GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,168
Erlang
30
GitHub Actions
19
Go
1,978
Maven
5,000+
npm
3,698
NuGet
656
pip
3,315
Pub
11
RubyGems
882
Rust
832
Swift
35
Unreviewed advisories
All unreviewed
5,000+
2,328 advisories
Filter by severity
SourceCodester Best House Rental Management System v1.0 is vulnerable to Incorrect Access Control...
Moderate
Unreviewed
CVE-2024-40475
was published
Aug 12, 2024
An issue in Safe Exam Browser for Windows before 3.6 allows an attacker to share clipboard data...
High
Unreviewed
CVE-2024-37742
was published
Jun 26, 2024
Incorrect access control in the delete_category function of Sourcecodester Computer Laboratory...
Moderate
Unreviewed
CVE-2024-41332
was published
Aug 12, 2024
SAP NetWeaver Application Server ABAP allows
an unauthenticated attacker to craft a URL link...
Moderate
Unreviewed
CVE-2024-41732
was published
Aug 13, 2024
A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions ...
High
Unreviewed
CVE-2024-41905
was published
Aug 13, 2024
Azure CycleCloud Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-38195
was published
Aug 13, 2024
An improper access control vulnerability [CWE-284] in FortiOS 7.4.0 through 7.4.3, 7.2.5 through...
Moderate
Unreviewed
CVE-2024-36505
was published
Aug 13, 2024
Insufficient
validation of the Input Output Control (IOCTL) input buffer in AMD μProf may
allow...
High
Unreviewed
CVE-2023-31341
was published
Aug 13, 2024
Azure Connected Machine Agent Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-38162
was published
Aug 13, 2024
Windows Initial Machine Configuration Elevation of Privilege Vulnerability
Moderate
Unreviewed
CVE-2024-38223
was published
Aug 13, 2024
Windows Update Stack Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-38163
was published
Aug 14, 2024
Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by an...
Moderate
Unreviewed
CVE-2024-39414
was published
Aug 14, 2024
improper access control in firmware for some Intel(R) FPGA products before version 24.1 may allow...
High
Unreviewed
CVE-2024-25576
was published
Aug 14, 2024
Improper access control in some Intel(R) UEFI Integrator Tools on Aptio V for Intel(R) NUC may...
High
Unreviewed
CVE-2024-26022
was published
Aug 14, 2024
Improper access control in Linux kernel mode driver for some Intel(R) Ethernet Network...
Critical
Unreviewed
CVE-2024-24986
was published
Aug 14, 2024
Improper access control in some Intel(R) Arc(TM) & Iris(R) Xe Graphics software before version 31...
Moderate
Unreviewed
CVE-2024-28050
was published
Aug 14, 2024
Improper access control for some Intel(R) CIP software before version 2.4.10717 may allow an...
Moderate
Unreviewed
CVE-2023-43489
was published
Aug 14, 2024
Linksys RE7000 v2.0.9, v2.0.11, and v2.0.15 have a command execution vulnerability in the ...
High
Unreviewed
CVE-2024-25852
was published
Apr 11, 2024
An issue was discovered on certain Nuki Home Solutions devices. Some BLE commands, which should...
High
Unreviewed
CVE-2022-32507
was published
May 14, 2024
TOTOLINK EX200 V4.0.3c.7646_B20201211 allows attackers to start the Telnet service without...
Moderate
Unreviewed
CVE-2024-31805
was published
Apr 8, 2024
Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager...
High
Unreviewed
CVE-2024-21067
was published
Apr 17, 2024
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
High
Unreviewed
CVE-2024-21114
was published
Apr 17, 2024
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
Moderate
Unreviewed
CVE-2024-21107
was published
Apr 17, 2024
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
High
Unreviewed
CVE-2024-21110
was published
Apr 17, 2024
Authlib has algorithm confusion with asymmetric public keys
High
CVE-2024-37568
was published
for
authlib
(pip)
Jun 9, 2024
ProTip!
Advisories are also available from the
GraphQL API