GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,360
Erlang
33
GitHub Actions
22
Go
2,127
Maven
5,000+
npm
3,793
NuGet
683
pip
3,471
Pub
12
RubyGems
894
Rust
894
Swift
38
Unreviewed advisories
All unreviewed
5,000+
284 advisories
Filter by severity
An issue found in BestWeather v.7.3.1 for Android allows unauthorized apps to cause a persistent...
High
Unreviewed
CVE-2023-29743
was published
May 31, 2023
An issue found in BestWeather v.7.3.1 for Android allows unauthorized apps to cause a persistent...
High
Unreviewed
CVE-2023-29745
was published
May 31, 2023
Prestashop salesbooster <= 1.10.4 is vulnerable to Incorrect Access Control via modules...
High
Unreviewed
CVE-2023-30196
was published
May 30, 2023
Incorrect access control in luowice v3.5.18 allows attackers to access cloud source code...
High
Unreviewed
CVE-2023-33740
was published
May 31, 2023
Long hostnames in URLs could be leveraged to obscure the actual host of the website or spoof the...
Moderate
Unreviewed
CVE-2025-23109
was published
Jan 11, 2025
An issue in South River Technologies TitanFTP Before v2.0.1.2102 allows attackers with low-level...
High
Unreviewed
CVE-2023-27745
was published
Jun 2, 2023
Dragging a URL from a cross-origin iframe that was removed during the drag could have led to user...
Moderate
Unreviewed
CVE-2023-28164
was published
Jun 2, 2023
An issue has been discovered in GitLab EE affecting all versions starting from 12.0 before 15.10...
Moderate
Unreviewed
CVE-2023-2589
was published
Jun 7, 2023
Incorrect access control in the administrative functionalities of BES--6024PB-I50H1 VideoPlayTool...
Critical
Unreviewed
CVE-2023-33443
was published
Jun 8, 2023
An issue found in Yandex Navigator v.6.60 for Android allows unauthorized apps to cause a...
Moderate
Unreviewed
CVE-2023-29751
was published
Jun 9, 2023
An issue found in Facemoji Emoji Keyboard v.2.9.1.2 for Android allows a local attacker to cause...
Moderate
Unreviewed
CVE-2023-29753
was published
Jun 9, 2023
An issue found in Twilight v.13.3 for Android allows unauthorized apps to cause a persistent...
Moderate
Unreviewed
CVE-2023-29756
was published
Jun 9, 2023
NETGEAR RAX30 lighttpd Misconfiguration Remote Code Execution Vulnerability. This vulnerability...
High
Unreviewed
CVE-2023-27360
was published
May 3, 2024
An origin validation error vulnerability in Trend Micro Apex One could allow a local attacker to...
High
Unreviewed
CVE-2024-55917
was published
Dec 31, 2024
A validation integrity issue was discovered in Fort through 1.6.4 before 2.0.0. RPKI manifests...
Moderate
Unreviewed
CVE-2024-56170
was published
Dec 18, 2024
There is an insufficient input verification vulnerability in Huawei product. Successful...
High
Unreviewed
CVE-2022-32144
was published
Dec 20, 2024
A cookie management issue was addressed with improved state management. This issue is fixed in...
Moderate
Unreviewed
CVE-2024-44212
was published
Dec 12, 2024
This issue was addressed by enabling hardened runtime. This issue is fixed in macOS Sequoia 15.2....
Moderate
Unreviewed
CVE-2024-54490
was published
Dec 12, 2024
An incorrect access control issue was discovered in Interlink PSG-5124 version 1.0.4, allows...
Critical
Unreviewed
CVE-2023-29711
was published
Jun 22, 2023
An issue was discovered on NOKIA Airscale ASIKA Single RAN devices before 21B. If/when CSP (as a...
High
Unreviewed
CVE-2023-25188
was published
Jun 16, 2023
In Siglent SDS 1104X-E SDS1xx4X-E_V6.1.37R9.ADS, insecure SCPI interface discloses web password.
Critical
Unreviewed
CVE-2023-25366
was published
Jun 16, 2023
pnpm no-script global cache poisoning via overrides / `ignore-scripts` evasion
Moderate
CVE-2024-53866
was published
for
pnpm
(npm)
Dec 10, 2024
An improper verification vulnerability in the GlobalProtect gateway feature of Palo Alto Networks...
Moderate
Unreviewed
CVE-2024-0009
was published
Feb 14, 2024
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 15.7.2 and...
Moderate
Unreviewed
CVE-2022-46718
was published
Jun 23, 2023
This issue was addressed with improved redaction of sensitive information. This issue is fixed in...
Moderate
Unreviewed
CVE-2023-28191
was published
Jun 23, 2023
ProTip!
Advisories are also available from the
GraphQL API