GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,874 advisories
Filter by severity
Primary Source Verification in VerityStream MSOW Solutions before 3.1.1 allows an anonymous...
High
Unreviewed
CVE-2021-32077
was published
May 24, 2022
A flaw was found in tripleo-ansible version as shipped in Red Hat Openstack 16.1. The Ansible log...
High
Unreviewed
CVE-2021-31918
was published
May 24, 2022
The web interfaces of Buffalo WSR-2533DHPL2 firmware version <= 1.02 and WSR-2533DHP3 firmware...
High
Unreviewed
CVE-2021-20092
was published
May 24, 2022
Smartwares HOME easy <=1.0.9 is vulnerable to an unauthenticated database backup download and...
High
Unreviewed
CVE-2020-21997
was published
May 24, 2022
The ABUS Secvest wireless alarm system FUAA50000 (v3.01.17) fails to properly authenticate some...
High
Unreviewed
CVE-2020-28973
was published
May 24, 2022
Windows SMB Information Disclosure Vulnerability This CVE ID is unique from CVE-2021-28325.
High
Unreviewed
CVE-2021-28324
was published
May 24, 2022
SAP NetWeaver Master Data Management, versions - 710, 710.750, allows a malicious unauthorized...
High
Unreviewed
CVE-2021-21482
was published
May 24, 2022
The Jetpack Scan team identified a Local File Disclosure vulnerability in the Patreon WordPress...
High
Unreviewed
CVE-2021-24227
was published
May 24, 2022
In the AccessAlly WordPress plugin before 3.5.7, the file "resource/frontend/product/product...
High
Unreviewed
CVE-2021-24226
was published
May 24, 2022
Redmine before 4.0.8 and 4.1.x before 4.1.2 allows attackers to discover the names of private...
High
Unreviewed
CVE-2021-30163
was published
May 24, 2022
The REST API endpoint get_users in the User Profile Picture WordPress plugin before 2.5.0...
High
Unreviewed
CVE-2021-24170
was published
May 24, 2022
Advance configuration exposing Information Leakage vulnerability in Micro Focus Access Manager...
High
Unreviewed
CVE-2021-22506
was published
May 24, 2022
Certain NETGEAR devices are affected by disclosure of sensitive information. This affects RBW30...
High
Unreviewed
CVE-2021-29082
was published
May 24, 2022
Insertion of sensitive information into sent data vulnerability in synorelayd in Synology...
High
Unreviewed
CVE-2021-26566
was published
May 24, 2022
Windows Remote Procedure Call Information Disclosure Vulnerability
High
Unreviewed
CVE-2021-1734
was published
May 24, 2022
** UNSUPPORTED WHEN ASSIGNED ** In Directus 8.x through 8.8.1, an attacker can see all users in...
High
Unreviewed
CVE-2021-26593
was published
May 24, 2022
Acrobat Reader DC versions 2020.013.20066 (and earlier), 2020.001.30010 (and earlier) and 2017...
High
Unreviewed
CVE-2020-29075
was published
May 24, 2022
Allowing RTT frames to be linked with non randomized MAC address by comparing the sequence...
High
Unreviewed
CVE-2020-11281
was published
May 24, 2022
Key material used for TZ diag buffer encryption and other data related to log buffer is not wiped...
High
Unreviewed
CVE-2020-11198
was published
May 24, 2022
IBM Security Verify Information Queue 1.0.6 and 1.0.7 could allow a remote attacker to obtain...
High
Unreviewed
CVE-2021-20409
was published
May 24, 2022
An information disclosure issue exists in henriquedornas 5.2.17 because an attacker can dump...
High
Unreviewed
CVE-2021-26939
was published
May 24, 2022
IBM Security Identity Governance and Intelligence 5.2.6 could disclose sensitive information to...
High
Unreviewed
CVE-2020-4795
was published
May 24, 2022
HCL Digital Experience 9.5 containers include vulnerabilities that could expose sensitive data to...
High
Unreviewed
CVE-2020-14255
was published
May 24, 2022
An issue was discovered on Mofi Network MOFI4500-4GXeLTE 4.1.5-std devices. The wireless network...
High
Unreviewed
CVE-2020-15834
was published
May 24, 2022
Local file inclusion in FHEM 6.0 allows in fhem/FileLog_logWrapper file parameter can allow an...
High
Unreviewed
CVE-2020-19360
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API