GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,081
Erlang
29
GitHub Actions
19
Go
1,909
Maven
5,000+
npm
3,642
NuGet
638
pip
3,258
Pub
10
RubyGems
869
Rust
820
Swift
35
Unreviewed advisories
All unreviewed
5,000+
757 advisories
Filter by severity
An issue was discovered in Faronics Insight 10.0.19045 on Windows. By abusing the Insight UDP...
High
Unreviewed
CVE-2023-28352
was published
May 31, 2023
The SDK for the MediaPlaybackController module has improper permission verification. Successful...
High
Unreviewed
CVE-2023-31226
was published
May 26, 2023
Improper Access Control in SICK FTMg AIR FLOW SENSOR with Partnumbers
1100214, 1100215, 1100216,...
High
Unreviewed
CVE-2023-23446
was published
May 15, 2023
Improper Access Control in SICK FTMg AIR FLOW SENSOR with Partnumbers
1100214, 1100215, 1100216,...
High
Unreviewed
CVE-2023-23445
was published
May 15, 2023
Mattermost Incorrect Authorization vulnerability
High
CVE-2023-2515
was published
for
github.com/mattermost/mattermost-server/v6
(Go)
May 12, 2023
Multiple components (such as Onlinetemplate-Verwaltung, Liste aller Teilbereiche, Umfragen...
High
Unreviewed
CVE-2023-31435
was published
May 2, 2023
Incorrect access control in the runReport function of MyQ Solution Print Server before 8.2 Patch...
High
Unreviewed
CVE-2023-27107
was published
Apr 27, 2023
Authentication Bypass in Hub Business integration in Devolutions Workspace Desktop 2023.1.1.3 and...
High
Unreviewed
CVE-2023-2257
was published
Apr 24, 2023
In AlarmManagerActivity of AlarmManagerActivity.java, there is a possible way to bypass...
High
Unreviewed
CVE-2023-20950
was published
Apr 19, 2023
A CWE-863: Incorrect Authorization vulnerability exists that could allow remote code execution...
High
Unreviewed
CVE-2023-25547
was published
Apr 18, 2023
LilyPond before 2.24 allows attackers to bypass the -dsafe protection mechanism via output-def...
High
Unreviewed
CVE-2020-17354
was published
Apr 16, 2023
An issue was discovered in SecurePoint UTM before 12.2.5.1. The firewall's endpoint at /spcgi.cgi...
High
Unreviewed
CVE-2023-22620
was published
Apr 13, 2023
A incorrect authorization in Fortinet FortiClient (Windows) 7.0.0 - 7.0.7, 6.4.0 - 6.4.9, 6.2.0 -...
High
Unreviewed
CVE-2022-40682
was published
Apr 11, 2023
Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.1 and 9.3.0.2, including...
High
Unreviewed
CVE-2022-43940
was published
Apr 3, 2023
This vulnerability allows network-adjacent attackers to bypass authentication on affected...
High
Unreviewed
CVE-2022-27645
was published
Mar 29, 2023
This vulnerability allows network-adjacent attackers to bypass authentication on affected...
High
Unreviewed
CVE-2022-27642
was published
Mar 29, 2023
Delta Electronics InfraSuite Device Master versions prior to 1.0.5 contains an improper access...
High
Unreviewed
CVE-2023-1144
was published
Mar 27, 2023
In Delta Electronics InfraSuite Device Master versions prior to 1.0.5, an unauthenticated...
High
Unreviewed
CVE-2023-1136
was published
Mar 27, 2023
RIFARTEK IOT Wall has a vulnerability of incorrect authorization. An authenticated remote...
High
Unreviewed
CVE-2023-25017
was published
Mar 27, 2023
In multiple functions of SensorService.cpp, there is a possible access of accurate sensor data...
High
Unreviewed
CVE-2023-21034
was published
Mar 24, 2023
In multiple functions of BackupHelper.java, there is a possible way for an app to get permissions...
High
Unreviewed
CVE-2023-21035
was published
Mar 24, 2023
IS Decisions UserLock MFA 11.01 is vulnerable to authentication bypass using scheduled task.
High
Unreviewed
CVE-2023-23192
was published
Mar 23, 2023
IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and 4.1.1 could allow an...
High
Unreviewed
CVE-2023-25924
was published
Mar 22, 2023
A vulnerability in the web-based management interface of ClearPass Policy Manager allows an...
High
Unreviewed
CVE-2023-25594
was published
Mar 22, 2023
IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and 4.1.1 could allow an...
High
Unreviewed
CVE-2023-25923
was published
Mar 21, 2023
ProTip!
Advisories are also available from the
GraphQL API