GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,335
Erlang
31
GitHub Actions
22
Go
2,096
Maven
5,000+
npm
3,762
NuGet
678
pip
3,448
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
313 advisories
Filter by severity
In Red Hat Advanced Cluster Security (RHACS), it was found that some security related HTTP...
Moderate
Unreviewed
CVE-2023-4958
was published
Dec 12, 2023
SAP Solution Manager - version 720, allows an authorized attacker to execute certain deprecated...
Moderate
Unreviewed
CVE-2023-49587
was published
Dec 12, 2023
1Panel vulnerable to command injection when entering the container terminal
Moderate
CVE-2023-36458
was published
for
github.com/1Panel-dev/1Panel
(Go)
Jul 5, 2023
A vulnerability in the ClearPass Policy Manager web-based management interface allows remote...
Moderate
Unreviewed
CVE-2023-43510
was published
Oct 25, 2023
A vulnerability was found in Weaver E-Office 9.5 and classified as critical. Affected by this...
Moderate
Unreviewed
CVE-2023-2647
was published
May 11, 2023
1Panel vulnerable to command injection when adding container repositories
Moderate
CVE-2023-36457
was published
for
github.com/1Panel-dev/1Panel
(Go)
Jul 5, 2023
A vulnerability classified as problematic was found in Chengdu VEC40G 3.0. Affected by this...
Moderate
Unreviewed
CVE-2023-3206
was published
Jun 12, 2023
A vulnerability was found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6 and classified as...
Moderate
Unreviewed
CVE-2023-2375
was published
Apr 28, 2023
A vulnerability was found in Caton Live up to 2023-04-26 and classified as critical. This issue...
Moderate
Unreviewed
CVE-2023-2682
was published
May 12, 2023
A vulnerability was found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. It has been rated as...
Moderate
Unreviewed
CVE-2023-2378
was published
Apr 28, 2023
A vulnerability has been found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6 and classified as...
Moderate
Unreviewed
CVE-2023-2374
was published
Apr 28, 2023
A vulnerability, which was classified as critical, was found in Ubiquiti EdgeRouter X up to 2.0.9...
Moderate
Unreviewed
CVE-2023-2373
was published
Apr 28, 2023
A vulnerability was found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. It has been classified...
Moderate
Unreviewed
CVE-2023-2376
was published
Apr 28, 2023
A vulnerability was found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. It has been declared as...
Moderate
Unreviewed
CVE-2023-2377
was published
Apr 28, 2023
ScanCode.io command injection in docker image fetch process
Moderate
CVE-2023-39523
was published
for
scancodeio
(pip)
Aug 9, 2023
Hustoj 22.09.22 has a XSS Vulnerability in /admin/problem_judge.php.
Moderate
Unreviewed
CVE-2022-42187
was published
Nov 17, 2022
Concrete CMS Cross-site Scripting vulnerability
Moderate
CVE-2022-43695
was published
for
concrete5/concrete5
(Composer)
Jul 6, 2023
A remote code execution vulnerability was identified in GitHub Enterprise Server that could be...
Moderate
Unreviewed
CVE-2021-22864
was published
May 24, 2022
In network service, there is a missing permission check. This could lead to local escalation of...
Moderate
Unreviewed
CVE-2022-39082
was published
Jan 4, 2023
In network service, there is a missing permission check. This could lead to local escalation of...
Moderate
Unreviewed
CVE-2022-39081
was published
Jan 4, 2023
In network service, there is a missing permission check. This could lead to local escalation of...
Moderate
Unreviewed
CVE-2022-39087
was published
Jan 4, 2023
sharp vulnerable to Command Injection in post-installation over build environment
Moderate
CVE-2022-29256
was published
for
sharp
(npm)
Jun 1, 2022
In network service, there is a missing permission check. This could lead to local escalation of...
Moderate
Unreviewed
CVE-2022-39088
was published
Jan 4, 2023
In network service, there is a missing permission check. This could lead to local escalation of...
Moderate
Unreviewed
CVE-2022-39085
was published
Jan 4, 2023
ProTip!
Advisories are also available from the
GraphQL API