GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
4,250 advisories
Filter by severity
A user controlled parameter related to SMTP test functionality is not correctly validated making...
High
Unreviewed
CVE-2021-31987
was published
May 24, 2022
A user controlled parameter related to SMTP test functionality is not correctly validated making...
High
Unreviewed
CVE-2021-31988
was published
May 24, 2022
A vulnerability in the External Agent Assignment Service (EAAS) feature of Cisco Enterprise Chat...
High
Unreviewed
CVE-2024-20484
was published
Nov 6, 2024
The LevelOne WBR-6012 router firmware R0.40e6 suffers from an input validation vulnerability...
High
Unreviewed
CVE-2024-33700
was published
Oct 30, 2024
mudler/LocalAI version 2.17.1 allows for arbitrary file write due to improper handling of...
High
Unreviewed
CVE-2024-6868
was published
Oct 29, 2024
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability which could allow a...
High
Unreviewed
CVE-2024-0126
was published
Oct 26, 2024
NVIDIA vGPU software contains a vulnerability in the GPU kernel driver of the vGPU Manager for...
High
Unreviewed
CVE-2024-0127
was published
Oct 26, 2024
In mintplex-labs/anything-llm, a vulnerability exists in the thread update process that allows...
High
Unreviewed
CVE-2024-3150
was published
Jun 6, 2024
A vulnerability in the Remote Access VPN feature of Cisco Adaptive Security Appliance (ASA)...
High
Unreviewed
CVE-2024-20495
was published
Oct 23, 2024
Interactive Forms (IAF) in GX Software XperienCentral versions 10.33.1 until 10.35.0 was...
High
Unreviewed
CVE-2022-43713
was published
Jul 26, 2023
The nsImageGeometryMixin class in Mozilla Firefox before 49.0, Firefox ESR 45.x before 45.4, and...
High
Unreviewed
CVE-2016-5272
was published
May 14, 2022
Mozilla Firefox before 49.0, Firefox ESR 45.x before 45.4, and Thunderbird < 45.4 rely on...
High
Unreviewed
CVE-2016-5284
was published
May 14, 2022
Improper input validation for some Intel NUC BIOS firmware before version JY0070 may allow a...
High
Unreviewed
CVE-2023-28738
was published
Jan 19, 2024
The Windows kernel-mode drivers in win32k.sys in Microsoft Windows XP SP2 and SP3, Windows Server...
High
Unreviewed
CVE-2010-1896
was published
May 14, 2022
win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003...
High
Unreviewed
CVE-2012-0157
was published
May 4, 2022
DNSAPI.dll in the DNS client in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2,...
High
Unreviewed
CVE-2011-0657
was published
May 13, 2022
mintplex-labs/anything-llm is vulnerable to multiple security issues due to improper input...
High
Unreviewed
CVE-2024-3152
was published
Jun 6, 2024
Improper input validation in some firmware for Intel(R) AMT and Intel(R) Standard Manageability...
High
Unreviewed
CVE-2022-36392
was published
Aug 11, 2023
Authenticated Remote Code Execution in Altalink, Versalink & WorkCentre Products.
High
Unreviewed
CVE-2024-6333
was published
Oct 17, 2024
Account users in Apache CloudStack by default are allowed to upload and register templates for...
High
Unreviewed
CVE-2024-45219
was published
Oct 16, 2024
Docker Desktop before v4.34.3 allows RCE via unsanitized GitHub source link in Build view.
High
Unreviewed
CVE-2024-9348
was published
Oct 16, 2024
An unauthenticated local attacker can gain admin privileges by deploying a config file due to...
High
Unreviewed
CVE-2024-45271
was published
Oct 15, 2024
CVE 2021-22681 https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory...
High
Unreviewed
CVE-2024-6207
was published
Oct 14, 2024
Parcel mismatch in AuthenticationConfig prior to SMR Aug-2023 Release 1 allows local attacker to...
High
Unreviewed
CVE-2023-30691
was published
Aug 10, 2023
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS...
High
Unreviewed
CVE-2024-8755
was published
Oct 11, 2024
ProTip!
Advisories are also available from the
GraphQL API