GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
21
Go
2,094
Maven
5,000+
npm
3,757
NuGet
678
pip
3,444
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
263,419 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
HID: amd_sfh: Switch to...
Moderate
Unreviewed
CVE-2024-50189
was published
Nov 8, 2024
In the Linux kernel, the following vulnerability has been resolved:
idpf: avoid vport access in...
High
Unreviewed
CVE-2024-50274
was published
Nov 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: phy: dp83869: fix...
Moderate
Unreviewed
CVE-2024-50188
was published
Nov 8, 2024
Insyde IHISI function 0x49 can restore factory defaults for certain UEFI variables without...
Moderate
Unreviewed
CVE-2024-39707
was published
Nov 15, 2024
An issue in UltiMaker Cura v.4.41 and 5.8.1 and before allows a local attacker to execute...
Moderate
Unreviewed
CVE-2024-51330
was published
Nov 15, 2024
In Network Adapter Service, there is a possible missing permission check. This could lead to...
Moderate
Unreviewed
CVE-2023-52352
was published
Apr 8, 2024
Client-side enforcement of server-side security issue exists in WL-WN531AX2 firmware versions...
High
Unreviewed
CVE-2023-32612
was published
Jun 30, 2023
Rejected reason: This CVE is a duplicate of another CVE.
Unknown
Unreviewed
CVE-2024-53254
was published
Nov 27, 2024
A vulnerability classified as critical has been found in SourceCodester Best House Rental...
Moderate
Unreviewed
CVE-2024-11860
was published
Nov 27, 2024
A crafted URL containing Arabic script and whitespace characters could have hidden the true...
Moderate
Unreviewed
CVE-2024-11695
was published
Nov 26, 2024
This Medium severity Security Misconfiguration vulnerability was introduced in version 8.8.1 of...
Moderate
Unreviewed
CVE-2024-21703
was published
Nov 27, 2024
A Reflected Cross Site Scripting (XSS) vulnerability was found in /covid-tms/patient-search...
Moderate
Unreviewed
CVE-2024-53635
was published
Nov 27, 2024
The incorrect domain may have been displayed in the address bar during an interrupted navigation...
Moderate
Unreviewed
CVE-2024-11701
was published
Nov 26, 2024
Copying sensitive information from Private Browsing tabs on Android, such as passwords, may have...
High
Unreviewed
CVE-2024-11702
was published
Nov 26, 2024
`NSC_DeriveKey` inadvertently assumed that the `phKey` parameter is always non-NULL. When it was...
Critical
Unreviewed
CVE-2024-11705
was published
Nov 26, 2024
Malicious websites may have been able to user intent confirmation through tapjacking. This could...
High
Unreviewed
CVE-2024-11700
was published
Nov 26, 2024
A NoSQL injection vulnerability in Adapt Learning Adapt Authoring Tool <= 0.11.3 allows...
Critical
Unreviewed
CVE-2024-50672
was published
Nov 25, 2024
The executable file warning was not presented when downloading .library-ms files.
*Note: This...
Critical
Unreviewed
CVE-2024-11693
was published
Nov 26, 2024
An Open Redirect vulnerability in Taiga v6.8.1 allows attackers to redirect users to arbitrary...
Moderate
Unreviewed
CVE-2024-53556
was published
Nov 25, 2024
InfluxDB through 2.7.10 allows allAccess administrators to retrieve all raw tokens via an "influx...
Critical
Unreviewed
CVE-2024-30896
was published
Nov 27, 2024
An issue in Kasda LinkSmart Router KW5515 v1.7 and before allows an authenticated remote attacker...
Critical
Unreviewed
CVE-2024-33439
was published
Nov 20, 2024
DedeBIZ v6.3.0 was discovered to contain an arbitrary file deletion vulnerability via the...
Critical
Unreviewed
CVE-2024-52771
was published
Nov 20, 2024
Incorrect access control in Meabilis CMS 1.0 allows attackers to access other users' address...
Unknown
Unreviewed
CVE-2024-44786
was published
Nov 22, 2024
An LDAP injection vulnerability in the login page of Gladinet CentreStack v13.12.9934.54690...
Critical
Unreviewed
CVE-2024-37782
was published
Nov 22, 2024
Missing authentication for a critical function in Palo Alto Networks Expedition can lead to an...
Critical
Unreviewed
CVE-2024-5910
was published
Jul 10, 2024
ProTip!
Advisories are also available from the
GraphQL API