GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,239
Erlang
31
GitHub Actions
21
Go
2,007
Maven
5,000+
npm
3,716
NuGet
662
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
64 advisories
Filter by severity
Kramer VIAware 2.5.0719.1034 has Incorrect Access Control.
Critical
Unreviewed
CVE-2019-17124
was published
May 24, 2022
D-Link DSL-G2452DG HW:T1\\tFW:ME_2.00 was discovered to contain insecure permissions.
Critical
Unreviewed
CVE-2022-28932
was published
May 24, 2022
During installation of Ambari 2.4.0 through 2.4.2, Ambari Server artifacts are not created with...
Critical
Unreviewed
CVE-2017-5642
was published
May 13, 2022
An elevation of privilege vulnerability in the Android media framework (mediaanalytics). Product:...
Critical
Unreviewed
CVE-2017-0847
was published
May 13, 2022
There is a permission control vulnerability in the Nearby module. Successful exploitation of this...
Critical
Unreviewed
CVE-2021-40053
was published
Mar 11, 2022
Multiple Mitsubishi Electric Factory Automation engineering software products have a malicious...
Critical
Unreviewed
CVE-2020-14521
was published
Feb 12, 2022
ims_ex is a vendor system service used to manage VoLTE in unisoc devices?But it does not verify...
Critical
Unreviewed
CVE-2021-39635
was published
Feb 12, 2022
ismsEx service is a vendor service in unisoc equipment?ismsEx service is an extension of sms...
Critical
Unreviewed
CVE-2021-39658
was published
Feb 12, 2022
It was discovered, that debian-edu-config, a set of configuration files used for the Debian Edu...
Critical
Unreviewed
CVE-2021-20001
was published
Feb 12, 2022
eliteCMS v1.0 is vulnerable to Insecure Permissions via manage_uploads.php.
Critical
Unreviewed
CVE-2021-46093
was published
Feb 2, 2022
Laundry Booking Management System 1.0 (Latest) and previous versions are affected by a remote...
Critical
Unreviewed
CVE-2021-45003
was published
Jan 11, 2022
The CLI 1.0.0 for Amazon AWS OpenSearch has weak permissions for the configuration file.
Critical
Unreviewed
CVE-2021-44833
was published
Dec 13, 2021
Incorrect Default Permissions in Apache JSPWiki
Critical
CVE-2021-44140
was published
for
org.apache.jspwiki:jspwiki-main
(Maven)
Nov 29, 2021
netaddr before 1.5.3 and 2.0.4 has Incorrect Default Permissions
Critical
CVE-2019-17383
was published
for
netaddr
(RubyGems)
Oct 14, 2019
ProTip!
Advisories are also available from the
GraphQL API