GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,279
Erlang
31
GitHub Actions
21
Go
2,056
Maven
5,000+
npm
3,740
NuGet
668
pip
3,421
Pub
12
RubyGems
891
Rust
873
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
93,901 advisories
Filter by severity
An improper access control vulnerability exists in SimplCommerce at commit...
High
Unreviewed
CVE-2024-50945
was published
Dec 27, 2024
Some Huawei wearables have a vulnerability of not verifying the actual data size when reading...
High
Unreviewed
CVE-2021-22484
was published
Dec 28, 2024
Software installed and run as a non-privileged user may conduct improper GPU system calls to...
High
Unreviewed
CVE-2024-46973
was published
Dec 28, 2024
Software installed and run as a non-privileged user can trigger the GPU kernel driver to write to...
High
Unreviewed
CVE-2024-43705
was published
Dec 28, 2024
A Server-Side Request Forgery (SSRF) in smarts-srl.com Smart Agent v.1.1.0 allows a remote...
High
Unreviewed
CVE-2024-50714
was published
Dec 28, 2024
An issue in smarts-srl.com Smart Agent v.1.1.0 allows a remote attacker to obtain sensitive...
High
Unreviewed
CVE-2024-50715
was published
Dec 27, 2024
Some Huawei wearables have a permission management vulnerability.
High
Unreviewed
CVE-2021-37000
was published
Dec 28, 2024
Some Huawei home music system products have a path traversal vulnerability. Successful...
High
Unreviewed
CVE-2023-7263
was published
Dec 28, 2024
Some Huawei home routers have a connection hijacking vulnerability. Successful exploitation of...
High
Unreviewed
CVE-2023-7266
was published
Dec 28, 2024
This issue was addressed with improved validation of the process entitlement and Team ID. This...
High
Unreviewed
CVE-2023-42867
was published
Dec 20, 2024
A Password in Configuration File issue was discovered in Hikvision DS-2CD2xx2F-I Series V5.2.0...
High
Unreviewed
CVE-2017-7923
was published
May 17, 2022
Node.js: All versions prior to Node.js 6.15.0, 8.14.0, 10.14.0 and 11.3.0: Denial of Service with...
High
Unreviewed
CVE-2018-12121
was published
May 13, 2022
Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-21330
was published
Mar 12, 2024
Windows Telephony Server Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-21439
was published
Mar 12, 2024
The Four-Faith router models F3x24 and F3x36 are affected by an operating system (OS) command...
High
Unreviewed
CVE-2024-12856
was published
Dec 27, 2024
In the Linux kernel, the following vulnerability has been resolved:
uio: Fix use-after-free in...
High
Unreviewed
CVE-2023-52439
was published
Feb 20, 2024
Windows USB Print Driver Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-21445
was published
Mar 12, 2024
There is a privilege escalation vulnerability in Huawei FusionCompute product. Due to...
High
Unreviewed
CVE-2020-9222
was published
Dec 27, 2024
There is an improper interface design vulnerability in Huawei product. A module interface of the...
High
Unreviewed
CVE-2020-9236
was published
Dec 27, 2024
A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS...
High
Unreviewed
CVE-2024-3393
was published
Dec 27, 2024
There is an improper privilege management vulnerability in Huawei smart phone product. A local,...
High
Unreviewed
CVE-2020-9080
was published
Dec 27, 2024
In the Linux kernel, the following vulnerability has been resolved:
bpf: Track subprog poke...
High
Unreviewed
CVE-2021-47303
was published
May 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
igb: Fix use-after-free...
High
Unreviewed
CVE-2021-47301
was published
May 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: fddi: fix UAF in...
High
Unreviewed
CVE-2021-47306
was published
May 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
igc: Fix use-after-free...
High
Unreviewed
CVE-2021-47302
was published
May 21, 2024
ProTip!
Advisories are also available from the
GraphQL API