GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,096
Erlang
29
GitHub Actions
19
Go
1,925
Maven
5,000+
npm
3,654
NuGet
638
pip
3,263
Pub
10
RubyGems
873
Rust
823
Swift
35
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
84 advisories
Filter by severity
In multiple functions of sta_iface.cpp, there is a possible out of bounds read due to unsafe...
Moderate
Unreviewed
CVE-2023-21209
was published
Jun 28, 2023
In startWpsPinDisplayInternal of sta_iface.cpp, there is a possible out of bounds read due to...
Moderate
Unreviewed
CVE-2023-21205
was published
Jun 28, 2023
In initiateVenueUrlAnqpQueryInternal of sta_iface.cpp, there is a possible out of bounds read due...
Moderate
Unreviewed
CVE-2023-21206
was published
Jun 28, 2023
A vulnerability was found in Zhong Bang CRMEB up to 4.6.0. It has been declared as problematic....
Moderate
Unreviewed
CVE-2023-3234
was published
Jun 14, 2023
A vulnerability was found in Zhong Bang CRMEB up to 4.6.0 and classified as critical. This issue...
Moderate
Unreviewed
CVE-2023-3232
was published
Jun 14, 2023
A vulnerability, which was classified as problematic, has been found in DataGear up to 4.5.1....
Moderate
Unreviewed
CVE-2023-2042
was published
Apr 14, 2023
Serialization of sensitive data in GitLab EE affecting all versions from 14.9 prior to 15.2.5, 15...
Moderate
Unreviewed
CVE-2022-3291
was published
Oct 17, 2022
In BIG-IP Versions 16.1.x before 16.1.3, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all...
Moderate
Unreviewed
CVE-2022-33947
was published
Aug 5, 2022
In the keystore library, there is a possible prevention of access to system Settings due to...
Moderate
Unreviewed
CVE-2022-20195
was published
Jun 16, 2022
Knowledge Management versions 7.01, 7.02, 7.30, 7.31, 7.40, 7.50 allows a remote attacker with...
Moderate
Unreviewed
CVE-2021-21488
was published
May 24, 2022
Trusty contains a vulnerability in all TAs whose deserializer does not reject messages with...
Moderate
Unreviewed
CVE-2021-34394
was published
May 24, 2022
Trusty contains a vulnerability in TSEC TA which deserializes the incoming messages even though...
Moderate
Unreviewed
CVE-2021-34393
was published
May 24, 2022
An unsafe deserialization vulnerability in Bridgecrew Checkov by Prisma Cloud allows arbitrary...
Moderate
Unreviewed
CVE-2021-3040
was published
May 24, 2022
An unsafe deserialization vulnerability in Bridgecrew Checkov by Prisma Cloud allows arbitrary...
Moderate
Unreviewed
CVE-2021-3035
was published
May 24, 2022
Multiple vulnerabilities in the web-based management interface of Cisco RV340, RV340W, RV345, and...
Moderate
Unreviewed
CVE-2021-1415
was published
May 24, 2022
Multiple vulnerabilities in the web-based management interface of Cisco RV340, RV340W, RV345, and...
Moderate
Unreviewed
CVE-2021-1413
was published
May 24, 2022
Multiple vulnerabilities in the web-based management interface of Cisco RV340, RV340W, RV345, and...
Moderate
Unreviewed
CVE-2021-1414
was published
May 24, 2022
Use of unsafe yaml load. Allows instantiation of arbitrary objects. The flaw itself is caused by...
Moderate
Unreviewed
CVE-2020-10289
was published
May 24, 2022
The affected product is vulnerable to the handling of serialized data. The issue results from the...
Moderate
Unreviewed
CVE-2020-12000
was published
May 24, 2022
IBM QRadar 7.3.0 to 7.3.3 Patch 2 could allow an authenticated user to send a specially crafted...
Moderate
Unreviewed
CVE-2020-4271
was published
May 24, 2022
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component:...
Moderate
Unreviewed
CVE-2020-2757
was published
May 24, 2022
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component:...
Moderate
Unreviewed
CVE-2020-2756
was published
May 24, 2022
A remote code execution vulnerability exists in Microsoft SQL Server Reporting Services when it...
Moderate
Unreviewed
CVE-2020-0618
was published
May 24, 2022
Vulnerability in the Oracle GraalVM Enterprise Edition product of Oracle GraalVM (component: Java...
Moderate
Unreviewed
CVE-2020-2604
was published
May 24, 2022
The Windows component of Centrify Authentication and Privilege Elevation Services 3.4.0, 3.4.1, 3...
Moderate
Unreviewed
CVE-2019-18631
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API