GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,318
Erlang
31
GitHub Actions
21
Go
2,074
Maven
5,000+
npm
3,746
NuGet
674
pip
3,434
Pub
12
RubyGems
892
Rust
880
Swift
37
Unreviewed advisories
All unreviewed
5,000+
4,720 advisories
Filter by severity
Account users in Apache CloudStack by default are allowed to upload and register templates for...
High
Unreviewed
CVE-2024-45219
was published
Oct 16, 2024
An unauthenticated local attacker can gain admin privileges by deploying a config file due to...
High
Unreviewed
CVE-2024-45271
was published
Oct 15, 2024
CVE 2021-22681 https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory...
High
Unreviewed
CVE-2024-6207
was published
Oct 14, 2024
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS...
High
Unreviewed
CVE-2024-8755
was published
Oct 11, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Improper...
High
Unreviewed
CVE-2024-9286
was published
Oct 9, 2024
Livewire Remote Code Execution on File Uploads
High
CVE-2024-47823
was published
for
livewire/livewire
(Composer)
Oct 8, 2024
Windows Hyper-V Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2024-20659
was published
Oct 8, 2024
Windows Hyper-V Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-30092
was published
Oct 8, 2024
Memory corruption while taking snapshot when an offset variable is set by camera driver.
High
Unreviewed
CVE-2024-33065
was published
Oct 7, 2024
In Modem, there is a possible system crash due to a missing bounds check. This could lead to...
High
Unreviewed
CVE-2024-20094
was published
Oct 7, 2024
An attacker can publish a zone containing specific Resource Record Sets.
Repeatedly processing...
High
Unreviewed
CVE-2024-25590
was published
Oct 3, 2024
An input validation vulnerability exists in the Rockwell Automation Sequence Manager™ which could...
High
Unreviewed
CVE-2024-6436
was published
Sep 27, 2024
A vulnerability in the Protocol Independent Multicast (PIM) feature of Cisco IOS XE Software...
High
Unreviewed
CVE-2024-20464
was published
Sep 25, 2024
Insufficient data validation in Updater in Google Chrome prior to 128.0.6537.0 allowed a remote...
High
Unreviewed
CVE-2024-7023
was published
Sep 24, 2024
A flaw was found in Envoy. It is possible to modify or manipulate headers from external clients...
High
Unreviewed
CVE-2024-7207
was published
Sep 20, 2024
protobuf-java has potential Denial of Service issue
High
CVE-2024-7254
was published
for
com.google.protobuf:protobuf-java
(RubyGems)
Sep 19, 2024
In Brave Android prior to v1.67.116, domains in the Brave Shields popup are elided from the right...
High
Unreviewed
CVE-2024-37406
was published
Sep 19, 2024
Mesop has a local file Inclusion via static file serving functionality
High
CVE-2024-45601
was published
for
mesop
(pip)
Sep 18, 2024
Improper input validation in UEFI firmware error handler for some Intel(R) Processors may allow a...
High
Unreviewed
CVE-2024-21829
was published
Sep 16, 2024
Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged...
High
Unreviewed
CVE-2024-21781
was published
Sep 16, 2024
Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged...
High
Unreviewed
CVE-2024-21871
was published
Sep 16, 2024
In ppmp_protect_mfcfw_buf of code/drm_fw.c, there is a possible memory corruption due to improper...
High
Unreviewed
CVE-2024-44094
was published
Sep 13, 2024
A denial-of-service vulnerability exists in the Rockwell Automation affected products when...
High
Unreviewed
CVE-2024-6077
was published
Sep 12, 2024
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows OS...
High
Unreviewed
CVE-2024-6658
was published
Sep 12, 2024
CVE-2024-45825 IMPACT
A denial-of-service vulnerability exists in the affected products. The...
High
Unreviewed
CVE-2024-45825
was published
Sep 12, 2024
ProTip!
Advisories are also available from the
GraphQL API