GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
8,837 advisories
Filter by severity
** UNSUPPORTED WHEN ASSIGNED ** Emerson Dixell XWEB-500 products are affected by information...
High
Unreviewed
CVE-2021-45421
was published
Feb 15, 2022
** UNSUPPORTED WHEN ASSIGNED ** Emerson Dixell XWEB-500 products are affected by arbitrary file...
Critical
Unreviewed
CVE-2021-45420
was published
Feb 15, 2022
A CWE-200: Information Exposure vulnerability exists that could cause sensitive information of...
High
Unreviewed
CVE-2021-22785
was published
Feb 12, 2022
An Information Disclosure vulnerability for JT files in Autodesk Inventor 2022, 2021, 2020, 2019...
High
Unreviewed
CVE-2021-40159
was published
Feb 11, 2022
Exposure of Sensitive Information to an Unauthorized Actor in firmware for some Intel(R) PROSet...
Moderate
Unreviewed
CVE-2021-0166
was published
Feb 11, 2022
Exposure of Sensitive Information to an Unauthorized Actor in firmware for some Intel(R) PROSet...
Moderate
Unreviewed
CVE-2021-0170
was published
Feb 11, 2022
SAP Adaptive Server Enterprise (ASE) - version 16.0, installation makes an entry in the system...
High
Unreviewed
CVE-2022-22528
was published
Feb 11, 2022
A high privileged user who has access to transaction SM59 can read connection details stored with...
Moderate
Unreviewed
CVE-2022-22545
was published
Feb 11, 2022
S/4HANA Supplier Factsheet exposes the private address and bank details of an Employee Business...
Moderate
Unreviewed
CVE-2022-22542
was published
Feb 11, 2022
The Keybase Clients for macOS and Windows before version 5.9.0 fails to properly remove exploded...
Moderate
Unreviewed
CVE-2022-22779
was published
Feb 11, 2022
A vulnerability in the audit log of Cisco DNA Center could allow an authenticated, local attacker...
Moderate
Unreviewed
CVE-2022-20630
was published
Feb 11, 2022
An information exposure vulnerability exists in the Palo Alto Networks GlobalProtect app on...
Moderate
Unreviewed
CVE-2022-0018
was published
Feb 11, 2022
A vulnerability in the web-based management interface of Cisco Prime Service Catalog could allow...
Moderate
Unreviewed
CVE-2022-20680
was published
Feb 11, 2022
AMD EPYC™ Processors contain an information disclosure vulnerability in the Secure Encrypted...
Moderate
Unreviewed
CVE-2020-12966
was published
Feb 10, 2022
IBM OPENBMC OP920, OP930, and OP940 could allow an unauthenticated user to obtain sensitive...
High
Unreviewed
CVE-2021-38960
was published
Feb 10, 2022
A vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier (All versions), SIMATIC PCS...
High
Unreviewed
CVE-2021-40360
was published
Feb 10, 2022
Exposure of sensitive information to an unauthorized actor vulnerability in Web Server in...
High
Unreviewed
CVE-2022-22680
was published
Feb 8, 2022
Full list of recipients from customer users in a contact field could be disclosed in notification...
Low
Unreviewed
CVE-2022-0474
was published
Feb 8, 2022
XMPie uStore 12.3.7244.0 allows for administrators to generate reports based on raw SQL queries....
High
Unreviewed
CVE-2022-23320
was published
Feb 8, 2022
A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists that...
High
Unreviewed
CVE-2021-22825
was published
Jan 29, 2022
Information Exposure vulnerability in Hitachi Energy LinkOne application, due to a...
High
Unreviewed
CVE-2021-40340
was published
Jan 29, 2022
A CWE-200: Information Exposure vulnerability exists which could cause the troubleshooting...
Moderate
Unreviewed
CVE-2021-22815
was published
Jan 29, 2022
Authenticated (admin+) Arbitrary File Download vulnerability discovered in Download Monitor...
Moderate
Unreviewed
CVE-2021-31567
was published
Jan 29, 2022
An information disclosure vulnerability exists due to the hardcoded TLS key of reolink RLC-410W...
Moderate
Unreviewed
CVE-2022-21199
was published
Jan 29, 2022
An information disclosure vulnerability exists due to a web server misconfiguration in the...
High
Unreviewed
CVE-2022-21236
was published
Jan 29, 2022
ProTip!
Advisories are also available from the
GraphQL API