GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,314
Erlang
31
GitHub Actions
21
Go
2,072
Maven
5,000+
npm
3,744
NuGet
674
pip
3,433
Pub
12
RubyGems
892
Rust
880
Swift
37
Unreviewed advisories
All unreviewed
5,000+
202 advisories
Filter by severity
Improper signature verification in Ivanti EPM before the 2024 January-2025 Security Update and...
High
Unreviewed
CVE-2024-13172
was published
Jan 14, 2025
Windows Cryptographic Services Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2024-26228
was published
Apr 9, 2024
Improper Verification of SAML Responses Leading to Privilege Escalation in Keycloak
High
CVE-2024-8698
was published
for
org.keycloak:keycloak-saml-core
(Maven)
Oct 14, 2024
A library injection vulnerability exists in the WebView.app helper app of Microsoft Teams (work...
High
Unreviewed
CVE-2024-41145
was published
Dec 19, 2024
A library injection vulnerability exists in Microsoft Outlook 16.83.3 for macOS. A specially...
High
Unreviewed
CVE-2024-42220
was published
Dec 19, 2024
A library injection vulnerability exists in Microsoft Word 16.83 for macOS. A specially crafted...
High
Unreviewed
CVE-2024-41165
was published
Dec 19, 2024
A library injection vulnerability exists in Microsoft Excel 16.83 for macOS. A specially crafted...
High
Unreviewed
CVE-2024-43106
was published
Dec 19, 2024
A library injection vulnerability exists in the com.microsoft.teams2.modulehost.app helper app of...
High
Unreviewed
CVE-2024-41138
was published
Dec 19, 2024
A library injection vulnerability exists in Microsoft Teams (work or school) 24046.2813.2770.1094...
High
Unreviewed
CVE-2024-42004
was published
Dec 19, 2024
A library injection vulnerability exists in Microsoft PowerPoint 16.83 for macOS. A specially...
High
Unreviewed
CVE-2024-39804
was published
Dec 19, 2024
A library injection vulnerability exists in Microsoft OneNote 16.83 for macOS. A specially...
High
Unreviewed
CVE-2024-41159
was published
Dec 19, 2024
Dell RecoverPoint for Virtual Machines 6.0.x contains an OS Command injection vulnerability. A...
High
Unreviewed
CVE-2024-22461
was published
Dec 13, 2024
This vulnerability exists in the TP-Link Archer C50 due to improper signature verification...
High
Unreviewed
CVE-2024-54126
was published
Dec 5, 2024
Dell NetWorker Management Console, version(s) 19.11, contain(s) an Improper Verification of...
High
Unreviewed
CVE-2024-47476
was published
Dec 3, 2024
Signature forgery in Spring Boot's Loader
High
CVE-2024-38807
was published
for
org.springframework.boot:spring-boot-loader
(Maven)
Aug 23, 2024
Grafana Plugin signature bypass
High
CVE-2022-31123
was published
for
github.com/grafana/grafana
(Go)
May 14, 2024
The WinVerifyTrust function in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows...
High
Unreviewed
CVE-2013-3900
was published
May 3, 2022
An improper verification of cryptographic signature vulnerability [CWE-347] in FortiClient MacOS...
High
Unreviewed
CVE-2024-40592
was published
Nov 12, 2024
In neomutt and mutt, the To and Cc email headers are not validated by cryptographic signing which...
High
Unreviewed
CVE-2024-49393
was published
Nov 12, 2024
Permission control vulnerability in the hidebug module
Impact: Successful exploitation of this...
High
Unreviewed
CVE-2024-51526
was published
Nov 5, 2024
Laravel Reverb Missing API Signature Verification
High
CVE-2024-50347
was published
for
laravel/reverb
(Composer)
Oct 31, 2024
SaltStack Improper Verification of Cryptographic Signature
High
CVE-2022-22934
was published
for
salt
(pip)
Mar 30, 2022
Improper Verification of Cryptographic Signature in PySAML2
High
CVE-2020-5390
was published
for
pysaml2
(pip)
May 6, 2020
Improper Verification of Cryptographic Signature vulnerability in Zscaler Client Connector on...
High
Unreviewed
CVE-2023-28796
was published
Oct 23, 2023
Agent Dart is missing certificate verification checks
High
CVE-2024-48915
was published
for
agent_dart
(Pub)
Oct 15, 2024
ProTip!
Advisories are also available from the
GraphQL API