GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,266
Erlang
31
GitHub Actions
21
Go
2,040
Maven
5,000+
npm
3,732
NuGet
662
pip
3,413
Pub
12
RubyGems
891
Rust
866
Swift
36
Unreviewed advisories
All unreviewed
5,000+
2,293 advisories
Filter by severity
SnapCenter versions 4.8 prior to 5.0 are susceptible to a
vulnerability which could allow an...
Moderate
Unreviewed
CVE-2024-21987
was published
Feb 16, 2024
An issue has been discovered in GitLab CE/EE affecting all versions from 16.9 before 17.4.6, 17.5...
Moderate
Unreviewed
CVE-2024-8116
was published
Dec 16, 2024
An issue was discovered in GitLab CE/EE affecting all versions from 15.0 prior to 17.4.6, 17.5...
Moderate
Unreviewed
CVE-2024-8650
was published
Dec 16, 2024
An access control bypass vulnerability found in 389-ds-base. That mishandling of the filter that...
High
Unreviewed
CVE-2022-1949
was published
Jun 3, 2022
An authorization vulnerability exists within GitLab from versions 16.10 before 16.10.6, 16.11...
Moderate
Unreviewed
CVE-2024-5258
was published
May 23, 2024
An issue has been discovered in GitLab EE affecting all versions starting from 12.5 before 17.1.6...
Moderate
Unreviewed
CVE-2024-3127
was published
Aug 22, 2024
An issue was discovered on NOKIA Airscale ASIKA Single RAN devices before 21B. A mobile network...
High
Unreviewed
CVE-2023-25185
was published
Jun 16, 2023
A permissions issue was addressed by removing vulnerable code and adding additional checks. This...
Critical
Unreviewed
CVE-2024-44217
was published
Oct 29, 2024
XWiki allows remote code execution through the extension sheet
Critical
CVE-2024-55662
was published
for
org.xwiki.platform:xwiki-platform-repository-server-ui
(Maven)
Dec 12, 2024
The issue was addressed with improved permissions logic. This issue is fixed in macOS Sequoia 15...
Moderate
Unreviewed
CVE-2024-54495
was published
Dec 12, 2024
An issue has been discovered in GitLab EE affecting all versions starting from 14.3 before 17.4.6...
Low
Unreviewed
CVE-2024-10043
was published
Dec 12, 2024
In KeePassXC through 2.7.5, a local attacker can make changes to the Database security settings,...
Moderate
Unreviewed
CVE-2023-35866
was published
Jun 19, 2023
An issue was discovered in Qlik Sense Enterprise for Windows before November 2024 IR. An...
High
Unreviewed
CVE-2024-55579
was published
Dec 9, 2024
An authorization issue was addressed with improved state management. This issue is fixed in macOS...
High
Unreviewed
CVE-2024-27798
was published
May 14, 2024
The VerifiedBoot module has a vulnerability that may cause authentication errors.Successful...
High
Unreviewed
CVE-2023-52361
was published
Feb 18, 2024
This issue was addressed with additional entitlement checks. This issue is fixed in visionOS 1.1,...
Low
Unreviewed
CVE-2024-23262
was published
Mar 8, 2024
A vulnerability exists where a low-privileged user can exploit insufficient permissions in...
High
Unreviewed
CVE-2024-45204
was published
Dec 4, 2024
ProjectSend versions prior to r1720 are affected by an improper authentication vulnerability....
Critical
Unreviewed
CVE-2024-11680
was published
Nov 26, 2024
An issue was discovered in /cgi-bin/adm.cgi in WavLink WavRouter version RPT70HA1.x, allows...
High
Unreviewed
CVE-2023-29708
was published
Jun 22, 2023
An authentication issue was addressed with improved state management. This issue is fixed in...
Critical
Unreviewed
CVE-2024-23255
was published
Mar 8, 2024
Incorrect authorization in permission validation component in Devolutions Server 2024.3.6.0 and...
Moderate
Unreviewed
CVE-2024-12148
was published
Dec 4, 2024
Mattermost versions 9.7.x <= 9.7.5, 9.8.x <= 9.8.2 and 9.9.x <= 9.9.2 fail to properly propagate...
Moderate
Unreviewed
CVE-2024-12247
was published
Dec 5, 2024
A logic issue was addressed with improved checks. This issue is fixed in iTunes 12.12.9 for...
High
Unreviewed
CVE-2023-32353
was published
Jun 23, 2023
Incorrect access control in the component /index.php?mod=system&op=orgtree of dzzoffice 2.02...
Moderate
Unreviewed
CVE-2021-30205
was published
Jun 27, 2023
Incorrect authorization in the permission component in Devolutions Server 2024.3.7.0 and earlier...
Moderate
Unreviewed
CVE-2024-12196
was published
Dec 4, 2024
ProTip!
Advisories are also available from the
GraphQL API