GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,840
Erlang
36
GitHub Actions
33
Go
2,464
Maven
5,000+
npm
4,082
NuGet
723
pip
3,880
Pub
12
RubyGems
943
Rust
1,011
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,001 advisories
Filter by severity
An information leak in Camp Style Project Line v13.6.1 allows attackers to obtain the channel...
Moderate
Unreviewed
CVE-2023-39039
was published
Sep 18, 2023
A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) message processing...
Moderate
Unreviewed
CVE-2022-20917
was published
Sep 15, 2023
A vulnerability has been identified in SIMATIC PCS neo (Administration Console) V4.0 (All...
Moderate
Unreviewed
CVE-2023-38558
was published
Sep 14, 2023
DHCP Server Service Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2023-38152
was published
Sep 12, 2023
Windows TCP/IP Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2023-38160
was published
Sep 12, 2023
Microsoft Word Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2023-36761
was published
Sep 12, 2023
IBM Aspera Faspex 5.0.5 does not restrict or incorrectly restricts access to a resource from an...
Moderate
Unreviewed
CVE-2023-24965
was published
Sep 8, 2023
Minio vulnerable to Privilege Escalation on Windows via Path separator manipulation
High
CVE-2023-28433
was published
for
github.com/minio/minio
(Go)
Sep 6, 2023
Sensitive information disclosure due to excessive collection of system information. The following...
Moderate
Unreviewed
CVE-2023-41745
was published
Aug 31, 2023
Excessive attack surface due to binding to an unrestricted IP address. The following products are...
Moderate
Unreviewed
CVE-2023-41742
was published
Aug 31, 2023
An issue was discovered in TechView LA-5570 Wireless Gateway 1.0.19_T53, allows physical...
Moderate
Unreviewed
CVE-2023-34725
was published
Aug 29, 2023
A vulnerability has been identified in ioLogik 4000 Series (ioLogik E4200) firmware versions v1.6...
Moderate
Unreviewed
CVE-2023-4230
was published
Aug 24, 2023
The InfiniteWP Client plugin for WordPress is vulnerable to Sensitive Information Exposure in...
Moderate
Unreviewed
CVE-2023-2916
was published
Aug 21, 2023
Exposure of Sensitive Information vulnerability in AcyMailing Enterprise component for Joomla. It...
Moderate
Unreviewed
CVE-2023-39974
was published
Aug 17, 2023
Dell Storage Integration Tools for VMware (DSITV) 06.01.00.016 contain an information disclosure...
Moderate
Unreviewed
CVE-2023-39250
was published
Aug 16, 2023
Vulnerability of input parameters being not strictly verified in the AMS module. Successful...
High
Unreviewed
CVE-2023-39383
was published
Aug 13, 2023
An information leak in PHPJabbers Yacht Listing Script v1.0 allows attackers to export clients'...
High
Unreviewed
CVE-2023-38830
was published
Aug 10, 2023
Exposure of sensitive information in Zoom Client SDK's before 5.15.5 may allow an authenticated...
High
Unreviewed
CVE-2023-39214
was published
Aug 9, 2023
ZKTeco BioAccess IVS v3.3.1 allows unauthenticated attackers to obtain sensitive information...
High
Unreviewed
CVE-2023-38955
was published
Aug 3, 2023
Some API routes exists in Control ID IDSecure 4.7.26.0 and prior, exfiltrating sensitive...
Moderate
Unreviewed
CVE-2023-33368
was published
Aug 3, 2023
In CODESYS Development System 3.5.9.0 to 3.5.17.0 and CODESYS Scripting 4.0.0.0 to 4.1.0.0 unsafe...
High
Unreviewed
CVE-2023-3670
was published
Jul 28, 2023
Secret displayed without masking by Chef Identity Plugin
Low
CVE-2023-39155
was published
for
org.jenkins-ci.plugins:chef-identity
(Maven)
Jul 26, 2023
An issue has been discovered in GitLab DAST scanner affecting all versions starting from 3.0.29...
Moderate
Unreviewed
CVE-2023-1401
was published
Jul 26, 2023
An issue was discovered in Vocera Report Server and Voice Server 5.x through 5.8. There is an...
High
Unreviewed
CVE-2022-46901
was published
Jul 25, 2023
Apache InLong: General user can delete and update process
Moderate
CVE-2023-34189
was published
for
org.apache.inlong:inlong-manager
(Maven)
Jul 25, 2023
ProTip!
Advisories are also available from the
GraphQL API