GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Language support
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,023
Erlang
29
GitHub Actions
16
Go
1,830
Maven
5,000+
npm
3,573
NuGet
632
pip
3,156
Pub
10
RubyGems
847
Rust
796
Swift
34
Unreviewed advisories
All unreviewed
5,000+
95,358 advisories
Filter by severity
A vulnerability, which was classified as critical, has been found in Tenda i22 1.0.0.3(4687)....
High
Unreviewed
CVE-2024-7583
was published
Aug 7, 2024
Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300...
High
Unreviewed
CVE-2024-20451
was published
Aug 7, 2024
A vulnerability, which was classified as critical, was found in Tenda i22 1.0.0.3(4687). Affected...
High
Unreviewed
CVE-2024-7584
was published
Aug 7, 2024
A vulnerability has been found in Tenda i22 1.0.0.3(4687) and classified as critical. Affected by...
High
Unreviewed
CVE-2024-7585
was published
Aug 7, 2024
A vulnerability classified as critical was found in Tenda i22 1.0.0.3(4687). This vulnerability...
High
Unreviewed
CVE-2024-7582
was published
Aug 7, 2024
An Incorrect Access Control vulnerability was found in /smsa/view_subject.php in Kashipara...
High
Unreviewed
CVE-2024-41249
was published
Aug 7, 2024
An Incorrect Access Control vulnerability was found in /smsa/add_subject.php and /smsa...
High
Unreviewed
CVE-2024-41248
was published
Aug 7, 2024
A vulnerability classified as critical has been found in Tenda A301 15.13.08.12. This affects the...
High
Unreviewed
CVE-2024-7581
was published
Aug 7, 2024
Incorrect validation of files loaded from a local untrusted directory may allow local privilege...
High
Unreviewed
CVE-2024-7553
was published
Aug 7, 2024
The Modern Events Calendar plugin for WordPress is vulnerable to Server-Side Request Forgery in...
High
Unreviewed
CVE-2024-6522
was published
Aug 7, 2024
Incorrect User Management vulnerability in Naukowa i Akademicka Sieć Komputerowa - Państwowy...
High
Unreviewed
CVE-2024-7265
was published
Aug 7, 2024
Incorrect User Management vulnerability in Naukowa i Akademicka Sieć Komputerowa - Państwowy...
High
Unreviewed
CVE-2024-7266
was published
Aug 7, 2024
Exposure of Sensitive Information vulnerability in Naukowa i Akademicka Sieć Komputerowa -...
High
Unreviewed
CVE-2024-7267
was published
Aug 7, 2024
An issue was discovered in Ubuntu wpa_supplicant that resulted in loading of arbitrary shared...
High
Unreviewed
CVE-2024-5290
was published
Aug 7, 2024
CloudStack account-users by default use username and password based authentication for API and UI...
High
Unreviewed
CVE-2024-42062
was published
Aug 7, 2024
An insecure deserialization vulnerability in web component of EPMM prior to 12.1.0.1 allows an...
High
Unreviewed
CVE-2024-36131
was published
Aug 7, 2024
Insufficient verification of authentication controls in EPMM prior to 12.1.0.1 allows a remote...
High
Unreviewed
CVE-2024-36132
was published
Aug 7, 2024
Out-of-bounds write in appending paragraph in Samsung Notes prior to version 4.4.21.62 allows...
High
Unreviewed
CVE-2024-34622
was published
Aug 7, 2024
Improper privilege management in SumeNNService prior to SMR Aug-2024 Release 1 allows local...
High
Unreviewed
CVE-2024-34620
was published
Aug 7, 2024
Improper input validation in librtp.so prior to SMR Aug-2024 Release 1 allows remote attackers to...
High
Unreviewed
CVE-2024-34619
was published
Aug 7, 2024
Out-of-bounds write in applying connected information in Samsung Notes prior to version 4.4.21.62...
High
Unreviewed
CVE-2024-34623
was published
Aug 7, 2024
Out-of-bound write in libcodec2secmp4vdec.so prior to SMR Aug-2024 Release 1 allows local...
High
Unreviewed
CVE-2024-34612
was published
Aug 7, 2024
Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to...
High
Unreviewed
CVE-2024-34614
was published
Aug 7, 2024
An authenticated attacker can bypass Server-Side Request Forgery (SSRF) protection in Microsoft...
High
Unreviewed
CVE-2024-38206
was published
Aug 7, 2024
An unauthenticated attacker can exploit improper neutralization of input during web page...
High
Unreviewed
CVE-2024-38166
was published
Aug 7, 2024
ProTip!
Advisories are also available from the
GraphQL API