GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
21
Go
2,094
Maven
5,000+
npm
3,759
NuGet
678
pip
3,445
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
24,370 advisories
Filter by severity
NETGEAR Nighthawk WiFi6 Router prior to V1.0.10.94 contains a format string vulnerability in a...
Critical
Unreviewed
CVE-2023-27853
was published
Mar 10, 2023
SPIP v4.1.5 and earlier was discovered to contain a SQL injection vulnerability via the _oups...
Critical
Unreviewed
CVE-2023-24258
was published
Feb 27, 2023
angular-server-side-configuration information disclosure vulnerability in monorepo with node.js backend
Critical
CVE-2023-28444
was published
for
angular-server-side-configuration
(npm)
Mar 24, 2023
IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and 4.1.1 is vulnerable to SQL...
Critical
Unreviewed
CVE-2023-25684
was published
Mar 21, 2023
The eo_tags package before 1.4.19 for PrestaShop allows SQL injection via a crafted _ga cookie.
Critical
Unreviewed
CVE-2023-27570
was published
Mar 21, 2023
A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55....
Critical
Unreviewed
CVE-2020-12403
was published
May 24, 2022
file_copy_fallback in gio/gfile.c in GNOME GLib 2.15.0 through 2.61.1 does not properly restrict...
Critical
Unreviewed
CVE-2019-12450
was published
May 24, 2022
A vulnerability classified as critical has been found in SourceCodester Simple Music Player 1.0....
Critical
Unreviewed
CVE-2023-1479
was published
Mar 18, 2023
An issue found in DepositGame v.1.0 allows an attacker to gain sensitive information via the...
Critical
Unreviewed
CVE-2020-22647
was published
Mar 16, 2023
Tenda W20E v15.11.0.6(US_W20EV4.0br_v15.11.0.6(1068_1546_841 is vulnerable to Buffer Overflow via...
Critical
Unreviewed
CVE-2023-26806
was published
Mar 19, 2023
Tenda W20E v15.11.0.6 (US_W20EV4.0br_v15.11.0.6(1068_1546_841)_CN_TDC) is vulnerable to Buffer...
Critical
Unreviewed
CVE-2023-26805
was published
Mar 19, 2023
A vulnerability was found in SourceCodester Air Cargo Management System 1.0 and classified as...
Critical
Unreviewed
CVE-2023-1564
was published
Mar 22, 2023
A vulnerability was found in SourceCodester E-Commerce System 1.0. It has been rated as critical....
Critical
Unreviewed
CVE-2023-1557
was published
Mar 22, 2023
A vulnerability, which was classified as critical, was found in code-projects Simple Online Hotel...
Critical
Unreviewed
CVE-2023-1561
was published
Mar 22, 2023
An issue was discovered in the tshirtecommerce (aka Custom Product Designer) component 2.1.4 for...
Critical
Unreviewed
CVE-2023-27638
was published
Mar 22, 2023
A vulnerability has been found in SourceCodester Student Study Center Desk Management System 1.0...
Critical
Unreviewed
CVE-2023-1563
was published
Mar 22, 2023
An issue was discovered in Samsung Baseband Modem Chipset for Exynos Modem 5123, Exynos Modem...
Critical
Unreviewed
CVE-2023-26496
was published
Mar 23, 2023
An issue was discovered in Samsung Baseband Modem Chipset for Exynos Modem 5123, Exynos Modem...
Critical
Unreviewed
CVE-2023-26498
was published
Mar 23, 2023
Adobe ColdFusion versions 2018 Update 15 (and earlier) and 2021 Update 5 (and earlier) are...
Critical
Unreviewed
CVE-2023-26359
was published
Mar 23, 2023
Directory Traversal in the function http_verify in nostromo nhttpd through 1.9.6 allows an...
Critical
Unreviewed
CVE-2019-16278
was published
May 24, 2022
There are stack-based buffer overflow vulnerabilities that could lead to unauthenticated remote...
Critical
Unreviewed
CVE-2023-22752
was published
Mar 1, 2023
Ansible Semaphore mishandles authentication
Critical
CVE-2023-28609
was published
for
github.com/ansible-semaphore/semaphore
(Go)
Mar 18, 2023
Answer vulnerable to Authentication Bypass by Capture-replay
Critical
CVE-2023-1537
was published
for
github.com/answerdev/answer
(Go)
Mar 21, 2023
Hard-coded credentials in Web-UI of multiple VARTA Storage products in multiple versions allows...
Critical
Unreviewed
CVE-2022-22512
was published
Mar 23, 2023
Memory corruption due to improper validation of array index in Multi-mode call processor.
Critical
Unreviewed
CVE-2022-33256
was published
Mar 10, 2023
ProTip!
Advisories are also available from the
GraphQL API