GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,168
Erlang
30
GitHub Actions
19
Go
1,975
Maven
5,000+
npm
3,698
NuGet
654
pip
3,314
Pub
11
RubyGems
882
Rust
831
Swift
35
Unreviewed advisories
All unreviewed
5,000+
225 advisories
Filter by severity
Clickjacking vulnerability in Clibo Manager v1.1.9.12 in the '/public/login' directory, a login...
Moderate
Unreviewed
CVE-2024-10454
was published
Oct 31, 2024
Multiple prompts and panels from both Firefox and the Android OS could be used to obscure the...
Moderate
Unreviewed
CVE-2024-8388
was published
Sep 3, 2024
Select options could obscure the fullscreen notification dialog. This could be used by a...
Moderate
Unreviewed
CVE-2024-7518
was published
Aug 6, 2024
rdiffweb vulnerable to Improper Restriction of Rendered UI Layers or Frames
Critical
CVE-2022-3167
was published
for
rdiffweb
(pip)
Sep 9, 2022
Opening an external link to an HTTP website when Firefox iOS was previously closed and had an...
Critical
Unreviewed
CVE-2024-10004
was published
Oct 16, 2024
Sametime is impacted by lack of clickjacking protection in Outlook add-in. The application is not...
Moderate
Unreviewed
CVE-2023-45698
was published
Feb 10, 2024
A missing delay in directory upload UI could have made it possible for an attacker to trick a...
Moderate
Unreviewed
CVE-2024-9397
was published
Oct 1, 2024
LB-LINK BL-W1210M v2.0 was discovered to contain a clickjacking vulnerability via the...
High
Unreviewed
CVE-2024-33377
was published
Jun 14, 2024
A select option could partially obscure security prompts. This could be used by a malicious site...
High
Unreviewed
CVE-2024-7523
was published
Aug 6, 2024
By manipulating the fullscreen feature while opening a data-list, an attacker could have overlaid...
Moderate
Unreviewed
CVE-2024-5698
was published
Jun 11, 2024
The issue was addressed with improved UI handling. This issue is fixed in macOS Sonoma 14.6,...
Moderate
Unreviewed
CVE-2024-40817
was published
Jul 30, 2024
Data was not properly sanitized when decoding a QUIC ACK frame; this could have led to...
High
Unreviewed
CVE-2024-2613
was published
Mar 19, 2024
A Cross Window Forgery vulnerability exists within GitLab CE/EE affecting all versions from 16.3...
Moderate
Unreviewed
CVE-2024-2177
was published
Jul 9, 2024
IBM Sterling B2B Integrator Standard Edition 6.1 and 6.2 does not restrict or incorrectly...
Moderate
Unreviewed
CVE-2023-42011
was published
Jun 27, 2024
Microsoft Edge for Android Spoofing Vulnerability
Moderate
Unreviewed
CVE-2024-26167
was published
Mar 7, 2024
EC-CUBE Improper Restriction of Rendered UI Layers or Frames
Moderate
CVE-2020-5679
was published
for
ec-cube/ec-cube
(Composer)
May 24, 2022
Improper Restriction of Rendered UI Layers or Frames vulnerability in Automattic Jetpack allows...
Moderate
Unreviewed
CVE-2023-47774
was published
Apr 24, 2024
An unauthenticated remote attacker can deceive users into performing unintended actions due to...
Moderate
Unreviewed
CVE-2024-3911
was published
Apr 23, 2024
NetApp Snap Creator Framework before 4.3P1 allows remote authenticated users to conduct...
Moderate
Unreviewed
CVE-2016-5710
was published
May 24, 2022
Microsoft Edge (Chromium-based) Spoofing Vulnerability
Moderate
Unreviewed
CVE-2024-29981
was published
Apr 5, 2024
Improper Restriction of Rendered UI Layers or Frames in RDT400 in SICK APU allows an unprivileged...
Moderate
Unreviewed
CVE-2023-5103
was published
Oct 9, 2023
Palantir Gotham was found to be vulnerable to a bug where under certain circumstances, the...
Moderate
Unreviewed
CVE-2023-30961
was published
Sep 27, 2023
A vulnerability has been identified in ioLogik 4000 Series (ioLogik E4200) firmware versions v1.6...
Moderate
Unreviewed
CVE-2023-4229
was published
Aug 24, 2023
The permission request prompt from the site in the background tab was overlaid on top of the site...
Moderate
Unreviewed
CVE-2023-37455
was published
Jul 12, 2023
ProTip!
Advisories are also available from the
GraphQL API