GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,785
Erlang
36
GitHub Actions
29
Go
2,358
Maven
5,000+
npm
3,979
NuGet
720
pip
3,777
Pub
12
RubyGems
924
Rust
981
Swift
38
Unreviewed advisories
All unreviewed
5,000+
11,284 advisories
Filter by severity
Logic error in package installation via adb command prior to SMR Jul-2023 Release 1 allows local...
Moderate
Unreviewed
CVE-2023-30671
was published
Jul 6, 2023
Vulnerability of kernel raw address leakage in the hang detector module. Successful exploitation...
Moderate
Unreviewed
CVE-2023-3456
was published
Jul 6, 2023
Input verification vulnerability in the WMS API. Successful exploitation of this vulnerability...
High
Unreviewed
CVE-2023-37241
was published
Jul 6, 2023
In Splunk Enterprise versions below 8.2.9, 8.1.12, and 9.0.2, an authenticated user can run risky...
High
Unreviewed
CVE-2022-43566
was published
Jul 6, 2023
In Splunk Enterprise versions below 8.2.9 and 8.1.12, the way that the ‘tstats command handles...
High
Unreviewed
CVE-2022-43565
was published
Jul 6, 2023
Elsight – Elsight Halo Remote Code Execution (RCE) Elsight Halo web panel allows us to perform...
Critical
Unreviewed
CVE-2022-36784
was published
Jul 6, 2023
The “puhttpsniff” service, which runs by default, is susceptible to command injection due to...
High
Unreviewed
CVE-2022-47208
was published
Jul 6, 2023
Apache Zeppelin Improper Input Validation vulnerability
Moderate
CVE-2021-28655
was published
for
org.apache.zeppelin:zeppelin
(Maven)
Jul 6, 2023
Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2...
Moderate
Unreviewed
CVE-2022-43455
was published
Jul 6, 2023
Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2...
Moderate
Unreviewed
CVE-2022-47917
was published
Jul 6, 2023
In Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4, the ‘map’ search processing...
High
Unreviewed
CVE-2023-22939
was published
Jul 6, 2023
In Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4, aliases of the ‘collect’ search...
Moderate
Unreviewed
CVE-2023-22940
was published
Jul 6, 2023
In Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4, the ‘display.page.search.patterns...
High
Unreviewed
CVE-2023-22935
was published
Jul 6, 2023
A flaw (CVE-2022-38900) was discovered in one of Kibana’s third party dependencies, that could...
Moderate
Unreviewed
CVE-2022-38778
was published
Jul 6, 2023
In Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4, the ‘pivot’ search processing...
High
Unreviewed
CVE-2023-22934
was published
Jul 6, 2023
An invalid ‘prepare write request’ command can cause the Bluetooth LE stack to run out of memory...
Moderate
Unreviewed
CVE-2023-0775
was published
Jul 6, 2023
White Rabbit Switch contains a vulnerability which makes it possible for an attacker to perform...
Critical
Unreviewed
CVE-2023-22581
was published
Jul 6, 2023
Apache StreamPark Improper Input Validation vulnerability
Critical
CVE-2022-46365
was published
for
org.apache.streampark:streampark
(Maven)
Jul 6, 2023
Security vulnerability in Apache bRPC <1.5.0 on all platforms allows attackers to execute...
Critical
Unreviewed
CVE-2023-31039
was published
Jul 6, 2023
An Improper Input Validation vulnerability in the Schweitzer Engineering Laboratories Real-Time...
High
Unreviewed
CVE-2023-31161
was published
Jul 6, 2023
An authenticated, remote attacker may use a improper input validation vulnerability in the CmpApp...
Moderate
Unreviewed
CVE-2022-47392
was published
Jul 6, 2023
A remote command injection vulnerability exists in the Barracuda Email Security Gateway ...
Critical
Unreviewed
CVE-2023-2868
was published
Jul 6, 2023
In Sprecher Automation SPRECON-E-C/P/T3 CPU in variant PU244x a vulnerable firmware verification...
Moderate
Unreviewed
CVE-2022-4332
was published
Jul 6, 2023
Improper Input Validation vulnerability in ABB Ltd. ASPECT®-Enterprise on ASPECT®-Enterprise,...
Critical
Unreviewed
CVE-2023-0636
was published
Jul 6, 2023
A flaw was found in the Libreoffice package. An attacker can craft an odb containing a "database...
Moderate
Unreviewed
CVE-2023-1183
was published
Jul 10, 2023
ProTip!
Advisories are also available from the
GraphQL API