GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,388 advisories
Filter by severity
BMC Control-M/Agent 7.0.00.000 has an Insecure File Copy.
High
Unreviewed
CVE-2019-19216
was published
May 24, 2022
The MSI installer in Zoom before 4.6.10 on Windows follows Symbolic Links.
High
Unreviewed
CVE-2020-11443
was published
May 24, 2022
A vulnerability in the application policy configuration of Cisco Firepower Threat Defense (FTD)...
Moderate
Unreviewed
CVE-2020-3312
was published
May 24, 2022
Improper access control in Groupfolders app 4.0.3 allowed to delete hidden directories when when...
Moderate
Unreviewed
CVE-2020-8153
was published
May 24, 2022
** DISPUTED ** An issue was discovered in FRRouting FRR (aka Free Range Routing) through 7.3.1....
Moderate
Unreviewed
CVE-2020-12831
was published
May 24, 2022
An issue was discovered in the "Ultimate Addons for Elementor" plugin before 1.24.2 for WordPress...
Moderate
Unreviewed
CVE-2020-13125
was published
May 24, 2022
An issue was discovered in AODDriver2.sys in AMD OverDrive. The vulnerable driver exposes a wrmsr...
High
Unreviewed
CVE-2019-7247
was published
May 24, 2022
An issue was discovered in atillk64.sys in AMD ATI Diagnostics Hardware Abstraction Sys...
Moderate
Unreviewed
CVE-2019-7246
was published
May 24, 2022
An elevation of privilege vulnerability exists when Microsoft Edge does not properly enforce...
Moderate
Unreviewed
CVE-2020-1056
was published
May 24, 2022
A Denial Of Service vulnerability exists when Connected User Experiences and Telemetry Service...
Low
Unreviewed
CVE-2020-1084
was published
May 24, 2022
A denial of service vulnerability exists when Connected User Experiences and Telemetry Service...
Low
Unreviewed
CVE-2020-1123
was published
May 24, 2022
In Pydio Cells 2.0.4, once an authenticated user shares a file selecting the create a public link...
Moderate
Unreviewed
CVE-2020-12848
was published
May 24, 2022
An issue was discovered in LinuxTV xawtv before 3.107. The function dev_open() in v4l-conf.c does...
Low
Unreviewed
CVE-2020-13696
was published
May 24, 2022
An access issue was addressed with improved access restrictions. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2020-9851
was published
May 24, 2022
An exposure of sensitive information flaw was found in Ansible Tower before version 3.7.1....
Low
Unreviewed
CVE-2020-10782
was published
May 24, 2022
Mattermost Server allows System Admin to modify LDAP account names and email addresses
Low
CVE-2016-11077
was published
for
github.com/mattermost/mattermost-server
(Go)
May 24, 2022
An issue was discovered in Mattermost Server before 5.10.0, 5.9.1, 5.8.2, and 4.10.9. A non...
Moderate
Unreviewed
CVE-2019-20869
was published
May 24, 2022
An issue was discovered in Mattermost Server before 5.9.0, 5.8.1, 5.7.3, and 4.10.8. It allows a...
Moderate
Unreviewed
CVE-2019-20875
was published
May 24, 2022
An issue was discovered in Mattermost Server before 5.9.0, 5.8.1, 5.7.3, and 4.10.8. Users can...
Moderate
Unreviewed
CVE-2019-20876
was published
May 24, 2022
An issue was discovered in Mattermost Server before 5.8.0. It allows attackers to partially...
Moderate
Unreviewed
CVE-2019-20884
was published
May 24, 2022
An issue was discovered in Mattermost Server before 5.8.0, 5.7.2, 5.6.5, and 4.10.7. Changes to e...
Moderate
Unreviewed
CVE-2019-20879
was published
May 24, 2022
An issue was discovered in Mattermost Server before 5.8.0, when Town Square is set to Read-Only....
Low
Unreviewed
CVE-2019-20883
was published
May 24, 2022
An issue was discovered in Mattermost Server before 5.7.1, 5.6.4, 5.5.3, and 4.10.6. It does not...
Moderate
Unreviewed
CVE-2019-20887
was published
May 24, 2022
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5...
Low
Unreviewed
CVE-2020-4414
was published
May 24, 2022
Some sensitive cookies in SAP Disclosure Management, version 10.1, are missing HttpOnly flag,...
Moderate
Unreviewed
CVE-2020-6267
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API