GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,383 advisories
Filter by severity
An issue was discovered in the Widgets extension through 1.4.0 for MediaWiki. Improper title...
Moderate
Unreviewed
CVE-2020-9382
was published
May 24, 2022
An issue was discovered on Phoenix Contact Emalytics Controller ILC 2050 BI before 1.2.3 and BI-L...
High
Unreviewed
CVE-2020-8768
was published
May 24, 2022
An insecure modification vulnerability in the /etc/passwd file was found in all versions of...
Moderate
Unreviewed
CVE-2020-1704
was published
May 24, 2022
An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects...
Moderate
Unreviewed
CVE-2020-0668
was published
May 24, 2022
A privilege escalation vulnerability in Wowza Streaming Engine 4.7.7 and 4.7.8 allows any...
High
Unreviewed
CVE-2019-7656
was published
May 24, 2022
An issue was discovered in Ricoh (including Savin and Lanier) Windows printer drivers prior to...
Moderate
Unreviewed
CVE-2019-19363
was published
May 24, 2022
The apt-cacher-ng package of openSUSE Leap 15.1 runs operations in user owned directory /run/apt...
Low
Unreviewed
CVE-2019-18899
was published
May 24, 2022
The keystone-json-assignment package in SUSE Openstack Cloud 8 before commit...
Moderate
Unreviewed
CVE-2019-3683
was published
May 24, 2022
A flaw in the WordPress plugin, Minimal Coming Soon & Maintenance Mode through 2.10, allows...
Moderate
Unreviewed
CVE-2020-6168
was published
May 24, 2022
Debian-edu-config all versions < 2.11.10, a set of configuration files used for Debian Edu,...
High
Unreviewed
CVE-2019-3467
was published
May 24, 2022
A flaw was found in Ansible Tower, versions 3.6.x before 3.6.2, where files in '/var/backup/tower...
Low
Unreviewed
CVE-2019-19341
was published
May 24, 2022
OpenBSD 6.6, in a non-default configuration where S/Key or YubiKey authentication is enabled,...
High
Unreviewed
CVE-2019-19522
was published
May 24, 2022
IOCTL Handling in the kyrld.sys driver in Kyrol Internet Security 9.0.6.9 allows an attacker to...
High
Unreviewed
CVE-2019-19197
was published
May 24, 2022
Improper directory permissions in Intel(R) PROSet/Wireless WiFi Software before version 21.40 may...
High
Unreviewed
CVE-2019-11155
was published
May 24, 2022
The 9000EV5.0R1B12 version, and all earlier versions of ZTE product ZXUPN-9000E are impacted by...
High
Unreviewed
CVE-2019-3425
was published
May 24, 2022
In Medtronic Valleylab FT10 Energy Platform (VLFT10GEN) version 2.1.0 and lower and version 2.0.3...
Low
Unreviewed
CVE-2019-13535
was published
May 24, 2022
A flaw was found in the 'deref' plugin of 389-ds-base where it could use the 'search' permission...
Low
Unreviewed
CVE-2019-14824
was published
May 24, 2022
An information-exposure vulnerability was discovered where openstack-mistral's undercloud log...
Low
Unreviewed
CVE-2019-3866
was published
May 24, 2022
An issue was discovered in Xen through 4.12.x allowing ARM guest OS users to cause a denial of...
High
Unreviewed
CVE-2019-18422
was published
May 24, 2022
browser/extensions/api/dial/dial_registry.cc in Google Chrome before 54.0.2840.98 on macOS,...
High
Unreviewed
CVE-2016-5202
was published
May 24, 2022
Adobe Download Manager versions 2.0.0.363 have an insecure file permissions vulnerability....
Critical
Unreviewed
CVE-2019-8071
was published
May 24, 2022
GNU Guix 1.0.1 allows local users to gain access to an arbitrary user's account because the...
High
Unreviewed
CVE-2019-18192
was published
May 24, 2022
An issue was discovered in Softing uaGate SI 1.60.01. A maintenance script, that is executable...
Critical
Unreviewed
CVE-2019-11526
was published
May 24, 2022
An issue was discovered in Softing uaGate SI 1.60.01. A system default path for executables is...
High
Unreviewed
CVE-2019-11528
was published
May 24, 2022
Controls for zone transfers may not be properly applied to Dynamically Loadable Zones (DLZs) if...
Moderate
Unreviewed
CVE-2019-6465
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API