GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,807
Erlang
36
GitHub Actions
31
Go
2,390
Maven
5,000+
npm
4,026
NuGet
720
pip
3,815
Pub
12
RubyGems
932
Rust
988
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
128 advisories
Filter by severity
A key used in logging.json does not follow the least privilege principle by default and is...
Moderate
Unreviewed
CVE-2024-3185
was published
Apr 23, 2024
A vulnerability was reported
in a system recovery bootloader that was part of the Lenovo...
Moderate
Unreviewed
CVE-2024-23593
was published
Apr 15, 2024
In SecurityCommand message after as security has been actived., there is a possible improper...
Moderate
Unreviewed
CVE-2023-52343
was published
Apr 8, 2024
Faulty input validation in the core of Apache allows malicious or exploitable backend/content...
High
Unreviewed
CVE-2023-38709
was published
Apr 4, 2024
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
High
Unreviewed
CVE-2024-1714
was published
Feb 21, 2024
Improper input validation in some Zoom clients may allow an authenticated user to conduct a...
Moderate
Unreviewed
CVE-2024-24690
was published
Feb 14, 2024
A vulnerability exists in the input validation of the GOOSE
messages where out of range values...
Moderate
Unreviewed
CVE-2023-4518
was published
Dec 1, 2023
Improper Input Validation in Checkmk <2.2.0p15, <2.1.0p37, <=2.0.0p39 allows priviledged...
Low
Unreviewed
CVE-2023-23549
was published
Nov 15, 2023
An Improper Validation of Specified Quantity in Input vulnerability in the Layer-2 control...
Moderate
Unreviewed
CVE-2023-36839
was published
Oct 13, 2023
A vulnerability was found in SourceCodester Card Holder Management System 1.0 and classified as...
Moderate
Unreviewed
CVE-2023-4439
was published
Aug 21, 2023
Denial-of-service (DoS) vulnerability due to improper validation of specified type of input issue...
High
Unreviewed
CVE-2023-38744
was published
Aug 3, 2023
The HTTP server in Mongoose before 7.10 accepts requests containing negative Content-Length headers.
High
Unreviewed
CVE-2023-34188
was published
Jun 23, 2023
A denial of service attack might be launched against the server if an unusually lengthy password ...
High
Unreviewed
CVE-2023-30082
was published
Jun 14, 2023
Due to URL previews in the network panel of developer tools improperly storing URLs, query...
High
Unreviewed
CVE-2023-25731
was published
Jun 2, 2023
An issue was found in Action Launcher v50.5 allows an attacker to escalate privilege via...
High
Unreviewed
CVE-2022-47029
was published
May 30, 2023
In several functions of PhoneAccountRegistrar.java, there is a possible way to prevent an access...
Moderate
Unreviewed
CVE-2023-21111
was published
May 16, 2023
In m4u, there is a possible out of bounds write due to improper input validation. This could lead...
Moderate
Unreviewed
CVE-2023-20722
was published
May 16, 2023
In apu, there is a possible out of bounds read due to a missing bounds check. This could lead to...
Moderate
Unreviewed
CVE-2023-20705
was published
May 16, 2023
In ril, there is a possible out of bounds write due to a missing bounds check. This could lead to...
Moderate
Unreviewed
CVE-2023-20707
was published
May 16, 2023
In apu, there is a possible out of bounds read due to a missing bounds check. This could lead to...
Moderate
Unreviewed
CVE-2023-20704
was published
May 16, 2023
In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could...
Moderate
Unreviewed
CVE-2023-20708
was published
May 16, 2023
In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could...
Moderate
Unreviewed
CVE-2023-20709
was published
May 16, 2023
In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could...
Moderate
Unreviewed
CVE-2023-20710
was published
May 16, 2023
Multiple validation issues were addressed with improved input sanitization. This issue is fixed...
Moderate
Unreviewed
CVE-2023-27961
was published
May 8, 2023
A validation issue was addressed with improved input sanitization. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2023-27941
was published
May 8, 2023
ProTip!
Advisories are also available from the
GraphQL API