GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,337 advisories
Filter by severity
IBM Sterling File Gateway 2.2.0.0 through 6.1.1.0 could allow an authenticated user to obtain...
Moderate
Unreviewed
CVE-2020-4654
was published
May 24, 2022
In conditionallyRemoveIdentifiers of SubscriptionController.java, there is a possible way to...
Moderate
Unreviewed
CVE-2021-0644
was published
May 24, 2022
In system properties, there is a possible information disclosure due to a missing permission...
Moderate
Unreviewed
CVE-2021-0681
was published
May 24, 2022
In getDefaultSmsPackage of RoleManagerService.java, there is a possible way to get information...
Moderate
Unreviewed
CVE-2021-0686
was published
May 24, 2022
In system properties, there is a possible information disclosure due to a missing permission...
Moderate
Unreviewed
CVE-2021-0680
was published
May 24, 2022
In sendAccessibilityEvent of NotificationManagerService.java, there is a possible disclosure of...
Moderate
Unreviewed
CVE-2021-0682
was published
May 24, 2022
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.1.1.0 could allow an authenticated...
Moderate
Unreviewed
CVE-2021-29760
was published
May 24, 2022
An information disclosure vulnerability in Widevine TA log prior to SMR Oct-2021 Release 1 allows...
Moderate
Unreviewed
CVE-2021-25476
was published
May 24, 2022
Missing access control in GitLab version 13.10 and above with Jira Cloud integration enabled...
Moderate
Unreviewed
CVE-2021-22262
was published
May 24, 2022
In all versions of GitLab CE/EE since version 8.0, access tokens created as part of admin's...
Moderate
Unreviewed
CVE-2021-39891
was published
May 24, 2022
Improper authorization checks in GitLab EE > 13.11 allows subgroup members to see epics from all...
Moderate
Unreviewed
CVE-2021-39883
was published
May 24, 2022
NETSCOUT Systems nGeniusONE 6.3.0 build 1196 allows Authorization Bypass (to access an endpoint)...
Moderate
Unreviewed
CVE-2021-35202
was published
May 24, 2022
Broken access control for user creation in Pydio Cells 2.2.9 allows remote anonymous users to...
Moderate
Unreviewed
CVE-2021-41325
was published
May 24, 2022
The Safari app extension bundled with 1Password for Mac 7.7.0 through 7.8.x before 7.8.7 is...
Moderate
Unreviewed
CVE-2021-41795
was published
May 24, 2022
Unauthorized information security disclosure vulnerability on Micro Focus Directory and Resource...
Moderate
Unreviewed
CVE-2021-22535
was published
May 24, 2022
The Ninja Forms WordPress plugin is vulnerable to arbitrary email sending via the...
Moderate
Unreviewed
CVE-2021-34648
was published
May 24, 2022
The Ninja Forms WordPress plugin is vulnerable to sensitive information disclosure via the...
Moderate
Unreviewed
CVE-2021-34647
was published
May 24, 2022
An issue was discovered on Virgin Media Super Hub 3 (based on ARRIS TG2492) devices. Because...
Moderate
Unreviewed
CVE-2019-16651
was published
May 24, 2022
Improper Access Control in Jfinal CMS v4.7.1 and earlier allows remote attackers to obtain...
Moderate
Unreviewed
CVE-2020-19154
was published
May 24, 2022
Under certain conditions, SAP Business One version - 10.0, allows an unauthorized attacker to get...
Moderate
Unreviewed
CVE-2021-33686
was published
May 24, 2022
IBM Security Secret Server up to 11.0 stores sensitive information in URL parameters. This may...
Moderate
Unreviewed
CVE-2021-20582
was published
May 24, 2022
An unauthorized user was able to insert metadata when creating new issue on GitLab CE/EE 14.0 and...
Moderate
Unreviewed
CVE-2021-22239
was published
May 24, 2022
This issue was addressed with improved data protection. This issue is fixed in macOS Big Sur 11.4...
Moderate
Unreviewed
CVE-2021-30751
was published
May 24, 2022
An access issue was addressed with improved access restrictions. This issue is fixed in macOS Big...
Moderate
Unreviewed
CVE-2021-30783
was published
May 24, 2022
A call termination issue with was addressed with improved logic. This issue is fixed in iOS 14.5...
Moderate
Unreviewed
CVE-2021-1854
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API