GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,300
Erlang
31
GitHub Actions
21
Go
2,065
Maven
5,000+
npm
3,744
NuGet
668
pip
3,427
Pub
12
RubyGems
892
Rust
877
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,921 advisories
Filter by severity
The WebChannel API, which is used to transport various information across processes, did not...
Moderate
Unreviewed
CVE-2025-0237
was published
Jan 7, 2025
Mattermost versions 9.11.x <= 9.11.5 fail to enforce invite permissions, which allows team admins...
Low
Unreviewed
CVE-2025-22449
was published
Jan 9, 2025
An Insecure Direct Object Reference (IDOR) vulnerability exists in the lunary-ai/lunary...
High
Unreviewed
CVE-2024-1625
was published
Apr 10, 2024
The grc-policy-propagator allows security escalation within the cluster. The propagator allows...
High
Unreviewed
CVE-2023-3027
was published
Jun 6, 2023
The EmbedPress – Embed PDF, Google Docs, Vimeo, Wistia, Embed YouTube Videos, Audios, Maps &...
Moderate
Unreviewed
CVE-2024-1803
was published
May 23, 2024
An issue found in FlightAware v.5.8.0 for Android allows unauthorized apps to cause a persistent...
Moderate
Unreviewed
CVE-2023-29759
was published
Jun 9, 2023
An issue found in Blue Light Filter v.1.5.5 for Android allows unauthorized apps to cause a...
Moderate
Unreviewed
CVE-2023-29758
was published
Jun 9, 2023
An issue found in CrossX v.1.15.3 for Android allows a local attacker to cause an escalation of...
High
Unreviewed
CVE-2023-29766
was published
Jun 9, 2023
An issue found in Sleep v.20230303 for Android allows unauthorized apps to cause a persistent...
Moderate
Unreviewed
CVE-2023-29761
was published
Jun 9, 2023
An issue found in Facemoji Emoji Keyboard v.2.9.1.2 for Android allows unauthorized apps to cause...
High
Unreviewed
CVE-2023-29752
was published
Jun 9, 2023
Incorrect access control in Chamilo 1.11.* up to 1.11.18 allows a student subscribed to a given...
Moderate
Unreviewed
CVE-2023-34958
was published
Jun 8, 2023
Milesight NCR/camera version 71.8.0.6-r5 allows authentication bypass through an unspecified method.
Critical
Unreviewed
CVE-2023-32220
was published
Jun 12, 2023
A Mazda model (2015-2016) can be unlocked via an unspecified method.
High
Unreviewed
CVE-2023-32219
was published
Jun 12, 2023
An issue was discovered in freakchicken kafkaUI-lite 1.2.11 allows attackers on the same network...
Critical
Unreviewed
CVE-2023-27716
was published
Jun 12, 2023
In showNextSecurityScreenOrFinish of KeyguardSecurityContainerController.java, there is a...
High
Unreviewed
CVE-2023-21245
was published
Jul 13, 2023
Windows Authentication Security Feature Bypass Vulnerability.
High
Unreviewed
CVE-2022-26913
was published
May 11, 2022
Windows Print Spooler Information Disclosure Vulnerability. This CVE ID is unique from CVE-2022...
Moderate
Unreviewed
CVE-2022-29114
was published
May 11, 2022
Kerberos AppContainer Security Feature Bypass Vulnerability.
High
Unreviewed
CVE-2022-30164
was published
Jun 16, 2022
Microsoft Office Security Feature Bypass Vulnerability.
Moderate
Unreviewed
CVE-2022-29107
was published
May 11, 2022
Windows Hyper-V Security Feature Bypass Vulnerability.
Moderate
Unreviewed
CVE-2022-24466
was published
May 11, 2022
Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability.
Moderate
Unreviewed
CVE-2023-21719
was published
Jan 24, 2023
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products,...
High
Unreviewed
CVE-2022-31644
was published
Jun 14, 2023
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products,...
High
Unreviewed
CVE-2022-31646
was published
Jun 14, 2023
An improper access control vulnerability exists in SimplCommerce at commit...
High
Unreviewed
CVE-2024-50945
was published
Dec 27, 2024
Some Honor products are affected by incorrect privilege assignment vulnerability, successful...
Low
Unreviewed
CVE-2024-47157
was published
Dec 26, 2024
ProTip!
Advisories are also available from the
GraphQL API