non-administrative access to a...
Moderate
Unreviewed
CVE-2020-36251
was published
May 24, 2022
An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 software in all versions...
Moderate
Unreviewed
CVE-2020-35557
was published
May 24, 2022
Improper Access Control in attribute in McAfee Endpoint Security (ENS) for Windows prior to 10.7...
Moderate
Unreviewed
CVE-2021-23880
was published
May 24, 2022
Improper Access Control vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7...
Moderate
Unreviewed
CVE-2021-23882
was published
May 24, 2022
Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.30 allows a...
Moderate
Unreviewed
CVE-2021-23873
was published
May 24, 2022
Overlayfs did not properly perform permission checking when copying up files in an overlayfs and...
Moderate
Unreviewed
CVE-2020-16120
was published
May 24, 2022
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a client-side control...
Moderate
Unreviewed
CVE-2020-27268
was published
May 24, 2022
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a client-side control...
Moderate
Unreviewed
CVE-2020-27266
was published
May 24, 2022
There is a privilege escalation vulnerability in SMC2.0 product. Some files in a directory of a...
Moderate
Unreviewed
CVE-2020-9209
was published
May 24, 2022
A vulnerability in the upgrade component of Cisco AnyConnect Secure Mobility Client could allow...
Moderate
Unreviewed
CVE-2021-1258
was published
May 24, 2022
Multiple Cisco products are affected by a vulnerability with TCP Fast Open (TFO) when used in...
Moderate
Unreviewed
CVE-2021-1224
was published
May 24, 2022
In several functions of GlobalScreenshot.java, there is a possible permission bypass due to an...
Moderate
Unreviewed
CVE-2021-0304
was published
May 24, 2022
An Incorrect Access Control issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53.
Moderate
Unreviewed
CVE-2018-11008
was published
May 24, 2022
Citrix Secure Mail for Android before 20.11.0 suffers from improper access control allowing...
Moderate
Unreviewed
CVE-2020-8275
was published
May 24, 2022
IBM Cloud Pak System 2.3 has insufficient logout controls which could allow an authenticated...
Moderate
Unreviewed
CVE-2020-4919
was published
May 24, 2022
The %PROGRAMDATA%\1E\Client directory in 1E Client 5.0.0.745 and 4.1.0.267 allows remote...
Moderate
Unreviewed
CVE-2020-27643
was published
May 24, 2022
In NCH Express Accounts 8.24 and earlier, an authenticated low-privilege user can enter a crafted...
Moderate
Unreviewed
CVE-2020-13474
was published
May 24, 2022
There is a privilege escalation vulnerability on some Huawei smart phones due to design defects....
Moderate
Unreviewed
CVE-2020-9119
was published
May 24, 2022
A flaw was found in the way samba handled file and directory permissions. An authenticated user...
Moderate
Unreviewed
CVE-2020-14318
was published
May 24, 2022
A vulnerability in the Traversal Using Relays around NAT (TURN) server component of Cisco...
Moderate
Unreviewed
CVE-2020-3482
was published
May 24, 2022
A vulnerability in the user management functionality of Cisco IoT Field Network Director (FND)...
Moderate
Unreviewed
CVE-2020-26080
was published
May 24, 2022
A vulnerability in the access control functionality of Cisco IoT Field Network Director (FND)...
Moderate
Unreviewed
CVE-2020-26077
was published
May 24, 2022
Insufficient control flow management in subsystem for Intel(R) CSME versions before 11.8.80, 11...
Moderate
Unreviewed
CVE-2020-8745
was published
May 24, 2022
Protection mechanism failure in Intel(R) Ethernet 700 Series Controllers before version 7.3 may...
Moderate
Unreviewed
CVE-2020-8690
was published
May 24, 2022
A logic issue in the firmware of the Intel(R) Ethernet 700 Series Controllers may allow a...
Moderate
Unreviewed
CVE-2020-8691
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API