GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,270
Erlang
31
GitHub Actions
21
Go
2,045
Maven
5,000+
npm
3,737
NuGet
663
pip
3,415
Pub
12
RubyGems
891
Rust
868
Swift
36
Unreviewed advisories
All unreviewed
5,000+
953 advisories
Filter by severity
Multiple W&T products of the ComServer Series are prone to an authentication bypass. An...
Critical
Unreviewed
CVE-2022-42785
was published
Nov 16, 2022
A vulnerability has been identified in SICAM P850 (All versions < V3.00), SICAM P850 (All...
Moderate
Unreviewed
CVE-2022-29881
was published
May 21, 2022
SOOTEWAY Wi-Fi Range Extender v1.5 was discovered to use default credentials (the admin password...
High
Unreviewed
CVE-2021-30028
was published
May 21, 2022
A vulnerability has been identified in SICAM P850 (All versions < V3.00), SICAM P850 (All...
Moderate
Unreviewed
CVE-2022-29877
was published
May 21, 2022
A vulnerability has been identified in SICAM P850 (All versions < V3.00), SICAM P850 (All...
Moderate
Unreviewed
CVE-2022-29879
was published
May 21, 2022
Online Store System v1.0 delete_product.php doesn't check to see if a user authtenticated or has...
Moderate
Unreviewed
CVE-2019-8292
was published
May 24, 2022
A CWE-284: Improper Access Control vulnerability exists in all versions of the Modicon M580,...
Critical
Unreviewed
CVE-2019-6808
was published
May 24, 2022
The administrative web server component of TIBCO Software Inc.'s TIBCO ActiveMatrix BPM, TIBCO...
Critical
Unreviewed
CVE-2019-8993
was published
May 24, 2022
An issue was discovered in upgrade_htmls.cgi on VStarcam 100T (C7824WIP) KR75.8.53.20 and 200V ...
Critical
Unreviewed
CVE-2019-12288
was published
May 24, 2022
Authentication bypass using an alternate path or channel vulnerability in bingo!CMS version1.7.4...
Critical
Unreviewed
CVE-2022-42458
was published
Dec 7, 2022
A CWE-306: Missing Authentication for Critical Function vulnerability exists which could cause a...
High
Unreviewed
CVE-2019-6820
was published
May 24, 2022
NVIDIA DGX Station contains a vulnerability in SBIOS in the SmiFlash, where a local user with...
High
Unreviewed
CVE-2022-42277
was published
Jan 13, 2023
A vulnerability has been identified in LOGO!8 BM (All versions). Attackers with access to port...
Critical
Unreviewed
CVE-2019-10919
was published
May 24, 2022
An issue was discovered on D-Link DIR-600M 3.02, 3.03, 3.04, and 3.06 devices. wan.htm can be...
Critical
Unreviewed
CVE-2019-13101
was published
May 24, 2022
Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where...
Moderate
Unreviewed
CVE-2022-3188
was published
Dec 22, 2022
Bypass lock protection in the Nextcloud Android app prior to version 3.6.1 allows accessing the...
Moderate
Unreviewed
CVE-2019-5451
was published
May 24, 2022
An issue discovered on D-Link DIR-615 devices with firmware version 20.05 and 20.07. wan.htm can...
Moderate
Unreviewed
CVE-2019-17353
was published
May 24, 2022
Computing For Good's Basic Laboratory Information System (also known as C4G BLIS) version 3.4 and...
High
Unreviewed
CVE-2019-5617
was published
May 24, 2022
Advantech WISE-PaaS/RMM, Versions 3.3.29 and prior. There is an unsecured function that allows...
Critical
Unreviewed
CVE-2019-13547
was published
May 24, 2022
An exploitable code execution vulnerability exists in the ss-manager binary of Shadowsocks-libev...
Moderate
Unreviewed
CVE-2019-5164
was published
May 24, 2022
A vulnerability has been identified in SPPA-T3000 Application Server (All versions). The...
Moderate
Unreviewed
CVE-2019-18284
was published
May 24, 2022
A vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An...
Moderate
Unreviewed
CVE-2019-18311
was published
May 24, 2022
An exploitable information disclosure vulnerability exists in the network packet handling...
Moderate
Unreviewed
CVE-2019-5152
was published
May 24, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2019-17146
was published
May 24, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
Critical
Unreviewed
CVE-2022-35865
was published
Aug 4, 2022
ProTip!
Advisories are also available from the
GraphQL API