GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,388 advisories
Filter by severity
An issue was discovered in MediaWiki before 1.31.13 and 1.32.x through 1.35.x before 1.35.2. When...
Moderate
Unreviewed
CVE-2021-30152
was published
May 24, 2022
An issue was discovered in MediaWiki before 1.31.12 and 1.32.x through 1.35.x before 1.35.2....
Moderate
Unreviewed
CVE-2021-30156
was published
May 24, 2022
OpenIAM before 4.2.0.3 has Incorrect Access Control for the Create User, Modify User Permissions,...
Critical
Unreviewed
CVE-2020-13421
was published
May 24, 2022
Grafana Enterprise 7.2.x and 7.3.x before 7.3.10 and 7.4.x before 7.4.5 allows a dashboard editor...
High
Unreviewed
CVE-2021-27962
was published
May 24, 2022
Nessus Agent versions 7.2.0 through 8.2.2 were found to inadvertently capture the IAM role...
Moderate
Unreviewed
CVE-2021-20077
was published
May 24, 2022
Multiple files and folders in Utimaco SecurityServer 4.20.0.4 and 4.31.1.0. are installed with...
High
Unreviewed
CVE-2020-26155
was published
May 24, 2022
Portainer 1.24.1 and earlier is affected by an insecure permissions vulnerability that may lead...
High
Unreviewed
CVE-2020-24263
was published
May 24, 2022
Windows 10 Update Assistant Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2021-27070
was published
May 24, 2022
An issue was discovered in Bloomreach Experience Manager (brXM) 4.1.0 through 14.2.2. It allows...
High
Unreviewed
CVE-2020-14987
was published
May 24, 2022
In various methods of WifiNetworkSuggestionsManager.java, there is a possible modification of...
High
Unreviewed
CVE-2021-0390
was published
May 24, 2022
In deletePackageVersionedInternal of PackageManagerService.java, there is a possible way to exit...
High
Unreviewed
CVE-2020-0025
was published
May 24, 2022
SonLogger before 6.4.1 is affected by user creation with any user permissions profile (e.g.,...
High
Unreviewed
CVE-2021-27963
was published
May 24, 2022
An issue was discovered in channels/chan_sip.c in Sangoma Asterisk through 13.29.1, through 16.6...
Moderate
Unreviewed
CVE-2019-18351
was published
May 24, 2022
In webERP 4.15, the ManualContents.php file allows users to specify the "Language" parameter,...
Moderate
Unreviewed
CVE-2020-22474
was published
May 24, 2022
HMI/SCADA iFIX (Versions 6.1 and prior) allows a local authenticated user to modify system-wide...
Moderate
Unreviewed
CVE-2019-18255
was published
May 24, 2022
HMI/SCADA iFIX (Versions 6.1 and prior) allows a local authenticated user to modify system-wide...
Moderate
Unreviewed
CVE-2019-18243
was published
May 24, 2022
In 74cms version 5.0.1, there is a remote code execution vulnerability in /Application/Admin...
Critical
Unreviewed
CVE-2020-35339
was published
May 24, 2022
Improper access control vulnerability in ELECOM LD-PS/U1 allows remote attackers to change the...
High
Unreviewed
CVE-2021-20643
was published
May 24, 2022
A Incorrect Permission Assignment for Critical Resource vulnerability in skuba of SUSE CaaS...
Moderate
Unreviewed
CVE-2020-8029
was published
May 24, 2022
Arbitrary Process Execution vulnerability in McAfee Total Protection (MTP) prior to 16.0.30...
High
Unreviewed
CVE-2021-23874
was published
May 24, 2022
In onTargetSelected of ResolverActivity.java, there is a possible settings bypass allowing an app...
High
Unreviewed
CVE-2021-0334
was published
May 24, 2022
Dell EMC PowerScale OneFS versions 8.1.2 and 8.2.2 contain an Incorrect Permission Assignment for...
High
Unreviewed
CVE-2020-26194
was published
May 24, 2022
Dell EMC PowerScale OneFS versions 8.1.0-9.1.0 contain a Backup/Restore Privilege implementation...
Moderate
Unreviewed
CVE-2020-26196
was published
May 24, 2022
Zulip Desktop before 5.0.0 allows attackers to perform recording via the webcam and microphone...
Moderate
Unreviewed
CVE-2020-10858
was published
May 24, 2022
An issue was discovered in Psyprax before 3.2.2. The file %PROGRAMDATA%\Psyprax32\PPScreen.ini...
Moderate
Unreviewed
CVE-2020-10553
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API