GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
108
GitHub Actions
55
Go
4,533
Maven
5,000+
npm
5,000+
NuGet
1,103
pip
5,000+
Pub
13
RubyGems
1,145
Rust
1,514
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
1
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
10
595 advisories
Filter by severity
A memory initialization issue was addressed with improved memory handling. This issue is fixed in...
Moderate
Unreviewed
CVE-2021-1820
was published
May 24, 2022
Exposure of Resource to Wrong Sphere in Spring Data REST
Moderate
CVE-2021-22047
was published
for
org.springframework.data:spring-data-rest-core
(Maven)
May 24, 2022
A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 14...
Moderate
Unreviewed
CVE-2021-1807
was published
May 24, 2022
Information disclosure from SendEntry in GitLab starting with 10.8 allowed exposure of full URL...
Moderate
Unreviewed
CVE-2021-39900
was published
May 24, 2022
A remote unauthorized read access to files vulnerability was discovered in Aruba Instant version...
Moderate
Unreviewed
CVE-2021-37734
was published
May 24, 2022
A business logic error in the project deletion process in GitLab 13.6 and later allows persistent...
Moderate
Unreviewed
CVE-2021-39866
was published
May 24, 2022
Clustered Data ONTAP versions 9.x prior to 9.5P18, 9.6P16, 9.7P16, 9.8P7 and 9.9.1P2 are...
Moderate
Unreviewed
CVE-2021-27001
was published
May 24, 2022
This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.4,...
Moderate
Unreviewed
CVE-2021-30709
was published
May 24, 2022
An issue was discovered in Zammad before 4.1.1. An admin can discover the application secret via...
Moderate
Unreviewed
CVE-2021-42087
was published
May 24, 2022
Viewing restrictions bypass vulnerability in Address of Cybozu Garoon 4.0.0 to 5.0.2 allows a...
Moderate
Unreviewed
CVE-2021-20756
was published
May 24, 2022
Viewing restrictions bypass vulnerability in Portal of Cybozu Garoon 4.0.0 to 5.0.2 allows a...
Moderate
Unreviewed
CVE-2021-20755
was published
May 24, 2022
NetSarang Xshell 7 before Build 0077 includes unintended code strings in paste operations.
Moderate
Unreviewed
CVE-2021-37326
was published
May 24, 2022
An access issue was addressed with improved access restrictions. This issue is fixed in macOS Big...
Moderate
Unreviewed
CVE-2021-30673
was published
May 24, 2022
ExportToPdfCmd Arbitrary File Read Information Disclosure Vulnerability using ImportAlert...
Moderate
Unreviewed
CVE-2021-35219
was published
May 24, 2022
Lack of strict validation of bootmode can lead to information disclosure in Snapdragon Auto,...
Moderate
Unreviewed
CVE-2021-1929
was published
May 24, 2022
Child process can leak information from parent process due to numeric pids are getting compared...
Moderate
Unreviewed
CVE-2021-1904
was published
May 24, 2022
This release addresses a potential information leakage vulnerability in NetIQ Access Manager...
Moderate
Unreviewed
CVE-2021-22525
was published
May 24, 2022
The vCenter Server contains a local information disclosure vulnerability in the Analytics service...
Moderate
Unreviewed
CVE-2021-22007
was published
May 24, 2022
In all versions of GitLab CE/EE since version 10.6, a project export leaks the external webhook...
Moderate
Unreviewed
CVE-2021-39898
was published
May 24, 2022
Inappropriate implementation in Background Fetch API in Google Chrome prior to 94.0.4606.54...
Moderate
Unreviewed
CVE-2021-37968
was published
May 24, 2022
Sensitive information exposure in Sign-out log in Samsung Account prior to version 13.2.00.6...
Moderate
Unreviewed
CVE-2022-30734
was published
Jun 8, 2022
Potential speculative code store bypass in all supported CPU products, in conjunction with...
Moderate
Unreviewed
CVE-2021-26313
was published
May 24, 2022
InBody App for iOS versions prior to 2.3.30 and InBody App for Android versions prior to 2.2.90...
Moderate
Unreviewed
CVE-2021-20832
was published
May 24, 2022
OX App Suite 7.10.5 allows Information Exposure because a caching mechanism can caused a Modified...
Moderate
Unreviewed
CVE-2021-38378
was published
May 24, 2022
IBM QRadar Network Security 5.4.0 and 5.5.0 could allow a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2020-4160
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API