GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
563 advisories
Filter by severity
OX App Suite 7.10.5 allows Information Exposure because a caching mechanism can caused a Modified...
Moderate
Unreviewed
CVE-2021-38378
was published
May 24, 2022
The dated_news (aka Dated News) extension through 5.1.1 for TYPO3 allows Information Disclosure...
Moderate
Unreviewed
CVE-2021-36791
was published
May 24, 2022
Operational restrictions bypass vulnerability in Portal of Cybozu Garoon 4.0.0 to 5.0.2 allows a...
Moderate
Unreviewed
CVE-2021-20763
was published
May 24, 2022
Datalust Seq before 2021.2.6259 allows users (with view filters applied to their accounts) to see...
Moderate
Unreviewed
CVE-2021-41329
was published
May 24, 2022
In all versions of GitLab EE since version 8.13, an endpoint discloses names of private groups...
Moderate
Unreviewed
CVE-2021-39884
was published
May 24, 2022
Inappropriate implementation in Background Fetch API in Google Chrome prior to 94.0.4606.54...
Moderate
Unreviewed
CVE-2021-37965
was published
May 24, 2022
Inappropriate implementation in Background Fetch API in Google Chrome prior to 94.0.4606.54...
Moderate
Unreviewed
CVE-2021-37967
was published
May 24, 2022
Inappropriate implementation in Blink in Google Chrome prior to 93.0.4577.82 allowed a remote...
Moderate
Unreviewed
CVE-2021-30630
was published
May 24, 2022
This issue was addressed with improved checks. This issue is fixed in Security Update 2021-005...
Moderate
Unreviewed
CVE-2021-30828
was published
May 24, 2022
In Gradle Enterprise through 2021.3, probing of the server-side network environment can occur via...
Moderate
Unreviewed
CVE-2021-41590
was published
May 24, 2022
A vulnerability has been found in Klapp App and classified as problematic. This vulnerability...
Moderate
Unreviewed
CVE-2020-36532
was published
Jun 8, 2022
OX App Suite through 7.10.5 has Incorrect Access Control for retrieval of session information via...
Moderate
Unreviewed
CVE-2021-38376
was published
May 24, 2022
RPM secure Stream can access any secure resource due to improper SMMU configuration in Snapdragon...
Moderate
Unreviewed
CVE-2021-30345
was published
Jun 15, 2022
RPM secure Stream can access any secure resource due to improper SMMU configuration in Snapdragon...
Moderate
Unreviewed
CVE-2021-30346
was published
Jun 15, 2022
Processing DCB/AVB algorithm with an invalid queue index from IOCTL request could lead to...
Moderate
Unreviewed
CVE-2021-35092
was published
Jun 15, 2022
Azure RTOS Information Disclosure Vulnerability This CVE ID is unique from CVE-2021-26444, CVE...
Moderate
Unreviewed
CVE-2021-42301
was published
May 24, 2022
A permissions issue was addressed with improved validation. This issue is fixed in macOS Big Sur...
Moderate
Unreviewed
CVE-2021-30803
was published
May 24, 2022
IBM Jazz Team Server 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 could allow a remote attacker to...
Moderate
Unreviewed
CVE-2021-20355
was published
Jun 25, 2022
IBM Jazz Team Server 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 could allow a remote attacker to...
Moderate
Unreviewed
CVE-2021-38879
was published
Jun 25, 2022
IBM Spectrum Protect Operations Center 8.1.0.000 through 8.1.14 could allow a remote attacker to...
Moderate
Unreviewed
CVE-2022-22494
was published
Jul 1, 2022
In SAP NetWeaver AS for ABAP and ABAP Platform - versions 701, 702, 711, 730, 731, 740, 750, 751,...
Moderate
Unreviewed
CVE-2021-42067
was published
Jan 15, 2022
A URL disclosure issue was discovered in Burp Suite before 2022.6. If a user views a crafted...
Moderate
Unreviewed
CVE-2022-35406
was published
Jul 9, 2022
Windows Mixed Reality Developer Tools Information Disclosure Vulnerability.
Moderate
Unreviewed
CVE-2022-37974
was published
Oct 12, 2022
IBM Robotic Process Automation 20.10.0, 20.12.5, 21.0.0, 21.0.1, and 21.0.2 contains a...
Moderate
Unreviewed
CVE-2022-30607
was published
Jun 18, 2022
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could allow a low level user to obtain sensitive...
Moderate
Unreviewed
CVE-2021-29768
was published
Jun 25, 2022
ProTip!
Advisories are also available from the
GraphQL API