GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,791
Erlang
36
GitHub Actions
29
Go
2,373
Maven
5,000+
npm
3,998
NuGet
720
pip
3,801
Pub
12
RubyGems
927
Rust
984
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
14 advisories
Filter by severity
A channel accessible by non-endpoint vulnerability [CWE-300] in Fortinet FortiOS version 7.4.0...
Moderate
Unreviewed
CVE-2024-50568
was published
Jun 10, 2025
IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.36 iFix1, 2...
Moderate
Unreviewed
CVE-2023-38272
was published
Mar 27, 2025
Identity verification vulnerability in the ParamWatcher module
Impact: Successful exploitation of...
Moderate
Unreviewed
CVE-2024-12602
was published
Feb 6, 2025
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 could allow an...
Moderate
Unreviewed
CVE-2024-27263
was published
Jan 28, 2025
The Object Request Broker (ORB) in IBM SDK, Java Technology Edition 7.1.0.0 through 7.1.5.18 and...
Moderate
Unreviewed
CVE-2024-27267
was published
Aug 14, 2024
easyMINE before 2019-12-05 ships with SSH host keys baked into the installation image, which...
Moderate
Unreviewed
CVE-2019-19751
was published
Apr 30, 2024
IBM QRadar Suite Products 1.10.12.0 through 1.10.18.0 and IBM Cloud Pak for Security 1.10.0.0...
Moderate
Unreviewed
CVE-2023-47742
was published
Mar 3, 2024
A vulnerability was found in systemd-resolved. This issue may allow systemd-resolved to accept...
Moderate
Unreviewed
CVE-2023-7008
was published
Dec 23, 2023
Man in the Middle vulnerability, which could allow an attacker to intercept VNF (Virtual Network...
Moderate
Unreviewed
CVE-2023-4885
was published
Oct 3, 2023
A Channel Accessible by Non-Endpoint vulnerability in the Schweitzer Engineering Laboratories SEL...
Moderate
Unreviewed
CVE-2023-2310
was published
May 10, 2023
curl 7.63.0 to and including 7.75.0 includes vulnerability that allows a malicious HTTPS proxy to...
Moderate
Unreviewed
CVE-2021-22890
was published
May 24, 2022
MikroTik Winbox 3.20 and below is vulnerable to man in the middle attacks. A man in the middle...
Moderate
Unreviewed
CVE-2019-3981
was published
May 24, 2022
It was discovered that the fix for CVE-2017-12150 was not properly shipped in erratum RHSA-2017...
Moderate
Unreviewed
CVE-2017-15085
was published
May 13, 2022
A Man-in-the-Middle issue was discovered in Hyundai Motor America Blue Link 3.9.5 and 3.9.4....
Moderate
Unreviewed
CVE-2017-6052
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API