GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,164
Erlang
30
GitHub Actions
19
Go
1,973
Maven
5,000+
npm
3,695
NuGet
654
pip
3,312
Pub
11
RubyGems
881
Rust
831
Swift
35
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
91,572 advisories
Filter by severity
An arbitrary file creation vulnerability exists in the Javascript exportDataObject API of Foxit...
High
Unreviewed
CVE-2023-40194
was published
Nov 27, 2023
An authentication bypass exists in Arcserve UDP prior to version 9.2. An unauthenticated, remote...
High
Unreviewed
CVE-2023-41999
was published
Nov 27, 2023
A use-after-free vulnerability exists in the way Foxit Reader 12.1.2.15356 handles a signature...
High
Unreviewed
CVE-2023-38573
was published
Nov 27, 2023
A use-after-free vulnerability exists in the way Foxit Reader 12.1.2.15356 handles 3D annotations...
High
Unreviewed
CVE-2023-32616
was published
Nov 27, 2023
Buffer overflow vulnerability in Frhed hex editor, affecting version 1.6.0. This vulnerability...
High
Unreviewed
CVE-2023-4590
was published
Nov 27, 2023
An improper limitation of a path name to a restricted directory (path traversal) vulnerability...
High
Unreviewed
CVE-2023-5607
was published
Nov 27, 2023
A Vulnerability in OTRS AgentInterface and ExternalInterface allows the reading of plain text...
High
Unreviewed
CVE-2023-6254
was published
Nov 27, 2023
A vulnerability was found in Tecno 4G Portable WiFi TR118 TR118-M30E-RR-D-EnFrArSwHaPo-OP-V008...
High
Unreviewed
CVE-2023-6304
was published
Nov 27, 2023
Certain WithSecure products allow a Denial of Service because there is an unpack handler crash...
High
Unreviewed
CVE-2023-49322
was published
Nov 27, 2023
Precision Bridge PrecisionBridge.exe (aka the thick client) before 7.3.21 allows an integrity...
High
Unreviewed
CVE-2023-49312
was published
Nov 27, 2023
An out-of-memory flaw was found in libtiff. Passing a crafted tiff file to TIFFOpen() API may...
High
Unreviewed
CVE-2023-6277
was published
Nov 24, 2023
OpenZFS through 2.1.13 and 2.2.x through 2.2.1, in certain scenarios involving applications that...
High
Unreviewed
CVE-2023-49298
was published
Nov 24, 2023
RVTools, Version 3.9.2 and above, contain a sensitive data exposure vulnerability in the...
High
Unreviewed
CVE-2023-44303
was published
Nov 24, 2023
The API endpoints in Ironman PowerShell Universal 3.0.0 through 4.2.0 allow remote attackers to...
High
Unreviewed
CVE-2023-49213
was published
Nov 24, 2023
An issue was discovered in ClickHouse before 22.9.1.2603. An attacker could send a crafted HTTP...
High
Unreviewed
CVE-2022-44010
was published
Nov 23, 2023
A null pointer dereference flaw was found in the nft_inner.c functionality of netfilter in the...
High
Unreviewed
CVE-2023-5972
was published
Nov 23, 2023
Unrestricted Upload of File with Dangerous Type vulnerability in Pandora FMS on all allows...
High
Unreviewed
CVE-2023-41788
was published
Nov 23, 2023
Improper Privilege Management vulnerability in Pandora FMS on all allows Privilege Escalation....
High
Unreviewed
CVE-2023-41806
was published
Nov 23, 2023
Improper Privilege Management vulnerability in Pandora FMS on all allows Privilege Escalation....
High
Unreviewed
CVE-2023-41808
was published
Nov 23, 2023
An information exposure vulnerability has been found, the exploitation of which could allow a...
High
Unreviewed
CVE-2023-4595
was published
Nov 23, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2023-41791
was published
Nov 23, 2023
Uncontrolled Search Path Element vulnerability in Pandora FMS on all allows Leveraging...
High
Unreviewed
CVE-2023-41790
was published
Nov 23, 2023
: Path Traversal: '/../filedir' vulnerability in Neutron IP Camera allows Absolute Path Traversal...
High
Unreviewed
CVE-2023-6118
was published
Nov 23, 2023
Cron log backup files contain administrator session IDs. It is trivial for any attacker who can...
High
Unreviewed
CVE-2023-4677
was published
Nov 23, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2023-41789
was published
Nov 23, 2023
ProTip!
Advisories are also available from the
GraphQL API