GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,757
Maven
5,000+
npm
4,363
NuGet
766
pip
4,128
Pub
12
RubyGems
961
Rust
1,070
Swift
45
Unreviewed advisories
All unreviewed
5,000+
27,783 advisories
Filter by severity
A privilege escalation issue was found in PHP Gurukul Hospital Management System In v.4.0 allows...
Critical
Unreviewed
CVE-2023-31498
was published
May 11, 2023
A vulnerability, which was classified as critical, was found in USR USR-G806 1.0.41. Affected is...
Critical
Unreviewed
CVE-2023-2645
was published
May 11, 2023
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability...
Critical
Unreviewed
CVE-2022-29842
was published
May 10, 2023
Prestashop posstaticfooter <= 1.0.0 is vulnerable to SQL Injection via posstaticfooter:...
Critical
Unreviewed
CVE-2023-30194
was published
May 10, 2023
HHVM 4.172.0 and all prior versions use TLS 1.0 for secure connections when handling tls:// URLs...
Critical
Unreviewed
CVE-2022-36937
was published
May 10, 2023
Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 was discovered to contain a hard...
Critical
Unreviewed
CVE-2023-30352
was published
May 10, 2023
Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 allows unauthenticated remote code...
Critical
Unreviewed
CVE-2023-30353
was published
May 10, 2023
Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 does not defend against physical...
Critical
Unreviewed
CVE-2023-30354
was published
May 10, 2023
An issue was discovered on GL.iNet devices before 3.216. Through the software installation...
Critical
Unreviewed
CVE-2023-31471
was published
May 10, 2023
An issue was discovered in Veritas InfoScale Operations Manager (VIOM) before 7.4.2.800 and 8.x...
Critical
Unreviewed
CVE-2023-32569
was published
May 10, 2023
A security vulnerability has been discovered in the implementation of 2FA on the rocket.chat...
Critical
Unreviewed
CVE-2023-28316
was published
May 10, 2023
Insufficient input validation in the SMU may
allow an attacker to corrupt SMU SRAM potentially...
Critical
Unreviewed
CVE-2021-46762
was published
May 9, 2023
A malicious or compromised UApp or ABL can send
a malformed system call to the bootloader, which...
Critical
Unreviewed
CVE-2021-46760
was published
May 9, 2023
Improper access control settings in ASP
Bootloader may allow an attacker to corrupt the return...
Critical
Unreviewed
CVE-2023-20520
was published
May 9, 2023
Insufficient validation of inputs in
SVC_MAP_USER_STACK in the ASP (AMD Secure Processor)...
Critical
Unreviewed
CVE-2021-46756
was published
May 9, 2023
Failure to validate the length fields of the ASP
(AMD Secure Processor) sensor fusion hub headers...
Critical
Unreviewed
CVE-2021-46753
was published
May 9, 2023
Insufficient input validation in the ASP (AMD
Secure Processor) bootloader may allow an attacker...
Critical
Unreviewed
CVE-2021-46754
was published
May 9, 2023
Insufficient input validation of mailbox data in the
SMU may allow an attacker to coerce the SMU...
Critical
Unreviewed
CVE-2021-26379
was published
May 9, 2023
Improper Neutralization of Invalid Characters in Data Attribute Names in org.xwiki.commons:xwiki-commons-xml
Critical
CVE-2023-31126
was published
for
org.xwiki.commons:xwiki-commons-xml
(Maven)
May 9, 2023
Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
Critical
Unreviewed
CVE-2023-24943
was published
May 9, 2023
Windows Network File System Remote Code Execution Vulnerability
Critical
Unreviewed
CVE-2023-24941
was published
May 9, 2023
XWiki Platform vulnerable to RXSS via editor parameter - importinline template
Critical
CVE-2023-32071
was published
for
org.xwiki.platform:xwiki-platform-distribution-war
(Maven)
May 9, 2023
A vulnerability has been identified in SCALANCE LPE9403 (All versions < V2.1). The web based...
Critical
Unreviewed
CVE-2023-27407
was published
May 9, 2023
SAP GUI for Windows - version 7.70, 8.0, allows an unauthorized attacker to gain NTLM...
Critical
Unreviewed
CVE-2023-32113
was published
May 9, 2023
This issue was addressed with improved state management. This issue is fixed in macOS Ventura 13...
Critical
Unreviewed
CVE-2023-28201
was published
May 8, 2023
ProTip!
Advisories are also available from the
GraphQL API