GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
22
Go
2,095
Maven
5,000+
npm
3,760
NuGet
678
pip
3,446
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
493 advisories
Filter by severity
In wlan driver, there is a possible missing permission check, This could lead to local...
Moderate
Unreviewed
CVE-2022-42766
was published
Dec 6, 2022
In wlan driver, there is a possible missing permission check, This could lead to local...
Moderate
Unreviewed
CVE-2022-42782
was published
Dec 6, 2022
IBM WebSphere Automation for IBM Cloud Pak for Watson AIOps 1.4.3 could disclose sensitive...
Moderate
Unreviewed
CVE-2022-43901
was published
Dec 1, 2022
Error in parser function in M-Files Server versions before 22.6.11534.1 and before 22.6.11505.0...
Moderate
Unreviewed
CVE-2022-1911
was published
Nov 30, 2022
g810-led 0.4.2, a LED configuration tool for Logitech Gx10 keyboards, contained a udev rule to...
Moderate
Unreviewed
CVE-2022-46338
was published
Nov 30, 2022
"IBM InfoSphere Information Server 11.7 could allow an authenticated user to access information...
Moderate
Unreviewed
CVE-2022-22442
was published
Nov 4, 2022
An information disclosure vulnerability in GitLab CE/EE affecting all versions starting from 9.3...
Moderate
Unreviewed
CVE-2022-3018
was published
Oct 28, 2022
An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.6 before 15...
Moderate
Unreviewed
CVE-2022-2882
was published
Oct 28, 2022
An issue was discovered in Joomla! 4.0.0 through 4.2.3. Sites with publicly enabled debug mode...
Moderate
Unreviewed
CVE-2022-27912
was published
Oct 26, 2022
Windows Graphics Component Information Disclosure Vulnerability.
Moderate
Unreviewed
CVE-2022-37985
was published
Oct 12, 2022
Windows Mixed Reality Developer Tools Information Disclosure Vulnerability.
Moderate
Unreviewed
CVE-2022-37974
was published
Oct 12, 2022
Under certain conditions, BOE AdminTools/ BOE SDK allows an attacker to access information which...
Moderate
Unreviewed
CVE-2022-39015
was published
Oct 12, 2022
An exposure of resource to wrong sphere vulnerability [CWE-668] in FortiAnalyzer and FortiManager...
Moderate
Unreviewed
CVE-2022-26121
was published
Oct 10, 2022
Improper access control vulnerability in CameraTestActivity in FactoryCameraFB prior to version 3...
Moderate
Unreviewed
CVE-2022-39857
was published
Oct 7, 2022
IBM QRadar SIEM 7.4 and 7.5 could disclose sensitive information via a local service to a...
Moderate
Unreviewed
CVE-2022-30613
was published
Oct 7, 2022
IBM QRadar User Behavior Analytics could allow an authenticated user to obtain sensitive...
Moderate
Unreviewed
CVE-2022-36771
was published
Sep 29, 2022
Zammad 5.2.1 is vulnerable to Incorrect Access Control. Zammad's asset handling mechanism has...
Moderate
Unreviewed
CVE-2022-40816
was published
Sep 28, 2022
An issue in the handling of environment variables was addressed with improved validation. This...
Moderate
Unreviewed
CVE-2022-26707
was published
Sep 25, 2022
Protection mechanism failure in firmware for some Intel(R) SSD DC Products may allow a privileged...
Moderate
Unreviewed
CVE-2021-33081
was published
Sep 21, 2022
Protection mechanism failure in firmware for some Intel(R) SSD DC Products may allow a privileged...
Moderate
Unreviewed
CVE-2021-33079
was published
Sep 21, 2022
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12...
Moderate
Unreviewed
CVE-2022-32883
was published
Sep 21, 2022
Versions of IBM Spectrum Protect Plus prior to 10.1.12 (excluding 10.1.12) include the private...
Moderate
Unreviewed
CVE-2022-40234
was published
Sep 20, 2022
drivers/scsi/stex.c in the Linux kernel through 5.19.9 allows local users to obtain sensitive...
Moderate
Unreviewed
CVE-2022-40768
was published
Sep 19, 2022
Avdor CIS - crystal quality Credentials Management Errors. The product is phone call recorder,...
Moderate
Unreviewed
CVE-2022-36780
was published
Sep 14, 2022
Windows Graphics Component Information Disclosure Vulnerability. This CVE ID is unique from CVE...
Moderate
Unreviewed
CVE-2022-38006
was published
Sep 14, 2022
ProTip!
Advisories are also available from the
GraphQL API