GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,270
Erlang
31
GitHub Actions
21
Go
2,044
Maven
5,000+
npm
3,736
NuGet
663
pip
3,414
Pub
12
RubyGems
891
Rust
868
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
110,712 advisories
Filter by severity
The Download Manager plugin for WordPress is vulnerable to unauthorized download of password...
Moderate
Unreviewed
CVE-2024-11768
was published
Dec 19, 2024
The Broken Link Checker | Finder plugin for WordPress is vulnerable to Blind Server-Side Request...
Moderate
Unreviewed
CVE-2024-12121
was published
Dec 19, 2024
An uncontrolled resource consumption vulnerability has been reported to affect several QNAP...
Moderate
Unreviewed
CVE-2022-27600
was published
Dec 19, 2024
A cross-site scripting (XSS) vulnerability has been reported to affect several QNAP operating...
Moderate
Unreviewed
CVE-2023-23357
was published
Dec 19, 2024
IBM Robotic Process Automation 21.0.1, 21.0.2, and 21.0.3 could allow a user with psychical...
Moderate
Unreviewed
CVE-2022-33954
was published
Dec 19, 2024
IBM Cognos Analytics Mobile for Android 1.1.14 uses weaker than expected cryptographic algorithms...
Moderate
Unreviewed
CVE-2021-39081
was published
Dec 19, 2024
The WP Project Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in...
Moderate
Unreviewed
CVE-2024-10548
was published
Dec 19, 2024
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is...
Moderate
Unreviewed
CVE-2023-30443
was published
Dec 19, 2024
A command injection vulnerability has been reported to affect several QNAP operating system...
Moderate
Unreviewed
CVE-2023-23356
was published
Dec 19, 2024
An access violation vulnerability exists in the DirectComposition functionality win32kbase.sys...
Moderate
Unreviewed
CVE-2022-40733
was published
Dec 19, 2024
Acrobat Reader DC version 22.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205...
Moderate
Unreviewed
CVE-2022-44519
was published
Dec 19, 2024
IBM InfoSphere Information Server 11.7 could allow a remote attacker to hijack the clicking...
Moderate
Unreviewed
CVE-2021-29827
was published
Dec 19, 2024
Acrobat Reader DC version 22.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205...
Moderate
Unreviewed
CVE-2022-44516
was published
Dec 19, 2024
Acrobat Reader DC version 22.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205...
Moderate
Unreviewed
CVE-2022-44515
was published
Dec 19, 2024
Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005...
Moderate
Unreviewed
CVE-2023-21586
was published
Dec 19, 2024
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.1.1.0 is vulnerable to cross-site...
Moderate
Unreviewed
CVE-2021-20553
was published
Dec 19, 2024
Acrobat Reader DC version 22.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205...
Moderate
Unreviewed
CVE-2022-44517
was published
Dec 19, 2024
An access violation vulnerability exists in the DirectComposition functionality win32kbase.sys...
Moderate
Unreviewed
CVE-2022-40732
was published
Dec 19, 2024
A configuration issue was addressed with additional restrictions. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2024-44243
was published
Dec 12, 2024
In bta_hd_set_report_act of bta_hd_act.cc, there is a possible out-of-bounds read due to an...
Moderate
Unreviewed
CVE-2018-9481
was published
Nov 20, 2024
In intr_data_copy_cb of btif_hd.cc, there is a possible out of bounds read due to an integer...
Moderate
Unreviewed
CVE-2018-9482
was published
Nov 20, 2024
In multiple functions of ChooserActivity.java, there is a possible cross-user media read due to a...
Moderate
Unreviewed
CVE-2023-21105
was published
Jun 15, 2023
In multiple files, there is a possible way to access traces in the dev mode due to a permissions...
Moderate
Unreviewed
CVE-2023-21142
was published
Jun 15, 2023
IBM MQ 9.1 LTS, 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, 9.4 CD, IBM MQ Appliance 9.3 LTS, 9.3 CD, 9.4...
Moderate
Unreviewed
CVE-2024-51470
was published
Dec 18, 2024
A vulnerability has been discovered in Privileged Remote Access (PRA) and Remote Support (RS)...
Moderate
Unreviewed
CVE-2024-12686
was published
Dec 18, 2024
ProTip!
Advisories are also available from the
GraphQL API