GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
20
Go
1,998
Maven
5,000+
npm
3,710
NuGet
661
pip
3,364
Pub
11
RubyGems
885
Rust
846
Swift
36
Unreviewed advisories
All unreviewed
5,000+
255,746 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
drm/amdgpu: add missing size...
High
Unreviewed
CVE-2024-50282
was published
Nov 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: fix slab-use-after...
High
Unreviewed
CVE-2024-50286
was published
Nov 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: fix slab-use-after...
High
Unreviewed
CVE-2024-50283
was published
Nov 19, 2024
A vulnerability has been found in SourceCodester Student Record Management System 1.0 and...
Moderate
Unreviewed
CVE-2024-11262
was published
Nov 16, 2024
In the Linux kernel, the following vulnerability has been resolved:
media: v4l2-tpg: prevent the...
Moderate
Unreviewed
CVE-2024-50287
was published
Nov 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: vertexcom: mse102x: Fix...
High
Unreviewed
CVE-2024-50276
was published
Nov 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
USB: serial: io_edgeport:...
High
Unreviewed
CVE-2024-50267
was published
Nov 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
regulator: rtq2208: Fix...
Moderate
Unreviewed
CVE-2024-50300
was published
Nov 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
ocfs2: remove entry once...
Moderate
Unreviewed
CVE-2024-50265
was published
Nov 19, 2024
An issue in GL-iNet products AR750/AR750S/AR300M/AR300M16/MT300N-V2/B1300/MT1300/SFT1200/X750 v4...
Moderate
Unreviewed
CVE-2024-39229
was published
Aug 6, 2024
Ansible vulnerable to Insertion of Sensitive Information into Log File
High
CVE-2024-8775
was published
for
ansible-core
(pip)
Sep 16, 2024
In the Linux kernel, the following vulnerability has been resolved:
security/keys: fix slab-out...
High
Unreviewed
CVE-2024-50301
was published
Nov 19, 2024
An issue in the handling of URL protocols was addressed with improved logic. This issue is fixed...
Moderate
Unreviewed
CVE-2024-44206
was published
Oct 24, 2024
Openshift Console insufficient entropy vulnerability
Moderate
CVE-2024-6508
was published
for
github.com/openshift/console
(Go)
Aug 21, 2024
Insertion of sensitive information into sent data issue exists in Cybozu Garoon 5.5.0 to 6.0.0,...
Moderate
Unreviewed
CVE-2024-31404
was published
Jun 11, 2024
A flaw was found in GnuTLS. The Minerva attack is a cryptographic vulnerability that exploits...
Moderate
Unreviewed
CVE-2024-28834
was published
Mar 21, 2024
Click Studios Passwordstate Core before 9.8 build 9858 allows Authentication Bypass.
Moderate
Unreviewed
CVE-2024-39337
was published
Jun 24, 2024
Varnish Cache before 7.3.2 and 7.4.x before 7.4.3 (and before 6.0.13 LTS), and Varnish Enterprise...
High
Unreviewed
CVE-2024-30156
was published
Mar 24, 2024
An issue was discovered in Logpoint before 7.4.0. A path injection vulnerability is seen while...
Moderate
Unreviewed
CVE-2024-33858
was published
May 7, 2024
A flaw was found in the QEMU NBD Server. This vulnerability allows a denial of service (DoS)...
High
Unreviewed
CVE-2024-7409
was published
Aug 5, 2024
Pexip Infinity before 34.1 has Improper Access Control for persons in a waiting room. They can...
Moderate
Unreviewed
CVE-2024-33850
was published
Jun 10, 2024
In the Linux kernel, the following vulnerability has been resolved:
KEYS: trusted: dcp: fix NULL...
Moderate
Unreviewed
CVE-2024-50281
was published
Nov 19, 2024
An issue in BAS-IP AV-01D, AV-01MD, AV-01MFD, AV-01ED, AV-01KD, AV-01BD, AV-01KBD, AV-02D, AV...
Moderate
Unreviewed
CVE-2024-37654
was published
Jun 22, 2024
In the Linux kernel, the following vulnerability has been resolved:
sctp: properly validate...
Moderate
Unreviewed
CVE-2024-50299
was published
Nov 19, 2024
A file upload vulnerability in java_shop 1.0 allows attackers to upload arbitrary files by...
Moderate
Unreviewed
CVE-2024-50652
was published
Nov 15, 2024
ProTip!
Advisories are also available from the
GraphQL API