GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,287
Erlang
31
GitHub Actions
21
Go
2,061
Maven
5,000+
npm
3,743
NuGet
668
pip
3,423
Pub
12
RubyGems
892
Rust
875
Swift
36
Unreviewed advisories
All unreviewed
5,000+
11,273 advisories
Filter by severity
Microsoft Office Information Disclosure Vulnerability.
Low
Unreviewed
CVE-2022-41043
was published
Oct 12, 2022
Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-37988,...
Low
Unreviewed
CVE-2022-38022
was published
Oct 12, 2022
Stored cross-site scripting (XSS) vulnerability due to missing origin validation in postMessage....
Low
Unreviewed
CVE-2024-55541
was published
Jan 2, 2025
Cross-site Scripting in djangorestframework
Low
CVE-2024-21520
was published
for
djangorestframework
(pip)
Jun 26, 2024
iXsystems TrueNAS CORE fetch_plugin_packagesites tar Cleartext Transmission of Sensitive...
Low
Unreviewed
CVE-2024-11946
was published
Dec 30, 2024
magic-crypt uses insecure cryptographic algorithms
Low
GHSA-gmx7-gr5q-85w5
was published
for
magic-crypt
(Rust)
Dec 30, 2024
xous has unsound usages of `core::slice::from_raw_parts`
Low
GHSA-gv7f-5qqh-vxfx
was published
for
xous
(Rust)
Dec 30, 2024
Apache NiFi: Missing Complete Authorization for Parameter and Service References
Low
CVE-2024-56512
was published
for
org.apache.nifi:nifi-client-dto
(Maven)
Dec 28, 2024
There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common...
Low
Unreviewed
CVE-2020-1823
was published
Dec 28, 2024
There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common...
Low
Unreviewed
CVE-2020-1824
was published
Dec 28, 2024
There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common...
Low
Unreviewed
CVE-2020-1822
was published
Dec 28, 2024
There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common...
Low
Unreviewed
CVE-2020-1820
was published
Dec 28, 2024
There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common...
Low
Unreviewed
CVE-2020-1821
was published
Dec 28, 2024
Elliptic's verify function omits uniqueness validation
Low
CVE-2024-48949
was published
for
elliptic
(npm)
Oct 10, 2024
Some Honor products are affected by incorrect privilege assignment vulnerability, successful...
Low
Unreviewed
CVE-2024-47157
was published
Dec 26, 2024
There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common...
Low
Unreviewed
CVE-2020-1818
was published
Dec 27, 2024
There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common...
Low
Unreviewed
CVE-2020-1819
was published
Dec 27, 2024
There is an information vulnerability in Huawei smartphones. A function in a module can be called...
Low
Unreviewed
CVE-2020-9089
was published
Dec 27, 2024
There is an improper authorization vulnerability in some Huawei smartphones. An attacker could...
Low
Unreviewed
CVE-2020-9081
was published
Dec 27, 2024
There is an information disclosure vulnerability in several smartphones. The system has a logic...
Low
Unreviewed
CVE-2020-9082
was published
Dec 27, 2024
Some Honor products are affected by incorrect privilege assignment vulnerability, successful...
Low
Unreviewed
CVE-2024-47149
was published
Dec 26, 2024
Some Honor products are affected by information leak vulnerability, successful exploitation could...
Low
Unreviewed
CVE-2024-47150
was published
Dec 26, 2024
Some Honor products are affected by information leak vulnerability, successful exploitation could...
Low
Unreviewed
CVE-2024-47156
was published
Dec 26, 2024
shadow-utils (aka shadow) 4.4 through 4.17.0 establishes a default /etc/subuid behavior (e.g.,...
Low
Unreviewed
CVE-2024-56433
was published
Dec 26, 2024
An issue was discovered in GitLab CE/EE affecting all versions before 17.6.0 in which users were...
Low
Unreviewed
CVE-2023-5117
was published
Dec 25, 2024
ProTip!
Advisories are also available from the
GraphQL API